samba-tng-alpha-1.0.tar.gz

Luke Kenneth Casson Leighton lkcl at samba.org
Mon Mar 20 19:20:20 GMT 2000


uh uh, no can do, sorry.

each uid and gid *must* map one-to-one with a SID of the appropriate type.

if this is not the case, then you run into serious problems as to how to
resolve a uid to which SID was it that this uid represented again?  i have
sooo many to choose from...

so, no, we can't do that.

On Mon, 20 Mar 2000, Michael Breuer wrote:

> Irix needs some non-unique entries... how about a short-term fix... allow specification of a non-default /etc/passwd & /etc/group
> (kinda like public ftp)?
> 
> Luke Kenneth Casson Leighton wrote:
> [snip]
> 
> > 2) option 2 - add checking into domain_namemap.c
> >
> > verify that a name that maps to both a unix name _and_ a unix group, the
> > unix name takes precedence.
> >
> > this is nasty as hell, because let's say someone tries to create a file
> > with a unix group root, are you going to reject the file create because
> > there is also a username root????
> >
> > answer: YES!  with a damn big warning in the log files saying hey, stupid,
> > map the unix group "root" to something that doesn't clash with the
> > username "root", because i said so, don't argue, just do it.
> 

<a href=" mailto:lkcl at samba.org" > Luke Kenneth Casson Leighton    </a>
<a href=" http://cb1.com/~lkcl"  > Samba and Network Development   </a>
<a href=" http://samba.org"      > Samba Web site                  </a>
<a href=" http://mcp.com"        > Macmillan Technical Publishing  </a>
 
ISBN1578701503 DCE/RPC over SMB: Samba and Windows NT Domain Internals



More information about the samba-ntdom mailing list