svn commit: samba r10630 - in branches/SAMBA_3_0_RELEASE: .

jerry at samba.org jerry at samba.org
Thu Sep 29 22:27:52 GMT 2005


Author: jerry
Date: 2005-09-29 22:27:51 +0000 (Thu, 29 Sep 2005)
New Revision: 10630

WebSVN: http://websvn.samba.org/cgi-bin/viewcvs.cgi?view=rev&root=samba&rev=10630

Log:
adding note about recent windows updates and 'security=domain'
Modified:
   branches/SAMBA_3_0_RELEASE/WHATSNEW.txt


Changeset:
Modified: branches/SAMBA_3_0_RELEASE/WHATSNEW.txt
===================================================================
--- branches/SAMBA_3_0_RELEASE/WHATSNEW.txt	2005-09-29 22:11:41 UTC (rev 10629)
+++ branches/SAMBA_3_0_RELEASE/WHATSNEW.txt	2005-09-29 22:27:51 UTC (rev 10630)
@@ -18,6 +18,25 @@
     Solaris and OpenBSD, 
 
 
+Winbind, security = domain, and Active Directory
+================================================
+
+Recent security updates for Windows 2000 and Windows 2003
+have changed the fashion in which user and group list can 
+be obtained from domain controllers.  In short, the rpc 
+mechanisms used by "security = domain" to retrieve users 
+and groups is not compatible with these changes.   The 
+"security = ads" configuration is not affected by the
+Windows protocol changes.
+
+Samba developers are actively working to correct this
+problem in the version 3.0.21.  Administrators who are 
+unable to migrate to "security = ads", can define credentials
+to be used by winbindd when enumerating users by executing
+"wbinfo --set-auth-user='DOMAIN\username%password'"
+
+
+
 ######################################################################
 Changes
 #######



More information about the samba-cvs mailing list