is it currently possible to....?

Luke Kenneth Casson Leighton lkcl at samba.org
Wed Dec 8 23:17:33 GMT 1999


yes.

rpcclient -S nt_srv -Uadmiistrator -l log
[administrator at ntsrv$ ] samsync

you must have set up a BDC trust account (createuser YOUR_SAMBA_SERVER$ -s
-j) in order to do the sam sync.

the results will appear on stdout.

alternativel, matthew chapman added a sam sync option to smbpasswd, six
months ago.

you must be root to run createuser with the -j option or smbpasswd with
the sam sync option.

i recommend using createuser as it will join the samba BDC to the domain
locally _and_ remotely.

using SRVMGR.EXE to add BDCs to the domain is a SERIOUS security risk and
should be avoided at all costs.

luke



More information about the samba-ntdom mailing list