How to mix host access with security=domain

Gerald Carter gcarter at valinux.com
Tue Aug 8 16:23:06 GMT 2000


Mohamed LRHAZI wrote:
> 
> My first question is:  can I tell samba to keep working with
> security=domain, plus non-domain for
> some IP@

Try playing with 

	include = %I.conf



>   1   0.00000 PC-NY -> SAMBA_PARIS       TCP D=445 S=2096 Syn
> Seq=3574114032 Len=0 Win=16384 Options=<mss 1460,nop,nop,sackOK>
>   2   0.00003 SAMBA_PARIS -> PC-NY       TCP D=2096 S=445 Rst Ack=3574114033
> Win=0
>   3   0.63593 PC-NY -> SAMBA_PARIS       TCP D=445 S=2096 Syn
> Seq=3574114032 Len=0 Win=16384 Options=<mss 1460,nop,nop,sackOK>
>   4   0.00003 SAMBA_PARIS -> PC-NY       TCP D=2096 S=445 Rst Ack=3574114033
> Win=0

Looks like your far away clients are running Windows 2000
(destination port of 445).  The mainline releases of Samba do
not support netbiosless-smb yet.  Therefore your Win2k 
clients will need to have a netbios binding configured.
If they are outside of a firewall (you should be blocking ports
137 - 139) you will need sometype of VPN.





Cheers, jerry
----------------------------------------------------------------------
   /\  Gerald (Jerry) Carter                     Professional Services
 \/    http://www.valinux.com  VA Linux Systems    gcarter at valinux.com
       http://www.samba.org       SAMBA Team           jerry at samba.org
       http://www.eng.auburn.edu/~cartegw

       "...a hundred billion castaways looking for a home."
                                - Sting "Message in a Bottle" ( 1979 )




More information about the samba-technical mailing list