Bogus User List provided by 2.2 CVS Samba with nt pipe support = Yes and security = DOMAIN

Richard Bollinger rabollinger at home.com
Fri Jan 26 20:56:27 GMT 2001


Agreed that "bogus" was a bit strong, but with security = SERVER - only the
intersection of the NT domain's list of users and the local passwd file
would likely be valid.  In my case, the right answer would be to echo the
list of NT domain users, because the client is not really interested in this
particular server.

I can't see why the NT client even asked the samba server (and not a DC) for
a user list... there was no explicit connection between the two computers.
The NT machine seemed to randomly pick any domain member server and just ask
for the list.  While tracking down the problem, I turned off "nt pipe
support" one by one on each of my test samba 2.2 servers until the NT client
ran out of other options and got its list from one of the NT DC's.

Thanks, Rich B
----- Original Message -----
From: "Jeremy Allison" <jeremy at valinux.com>
To: "Richard Bollinger" <rabollinger at home.com>
Cc: <samba-technical at samba.org>
Sent: Friday, January 26, 2001 3:38 PM
Subject: Re: Bogus User List provided by 2.2 CVS Samba with nt pipe support
= Yes and security = DOMAIN


> On Fri, Jan 26, 2001 at 01:40:05PM -0500, Richard Bollinger wrote:
> I do't think this is a bogus list. Remember these are
> the users that you can use to set security on files,
> so these users are correct.
>
> If you want a list of users from the NT domain, change
> the "domain" entry in the list to the domain name, not
> the Samba server name.
>
> This is how NT works I think (more when I have time to
> check).
>
> Jeremy.






More information about the samba-technical mailing list