W2k joins to Samba-HEAD

Volker.Lendecke at SerNet.DE Volker.Lendecke at SerNet.DE
Fri Nov 1 11:42:00 GMT 2002


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hi!

Here I'm currently playing around with W2k joins to samba-head of
yesterday. I have the following phenomena:

Join with 'use spnego = yes' works. For W2ksp3 you have to explicitly
set a realm. But then you obviously put the Workstation into something
like AD-client-mode. If you leave the domain to a workgroup then, it
gives the typical error msg that it can not disable the computer
account, please talk to your sysadmin. This mode has the problem
though that you can not view the domain users in the local management
tool to give specific domain users local admin privs.

Join with 'use spnego = no' works as well, but then the login later on
does not work. Samba says ok to the auth2 request, but the W2k
workstation says the computer account does not exist or is
invalid. Then saying 'use spnego = yes' enables login AND viewing
domain users in the local management tool.

Is there any registry-key to enable loggin in without spnego?
sign&seal is off...

Volker

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: Key-ID D32186CF, Fingerprint available: phone +49 551 3700000

iD8DBQE9wmiLOmSXH9Mhhs8RAmwPAJ4oiKlYq9eptwxZmYWwwuYOI+hkhACgkIMs
N7Nh+4U4bgqbGfMWX6Wo9QY=
=IQjn
-----END PGP SIGNATURE-----



More information about the samba-technical mailing list