Patch: convenience feature for non-domain clients

Richard Sharpe rsharpe at ns.aus.com
Wed Oct 9 19:04:00 GMT 2002


On Wed, 9 Oct 2002, Herb Lewis wrote:

> Mike Gerdts wrote:
> > 
> > Perhaps a slight variant of this that would be useful would be something
> > along the lines of "force domain = <auth domain>".  The difference is
> > that when your samba servers are part of a resource domain that is
> > different than your authentication domain, the authentication would
> > happen against your authentication domain, rather than the (machine
> > only) resource domain.
> > 
> > Mike
> > 
> 
> I really like this approach. I am seeing more and more setups where
> machines are being setup in exacly this configuration. It would be
> nice to have winbindd use existing UID's instead of always creating
> new ones for domain\user. With the existing "use default domain"
> this is not sufficient when you are in a resource domain and all your
> user names are in the auth domain.

Hmmm, doesn't this assume name equivalence though, between flat names in 
the auth domain and names on the UNIX system?

What happens in the current case?

Regards
-----
Richard Sharpe, rsharpe at ns.aus.com, rsharpe at samba.org, 
sharpe at ethereal.com, http://www.richardsharpe.com




More information about the samba-technical mailing list