Should Samba pass "DOMAIN\username" or just "username" to CUPS?

Gerald (Jerry) Carter jerry at samba.org
Mon Dec 8 15:53:28 GMT 2003


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Andrew Bartlett wrote:

| We must pass the full unix username.  This should be available by
| reading uidtoname(current_user->uid), and may or may not have anything
| in common with the windows username currently being supplied (username
| map).  The other issue is that we currently pass this ivalue in as the
| 'requesting user' even if *another* user is attempting to remove the
| job (on the samba side).
|
| The Samba -> CUPS username should always be fully qualified, unless
| 'winbind use default domain' is set, because DOM1\fred is a very
| different user to DOM2\fred.  Stripping the name is not a solution
| (and will therefore break really big sites).

I agree with Andrew.  The unix account name *is* DOMAIN\user.
UNIX has no notion of domain names.  Although even with
'winbind use default domain', i believe that the stored
account name should still be DOMAIN\user.  That parameter is only for
user's convience, not for internal data structures.





cheers, jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQE/1J54IR7qMdg1EfYRAoyjAKC0kr5nRzsMc8zIw0hNPy5XmrLU7QCff+RI
agW7mkQ0dgWyzzcbnpXUsxY=
=HPc7
-----END PGP SIGNATURE-----



More information about the samba-technical mailing list