How samba 3.0 get the NT token for a domain user?

Luke Howard lukeh at PADL.COM
Fri May 9 00:36:19 GMT 2003

>So if my understanding above is correct, it means that we can not decode the 
>access token yet?  Or what else that we do not get the group list from the 
>access token?  Or my understanding of the process is totally wrong?

The token is included in the authorization data in the Kerberos ticket. At
present SAMBA decodes the authorization data but does not use the SIDs 
within it.

-- Luke

Luke Howard | PADL Software Pty Ltd |

More information about the samba-technical mailing list