smbpasswd backend used by default ?
abartlet at samba.org
Mon Sep 15 23:32:51 GMT 2003
On Tue, 2003-09-16 at 02:15, Aurélien Degrémont wrote:
> Volker Lendecke wrote:
> > On Mon, Sep 15, 2003 at 10:15:01AM +0200, Aurélien Degrémont wrote:
> >>Backward compatibilty is good, and Samba 3 perfectly supports smbpasswd
> >>backend, but use new features is better, particularly in this case.
> > Even if you started with smbpasswd, switching is very easy:
> > pdbedit -i smbpasswd -e tdbsam
> > Volker
> I know it's easy switching from smbpasswd to tdbsam.
> And it's very easy to configure smbpasswd backend when updating to Samba
> 3.0.0, one line into smb.conf, and, possibly, one command to convert the
> Whereas, all new fresh installations of Samba 3 will use smbpasswd by
> default, with no possibilities to use Windows 200X/NT accounts with this
> Is Samba 3 really done for this ?
Sorry? smbpasswd is still quite functional, even for running a PDC.
You might not be able to change all the settings per-user, and it lacks
the ability to track things like 'must change time', but it certainly
> I'm just making comments.
> The question is : "Do you prefer compatibility or better features ?"
> It seems that this question is not totally clear inside the Samba team,
> and i think, that, for this case, new features are more important. In my
> opinion, Samba 3 must, by default, be able to manage W2k accounts.
Samba is a sufficiently complex beast, and this upgrade is already going
to change some things for users. While I support the move to encrypted
passwords by default, I see no compelling reason to move to tdbsam at
this late stage.
For a simple file-server, tdbsam adds almost nothing over smbpasswd,
except the fact that the admin is no longer able (rightly or wrongly) to
edit the file directly.
People understand smbpasswd, they don't understand tdbsam, and we
shouldn't chose this moment to force them to.
Many of our users really don't want the 'better features' - they want
'better correctness' and 'fewer bugs', but those that want the 'better
features' are in a very good position to configure it's use.
Andrew Bartlett abartlet at pcug.org.au
Manager, Authentication Subsystems, Samba Team abartlet at samba.org
Student Network Administrator, Hawker College abartlet at hawkerc.net
http://samba.org http://build.samba.org http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20030915/ef1496d2/attachment.bin
More information about the samba-technical