Valid users & SAMBA_3_0_23

Gerald (Jerry) Carter jerry at samba.org
Fri Aug 4 16:37:01 GMT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Jeremy Allison wrote:
> On Fri, Aug 04, 2006 at 10:00:25AM -0500, Gerald (Jerry) Carter wrote:
>> Things seems to be ok.
> 
> Thank goodneed :-).
> 
>> Since I am of the position that all domain accounts in
>> smb.conf should be fully qualified, I'd expect 'force user =
>> lizard' to resolve the to the Unix SID and not domain SID.
>>
>> I know this is subtle.  What are your thoughts here?
> 
> I agree, an unqualified 'force user = lizard' should map
> to the UNIX user, not the domain user. Is this an artifact
> of the new lookup_name() code ?

ok.  I take it back.  The strange behavior was caused
due to a borked /lib/libnss_winbind.so installation.
With winbindd failing, the behavior makes sense to me.

So both force user and valid users seems to be worked
as expected on PDCs, standalone, and domain members.

I'll post to the samb list and ask more people to
test it out.



jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.4 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFE03esIR7qMdg1EfYRApXMAJ0YDwvVB2l6B3QWQCnsuGCJclJvswCgh8CC
gS4EQFnx6Oa2TxGIYF4VAaQ=
=SdLg
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list