Q about transitive forest trusts

Gerald (Jerry) Carter jerry at samba.org
Thu Apr 5 15:59:42 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Answering myself....

Gerald (Jerry) Carter wrote:

> Basically I need to know the complete trusted forest heirarchy
> and not just the direct outgoing trust to CORP.

I think the only solution is to attempt the name2sid()
for the ENGR\user name against my DC and if that succeeds
just assume that I have an outgoing trust with the domain.
Which means I'll never try to contact it but can fake
up the getpwnam and handle logons.

All of this is dependent on my still-in-progress one-way
trust support in winbindd of course.





cheers, jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGFRzuIR7qMdg1EfYRAr2xAJ48uxoGXHi1sF3BWNfbZoyS8gSXQACeOECu
5wemvD8g1YQzMyFhZ3qm3yU=
=g9kO
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list