design for storing trusted domain passwords in ldap

Gerald (Jerry) Carter jerry at samba.org
Wed Jan 17 18:30:01 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

simo wrote:

> I am not saying I want to force 2 way trusts, just 
> that it seem natural to use the same object for both. It is
> easy to keep the two way separate by just clearing
> the password of the way that is not set.

So you are ok with now requiring a Unix account for one
end of the trust which previously did not need it?

These are just two different things to me.  Always have
been.  We don't store the machine trust account when
configured as a domain member in the local SAM.





cheers, jerry
=====================================================================
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFFrmspIR7qMdg1EfYRAkyUAKCSuvU2nALv56B8gbviP6X+DmuRLQCffgJW
G0vNGfQWIb40bRNSEWrNhgs=
=5U6L
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list