a way to disable ADS in winbind in samba3

Gerald (Jerry) Carter jerry at samba.org
Tue May 29 20:47:40 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Volker,

> On Mon, May 28, 2007 at 10:14:43AM -0500, Gerald (Jerry) Carter wrote:
>> The reason why I'm opposed to reverting the "use winbindd_ads
>> whenever possible" is that if penalizes everyone who uses
>> Samba for the benefit of a few broken installations.
>> I'm a little surprised since you have been the main proponent
>> of getting rid of any distinction between security ads and
>> security = domain.
> 
> You're right, I would really like to get rid of that
> distinction.
...
> On the other hand, I would really like to give the admin the
> option to fully go without Kerberos and LDAP in winbind. I
> know, you can always compile Samba without LDAP, but I would
> prefer a runtime option here.

I'll compromise and conceed a non-default change in behavior
that forces the winbindd_rpc methods.  This is probably easier
to understand in the code than changing the flags in the
winbindd_domain struct.

Tridge, would that work for you?  Same effect.  Just different
approach.






cheers, jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGXJFsIR7qMdg1EfYRArfzAJ9LT8CAW3GXR54EVs4djQD++xIXdQCgmutC
bRknq96iK11arTvLYVcqe1w=
=3uUR
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list