NGROUPS_MAX : proxy authentication/authorization

Volker Lendecke Volker.Lendecke at SerNet.DE
Mon Dec 14 14:04:39 MST 2009


On Mon, Dec 14, 2009 at 05:41:22PM +0100, miguel.sanders at arcelormittal.com wrote:
> Thanks for your feedback.
> I'll certainly look into this further.
> Also, in our environment, the AD groups used for Samba access to shares
> are all located in a single dedicated OU.
> Could that dedicated OU be a starting point of the group enumeration of
> a user (I'm just thinking out loud)?

Once you have the filter infrastructure in place, there's
many ways to choose the groups. I already had the proposal
to have a simple glob-style filter on the nt-compatible
group name.

Volker
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: Digital signature
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20091214/826f7258/attachment.pgp>


More information about the samba-technical mailing list