[PATCH] LDAP server privileged socket mode

Samuel Cabrero scabrero at zentyal.com
Thu Aug 9 09:17:26 MDT 2012


Hi,

This patch allows to specify the LDAP server privileged socket directory
umask as a smb.conf option.

Samba checks that /var/lib/samba/private/ldap_priv/ is root owned and
has 750 permissions. We need to relax these permissions to 770 to allow
users that belong to this directory group, access the privileged socket.
Any management software (like Zentyal) will need an external non-root
user to modify restricted attributes via this privileged socket.

Cheers.

-- 
Samuel Cabrero - Developer
scabrero at zentyal.com

The Linux small business server
www.zentyal.com
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ldap_priv_socket_mode.patch
Type: text/x-patch
Size: 2391 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20120809/bea33a67/attachment.bin>


More information about the samba-technical mailing list