Account lockout policy is not working

Ricky Nance ricky.nance at
Thu Sep 5 17:00:23 CEST 2013

I was under the impression that this is what Luke was working on with his
GSOC project...


On Wed, Sep 4, 2013 at 10:09 PM, Andrew Bartlett <abartlet at> wrote:

> On Wed, 2013-09-04 at 21:27 -0500, Ricky Nance wrote:
> > The DC level gpo's are still being implemented, and pdbedit is made for
> the
> > older samba 3 style setups (non AD controller that is). For AD you should
> > use samba-tool for everything management wise. Take a look at `samba-tool
> > domain passwordsettings`
> That's a nasty and annoying bug.  Can someone please file it in
> bugzilla?
> The issue is that pdb_samba_dsdb does not read and write the sam.ldb in
> this instance.  Instead, it just calls into the 'source3' account policy
> code.  This is silly, we should handle this interface correctly or not
> at all.  That way, this aspect of pdbedit and net would work just as
> much as the other aspects do.
> Andrew Bartlett
> --
> Andrew Bartlett
> Authentication Developer, Samba Team 
> Samba Developer, Catalyst IT         

More information about the samba-technical mailing list