[PATCH] Two-way trust demonstrated between AD parent and Samba subdomain!

Andrew Bartlett abartlet at samba.org
Fri Aug 22 04:06:46 MDT 2014


In my subdomain-wip branch, Garming and I tonight demonstrated NTLM
authentication working in both directions.

Kerberos has worked like this for ages, but now NTLM is working we are
much closer to the basic level of subdomain (and presumably inter-forest
trusted domain) operation that folks have been looking for.

The attached 3 patches helped, and I would like reviewed.  I'm
continuing to work on cleaning up the remainder of the subdomain-wip
branch.

https://git.samba.org/abartlet/samba.git/?p=abartlet/samba.git/.git;a=shortlog;h=refs/heads/subdomain-wip

Thanks,

Andrew Bartlett
-- 
Andrew Bartlett                       http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba

-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-join.py-Set-NT-ACL-on-crossRef-object-for-new-partit.patch
Type: text/x-patch
Size: 2902 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20140822/1a810e61/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0002-join.py-Ensure-to-fill-in-samAccountName-so-we-get-t.patch
Type: text/x-patch
Size: 1155 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20140822/1a810e61/attachment-0001.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0003-s4-netlogond-Give-a-better-error-if-we-do-not-have-a.patch
Type: text/x-patch
Size: 1145 bytes
Desc: not available
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20140822/1a810e61/attachment-0002.bin>


More information about the samba-technical mailing list