Are there any command line options available to know the (user)account type?

Ralph Böhme slow at
Fri Feb 16 22:04:36 UTC 2018

On Fri, Feb 16, 2018 at 08:01:09PM +0000, Hemanth Thummala via samba-technical wrote:
> Correct. Looks like that’s the only authoritative way to identify a machine
> account. We are able to get this information using ldapsearch query using
> anonymous bind.  But, we would like to know if this ldapsearch anonymous bind
> works all the time to query for “SamAccountType” attribute for any user
> account. Is there a possibility that this anonymous check can be blocked by
> placing any restrictions on the Active Directory objects?

duno, but on a member server why not bind with machine trust account credentials
and use net ads search:

# net ads search -P cn=NAME sAMAccountType



Ralph Boehme, Samba Team
Samba Developer, SerNet GmbH
GPG Key Fingerprint: FAE2 C608 8A24 2520 51C5  59E4 AA1E 9B71 2639 9E46

More information about the samba-technical mailing list