Are there any command line options available to know the (user)account type?

Hemanth Thummala hemanth.thummala at
Fri Feb 16 22:37:18 UTC 2018

Thanks Ralph! This definitely helps. 

On 16/02/18, 2:09 PM, "Ralph Böhme" <slow at> wrote:

    On Fri, Feb 16, 2018 at 08:01:09PM +0000, Hemanth Thummala via samba-technical wrote:
    > Correct. Looks like that’s the only authoritative way to identify a machine
    > account. We are able to get this information using ldapsearch query using
    > anonymous bind.  But, we would like to know if this ldapsearch anonymous bind
    > works all the time to query for “SamAccountType” attribute for any user
    > account. Is there a possibility that this anonymous check can be blocked by
    > placing any restrictions on the Active Directory objects?
    duno, but on a member server why not bind with machine trust account credentials
    and use net ads search:
    # net ads search -P cn=NAME sAMAccountType
    Ralph Boehme, Samba Team
    Samba Developer, SerNet GmbH
    GPG Key Fingerprint: FAE2 C608 8A24 2520 51C5  59E4 AA1E 9B71 2639 9E46

More information about the samba-technical mailing list