[PATCHES] GPO support for client machine policy
Andrew Bartlett
abartlet at samba.org
Sun Jan 7 23:58:27 UTC 2018
On Sat, 2017-12-02 at 08:54 -0700, David Mulder wrote:
> These patches add Group Policy support for client machines. Adds a
> winbind event that calls samba_gpoupdate to apply local machine
> policies. Adds the option "winbind gpupdate" to smb.conf, which
> determines whether group policy will be applied to the client. This is
> *disabled* by default for now. Users will need to manually enable this
> to see the new functionality.
> To start off, we only have Environment Variable policies.
I'm not really comfortable with this changing /etc/profile by default.
It is one thing to change the kdc configuration and the password
settings (as that is the way it should be done), but trying to apply a
windows PATH policy into the unix world just feels wrong, or at least
unexpected.
Sorry,
Andrew Bartlett
--
Andrew Bartlett
https://samba.org/~abartlet/
Authentication Developer, Samba Team https://samba.org
Samba Development and Support, Catalyst IT
https://catalyst.net.nz/services/samba
More information about the samba-technical
mailing list