[PATCHES] GPO support for client machine policy

Andrew Bartlett abartlet at samba.org
Sun Jan 7 23:58:27 UTC 2018


On Sat, 2017-12-02 at 08:54 -0700, David Mulder wrote:
> These patches add Group Policy support for client machines. Adds a
> winbind event that calls samba_gpoupdate to apply local machine
> policies. Adds the option "winbind gpupdate" to smb.conf, which
> determines whether group policy will be applied to the client. This is
> *disabled* by default for now. Users will need to manually enable this
> to see the new functionality.
> To start off, we only have Environment Variable policies.

I'm not really comfortable with this changing /etc/profile by default. 
It is one thing to change the kdc configuration and the password
settings (as that is the way it should be done), but trying to apply a
windows PATH policy into the unix world just feels wrong, or at least
unexpected.

Sorry,

Andrew Bartlett
-- 
Andrew Bartlett
https://samba.org/~abartlet/
Authentication Developer, Samba Team         https://samba.org
Samba Development and Support, Catalyst IT   
https://catalyst.net.nz/services/samba







More information about the samba-technical mailing list