[Samba] \System32\GroupPolicy named pipe?
Andrew Bartlett
abartlet at samba.org
Sun Dec 1 20:10:01 GMT 2002
On Mon, 2002-12-02 at 06:59, Jason Spence wrote:
> On Sun, Dec 01, 2002 at 12:25:40PM +1100, Andrew Bartlett wrote:
>
> > Just a clarification: You can do IPC operations on disk shares, and some
> > domain clients use ADMIN$ for the IPC part of the domain join. As Samba
> > doesn't want to provide a 'disk' share that admins can't control, it
> > maps it as an IPC share.
>
> If I taught samba how to deal with a ADMIN$ share which defined a
> path = XXX while at the same time keeping the IPC functionality, would
> that violate any assumptions other code has? You make it sound like
> it might be a security risk too...
Not as far as I know - see param/loadparm.c for the function that adds
ADMIN$ and IPC$ - you would just remove that 'add'. Hmm, you might even
get away with defining admin$ as a share...
Andrew Bartlett
--
Andrew Bartlett abartlet at pcug.org.au
Manager, Authentication Subsystems, Samba Team abartlet at samba.org
Student Network Administrator, Hawker College abartlet at hawkerc.net
http://samba.org http://build.samba.org http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba/attachments/20021201/57878fd2/attachment.bin
More information about the samba
mailing list