[Samba] \System32\GroupPolicy named pipe?

Andrew Bartlett abartlet at samba.org
Sun Dec 1 20:10:01 GMT 2002


On Mon, 2002-12-02 at 06:59, Jason Spence wrote:
> On Sun, Dec 01, 2002 at 12:25:40PM +1100, Andrew Bartlett wrote: 
> 
> > Just a clarification: You can do IPC operations on disk shares, and some
> > domain clients use ADMIN$ for the IPC part of the domain join.  As Samba
> > doesn't want to provide a 'disk' share that admins can't control, it
> > maps it as an IPC share.
> 
> If I taught samba how to deal with a ADMIN$ share which defined a
> path = XXX while at the same time keeping the IPC functionality, would
> that violate any assumptions other code has?  You make it sound like
> it might be a security risk too...

Not as far as I know - see param/loadparm.c for the function that adds
ADMIN$ and IPC$ - you would just remove that 'add'.  Hmm, you might even
get away with defining admin$ as a share...

Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at pcug.org.au
Manager, Authentication Subsystems, Samba Team  abartlet at samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
http://samba.org     http://build.samba.org     http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba/attachments/20021201/57878fd2/attachment.bin


More information about the samba mailing list