[Samba] Samba3.0a20 PDC + win2k client

Andrew Bartlett abartlet at samba.org
Fri Nov 15 10:23:00 GMT 2002


On Fri, 2002-11-15 at 09:32, Samba Guy wrote:
> Here is my config.
> 
> 
> [global]
>         workgroup = TESTDOMAIN
>         netbios name = TEST
>         null passwords = Yes
>         passdb backend = ldapsam:ldap://localhost
>         log file = /usr/local/samba/logs
>         add user script = /usr/sbin/useradd -d /dev/null -g 503 -s
> /bin/false -M %u
>         add machine script = /usr/sbin/useradd -d /dev/null -g 503 -s
> /bin/false -M %u
>         logon path = \\%N\profiles\%g
>         logon drive = U:
>         domain logons = Yes
>         os level = 255
>         preferred master = True
>         domain master = True
>         wins server = 192.168.0.15
>         wins support = Yes
> <----
> Ldap settings removed
> ---->
>         ldap ssl = start tls
>         comment = Linux RedHat Samba Server
>         guest ok = Yes
>         security = server

Why do you have 'security=server' and use ldapsam?  Particularly as you
are forcing your machine as the PDC.

Firstly, you should never use 'security=server' unless you cannot use
'security=domain' or 'security=ads', and secondly, you can't use it and
be a PDC...

Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at pcug.org.au
Manager, Authentication Subsystems, Samba Team  abartlet at samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
http://samba.org     http://build.samba.org     http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba/attachments/20021115/16f50a87/attachment.bin


More information about the samba mailing list