[Samba] Password expiration

Darin Bawden dbawden at teamdme.com
Mon Oct 14 14:31:01 GMT 2002


Good morning everyone,
Just a quick question.   I have a Samba server set up as a PDC  with 
2.2.3a-6.  Things seem to be going OK.  However, something that has finally 
started to show up is password expiration.  I know users can change Windows 
passwords and that should, in theory, change the passwords on the Linux 
server.  What I'm wondering is is if there's a way to tell samba/linux to 
send a warning box X number of days ahead of expiration.  I thought I had 
that set up, but it doesn't seem to be working.
         Here's an output of Testparm of my current box.  Thanks for all 
the help  :)
[global]
         coding system =
         client code page = 850
         code page directory = /usr/share/samba/codepages
         workgroup = TEAMDME
         netbios name = LINUX1
         netbios aliases =
         netbios scope =
         server string = Linux Server
         interfaces =
         bind interfaces only = No
         security = USER
         encrypt passwords = Yes
         update encrypted = No
         allow trusted domains = Yes
         hosts equiv =
         min passwd length = 5
         map to guest = Never
         null passwords = No
         obey pam restrictions = Yes
         password server =
         smb passwd file = /etc/samba/smbpasswd
         root directory =
         pam password change = Yes
         passwd program = /usr/bin/passwd %u
         passwd chat = *New*password* %n\n *Retype*new*password* %n\n 
*passwd:*all*authentication*tokens*updated*successfully*
         passwd chat debug = No
         username map =
         password level = 0
         username level = 0
         unix password sync = Yes
         restrict anonymous = No
         lanman auth = Yes
         use rhosts = No
         log level = 2
         syslog = 1
         syslog only = No
         log file = /var/log/samba/%m.log
         max log size = 0
         timestamp logs = Yes
         debug hires timestamp = No
         debug pid = No
         debug uid = No
         protocol = NT1
         large readwrite = No
         max protocol = NT1
         min protocol = CORE
         read bmpx = No
         read raw = Yes
         write raw = Yes
         nt smb support = Yes
         nt pipe support = Yes
         announce version = 4.5
         announce as = NT
         max mux = 50
         max xmit = 65535
         name resolve order = lmhosts host wins bcast
         max packet = 65535
         max ttl = 259200
         max wins ttl = 518400
         min wins ttl = 21600
         time server = No
         unix extensions = No
         change notify timeout = 60
         deadtime = 0
         getwd cache = Yes
         keepalive = 300
         lpq cache time = 10
         max smbd processes = 0
         max disk size = 0
         max open files = 10000
         read size = 16384
         socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
         stat cache size = 50
         use mmap = Yes
         total print jobs = 0
         load printers = Yes
         printcap name = /etc/printcap
         disable spoolss = No
         enumports command =
         addprinter command =
         deleteprinter command =
         show add printer wizard = Yes
         os2 driver map =
         strip dot = No
         character set =
         mangled stack = 50
         stat cache = Yes
         domain admin group = @root
         domain guest group =
         machine password timeout = 604800
         add user script = /usr/bin/adduser -d /dev/null -g 100 -s 
/bin/false -M %m$
         delete user script =
         logon script =
         logon path = \\%N\%U\profile
         logon drive =
         logon home = \\%N\%U
         domain logons = Yes
         os level = 99
         lm announce = Auto
         lm interval = 60
         preferred master = True
         local master = Yes
         domain master = True
         browse list = Yes
         enhanced browsing = Yes
         dns proxy = No
         wins proxy = No
         wins server =
         wins support = No
         wins hook =
         kernel oplocks = Yes
         oplock break wait time = 0
         add share command =
         change share command =
         delete share command =
         config file =
         preload =
         lock dir = /var/cache/samba
         utmp directory =
         wtmp directory =
         utmp = No
         default service =
         message command =
         dfree command =
         valid chars =
         remote announce =
         remote browse sync =
         socket address = 0.0.0.0
         homedir map = auto.home
         time offset = 0
         NIS homedir = No
         source environment =
         panic action =
         hide local users = No
         host msdfs = No
         winbind uid =
         winbind gid =
         template homedir = /home/%D/%U
         template shell = /bin/false
         winbind separator = \
         winbind cache time = 15
         winbind enum users = Yes
         winbind enum groups = Yes
         comment =
         path =
         alternate permissions = No
         username =
         guest account = nobody
         invalid users =
         valid users =
         admin users =
         read list =
         write list =
         printer admin = @ntadmin
         force user =
         force group =
         read only = Yes
         create mask = 0744
         force create mode = 00
         security mask = 0777
         force security mode = 00
         directory mask = 0755
         force directory mode = 00
         directory security mask = 0777
         force directory security mode = 00
         inherit permissions = No
         guest only = No
         guest ok = No
         only user = No
         hosts allow =
         hosts deny =
         status = Yes
         nt acl support = Yes
         max connections = 0
         min print space = 0
         strict allocate = No
         strict sync = No
         sync always = No
         write cache size = 0
         max print jobs = 1000
         printable = No
         postscript = No
         printing = lprng
         print command = lpr -r -P%p %s
         lpq command = lpq -P%p
         lprm command = lprm -P%p %j
         lppause command =
         lpresume command =
         queuepause command =
         queueresume command =
         printer name =
         use client driver = No
         default devmode = No
         printer driver =
         printer driver file = /etc/samba/printers.def
         printer driver location =
         default case = lower
         case sensitive = No
         preserve case = Yes
         short preserve case = Yes
         mangle case = No
         mangling char = ~
         hide dot files = Yes
         hide unreadable = No
         delete veto files = No
         veto files =
         hide files =
         veto oplock files =
         map system = No
         map hidden = No
         map archive = Yes
         mangled names = Yes
         mangled map =
         browseable = Yes
         blocking locks = Yes
         fake oplocks = No
         locking = Yes
         oplocks = Yes
         level2 oplocks = Yes
         oplock contention limit = 2
         posix locking = Yes
         strict locking = No
         share modes = Yes
         copy =
         include =
         exec =
         preexec close = No
         postexec =
         root preexec =
         root preexec close = No
         root postexec =
         available = Yes
         volume =
         fstype = NTFS
         set directory = No
         wide links = Yes
         follow symlinks = Yes
         dont descend =
         magic script =
         magic output =
         delete readonly = No
         dos filemode = No
         dos filetimes = No
         dos filetime resolution = No
         fake directory create times = No
         vfs object =
         vfs options =
         msdfs root = No

even though it's listing Winbind here, I'm not actually using it.  I really 
don't know why it's there.  As you might have guessed, I'm still kind of 
new to this whole thing.

Thanks agian  :)

Darin Bawden
dbawden at teamdme.com






More information about the samba mailing list