[Samba] ADS membership with Samba 3.0.4

Christoph Scheeder christoph.scheeder at scheeder.de
Wed Aug 11 07:13:07 GMT 2004


Hi,
1.) Yes you definitly need the winbind/nss stuff, as it is the part of 
samba that does what you want: ask an ADS server to verify the 
credentials a user supplys when logging in to samba.
2.) no, it is not sufficient. But you need a working Kerberos library
to get winbind to work.
Christoph

sandeep.sundaram at wipro.com schrieb:
> Hi,
> 
> We are in the process of evaluating the possibility of porting Samba
> 3.0.4 to VxWorks.
> 
> Features wise we don't see any problems. But our main concern is on the
> security. Since we do not have the concept of Users and Groups on
> VxWorks, we cannot have any authentications as such.
> 
> So, the other possibility is to pass on the authentication to another
> Server on the network, typically a AD server (since Samba is required to
> be a part of a domain)
> 
> All the documents that we have seen so far, regarding the ADS
> membership, talk about winbind and NSS.
> 
> My question here is,
> 
> 1. Do I really need winbind or NSS since I am not maintaining any Users
> or Groups locally ?!
> 
> 2. Is it sufficient if I get the Kerberos and sasl support to work on
> VxWorks ?!
> 
> Regards,
> Sandeep Sundaram
> 
> 
> 
> 
> 
> 
> 
> 
> Confidentiality Notice
> 
> The information contained in this electronic message and any attachments to this message are intended
> for the exclusive use of the addressee(s) and may contain confidential or privileged information. If
> you are not the intended recipient, please notify the sender at Wipro or Mailadmin at wipro.com immediately
> and destroy all copies of this message and any attachments.



More information about the samba mailing list