[Samba] Problem with security = ads

Gerald (Jerry) Carter jerry at samba.org
Mon Aug 22 13:36:10 GMT 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Ronny Egner wrote:

|> smbd should fall back to looking for 'user' if 'domain\user'
|> does not exist.  All of the Windows users have corresponding
|> Unix accounts, correct?
|
| No. I want samba to authenticate the users against ads without
| having the user created locally on the system....
|
| As far as i can see, the authentication 'regner' +
| password from ads works without having 'regner' created
| locally...

Samba needs a uid for the user.  This is the authorization
token on unix.  So in your case, you do need winbindd or
some other mechanism to make windows users and groups visible
to the oss via NSS.





cheers, jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFDCdTKIR7qMdg1EfYRAs5qAKDsEXaXps6kXW9zFBxG4Ka+fxLDegCg7w24
rnx0tJ+pByqj1ndKClDJoOs=
=G26S
-----END PGP SIGNATURE-----


More information about the samba mailing list