[Samba] Re: Simple LDAP authentication

Michal Kurowski mkur at gazeta.pl
Thu Feb 10 21:03:47 GMT 2005


Tyler R. Retzlaff [rtr at myinternet.com.au] wrote:
> 
> Why would smb.conf care about pam?

To put it in simple terms:

To make it possible native unix (or "faked" - created by winbind)
credentials to bind to the Ldap server. 

Without it you would have to use "some other" (privileged/proxy)
account to actually bind to the server. Then the privileges would be
(somehow) dropped.

Pam lets you use the original account to begin with - with all possible
group assignments unaffected. Leveraging it in context of various
machines/roles is up to you.

HTH,

-- 
Michal Kurowski
perl -e '$_=q#: 13_2: 12/o{>: 8_4) (_4: 6/2^-2; 3;-2^\2: 5/7\_/\7: 12m m::#;
y#:#\n#;s#(\D)(\d+)#$1x$2#ge;print'


More information about the samba mailing list