[Samba] Differences between Samba-related PAM modules

Martin Orr samba at martinorr.name
Thu Jan 13 08:43:41 GMT 2005


On Fri, Jan 07, 2005 at 08:42:48AM -0600, Gerald (Jerry) Carter wrote:
> | Alternatively, does anyone know if it is possible to
> | create an NT account whose only ability is to create machine
> | accounts, which I could probably convince the NT
> | domain admin to do for me?
> 
> Yes.  This is possible.  The NT admin will know how.

So, we created an account called LinuxAdmin on the NT PDC (NT 4.0) and gave
it the "Add workstations to domain" user right.  However, on a Linux box if
I do "net rpc join -U LinuxAdmin" (having set workgroup = RMNETNT in
smb.conf) and enter the correct password, I still get
"Create of workstation account failed
User specified does not have administrator privileges
Unable to join domain RMNETNT."

-- 
Martin Orr
Linux Administrator,
Methodist College Belfast


More information about the samba mailing list