[Samba] Re: Restricting winbind to the default domain

John H Terpstra jht at Samba.Org
Wed May 18 15:06:21 GMT 2005


On Wednesday 18 May 2005 06:53, Etienne Goyer wrote:
> Michael Gasch wrote:
> > Etienne Goyer wrote:
> >> I want to use winbind in conjunction with nsswitch in a pretty large AD.
> >>  I would like winbind to only map users in the default domain.  As it
> >> is, winbind map users in other trusted domain of the AD too, which is
> >> *not* what I want.
> >>  [...snip...]
> >
> > please have a look at "allow trusted domains"
>
> Thank you very much sir, this is precisely what I need.
>
> It is worth noting that the smb.conf(5) man page have the following to
> say regarding this directive :
>
>     "This option only takes effect when the security option is set to
> server or domain."
>
> This is incorrect, as I am running with "security = ads", and it
> apparently do the right thing.  I'll try to contact the maintainer of
> this man page on the subject.

Thanks for mentioning this. It has been fixed now.

- John T.


More information about the samba mailing list