[Samba] AD integration checklist
idra at samba.org
Fri Dec 8 21:46:40 GMT 2006
On Fri, 2006-12-08 at 15:23 -0600, James A. Dinkel wrote:
> That's right. Although, I do not have winbind after the shadow
> directive, and I've never seen any documentation saying you need it,
> just after passwd and group.
You are right, winbindd shouldn;t be used after shadow as there is no
such nss stack in winbindd
> Also, I believe this is also required in /etc/pam.d/samba:
> auth required pam_winbind.so
> account required pam_winbind.so
> but I've never tried it without this.
If you wish your users be authenticated via winbindd against the DC,
yes, and you should also add it to the session and password pam stacks.
Samba Team GPL Compliance Officer
email: idra at samba.org
More information about the samba