[Samba] Authenticating to AD server fails.

Gerald (Jerry) Carter jerry at samba.org
Fri Sep 7 21:40:28 GMT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Ray Van Dolson wrote:

> Is it possible to use ADS authentication for Samba
> hare access _without_ having to configure the system
> to also use ADS authentication (via nsswitch, etc)
> as well?

Yes.  Windows users can be mapped to local users.  But
from your log files:

  Get_Pwnam_internals didn't find user [AVWORLD\ray5147]!

  Get_Pwnam_internals didn't find user [ray5147]!


I'm wondering what account ray5147 is supposed to map to.

> In other words, I want Fedora server A to use just its 
> local files for system authentication (no winbind in nsswitch),
> but any Samba shares exported by server A should authenticate
> its users against ADS.
> 
> Possible?  Should I be using security = domain instead?

Doesn't make any difference.  ads and domain work
basically the same.





cheers, jerry
=====================================================================
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFG4cVMIR7qMdg1EfYRAvPVAJ4oQPuYBkutcJw5glx6cgBj0jqk0QCgzVeB
XlugW94fw9SsupeAiPSNTOY=
=d110
-----END PGP SIGNATURE-----


More information about the samba mailing list