[Samba] Prevent smbd from consulting winbindd

Victor Sudakov vas at mpeks.tomsk.su
Wed Jan 25 03:49:00 MST 2012


Lukas wrote:
> >>> Colleagues, please respond. Have I asked something too unconventional
> >>> or something too trivial?
> >>
> >> idmap backend = nss ??
> >
> > Its man page is very scarce. Is it supposed to work at all? Do you have any
> > experience with it?
> >
> > root at fs02-sibptus:~# id zimaev uid=3237(zimaev) gid=2000(user) groups=2000(user),2012(budget),3134(pto),2011(ntd)
> > root at fs02-sibptus:~# wbinfo -n zimaev S-1-5-21-839522115-2139871995-725345543-1618 User (1)
> > root at fs02-sibptus:~# wbinfo -i zimaev
> > Could not get info for user zimaev
> > root at fs02-sibptus:~#
> >
> > what gives?
> >
> 
> what do you have in smb.conf defined for security?
> (general portion of smb.conf)

[global]
workgroup = SIBPTUS
wins server = 10.14.134.1 10.14.134.4
security = domain
idmap backend = nss
idmap uid = 1000-1999999
idmap gid = 1000-1999999
template shell = /bin/bash
winbind use default domain = Yes
allow trusted domains = Yes


-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
sip:sudakov at sibptus.tomsk.ru


More information about the samba mailing list