[Samba] Samba Domain member server - using domain part within authentication

Michal Bruncko michal.bruncko at gmail.com
Fri Jul 27 14:36:02 MDT 2012

Hi list,

found solution ... it was here requested before - 

solution for me is using following global parameter: "map untrusted to 
domain = yes"

working for me :)


On 7/27/2012 2:39 PM, Michal Bruncko wrote:
> Hello list,
> We are using several file servers in our enviroment in following way:
> - 1st fileserver is PDC
> - 2nd ... Xth are domain memeber server (with security = domain, and 
> joined in domain via "net rpc join" command)
> When user is logging into 1st fileserver, he can be successfully 
> authenticated with typing only "username" (without domain part) and 
> his password from client computer which is NOT part of this domain.
> But when user is trying to log in to some domain member server, the 
> authentication willl not be successful until hi use login in form 
> "DOMAIN\username" and his password.
> I need to note here, that winbind is not running on member servers, 
> just pure smbd and nmbd daemons.
> Is there any way how to authenticate to member servers without using 
> domain part in authentication name?
> I am using:
> - on Server: samba on CentOS 6 - samba-3.5.10-125.el6.x86_64
> - on Client: windows 7
> many thanks
> michal

More information about the samba mailing list