[Samba] Host based access control?

Min Wai Chan dcmwai at gmail.com
Mon Dec 8 10:56:30 MST 2014


If you are using windows as a client...

Samba AD DC GPO do support client and host limitation with time limit.

But I'm not too sure if that happen to any linux client...

On Tue, Dec 9, 2014 at 1:30 AM, Marc Muehlfeld <mmuehlfeld at samba.org> wrote:

> Hello John,
> Am 08.12.2014 um 18:22 schrieb John Lewis:
> > I am talking about using the Samba4-ad-dc in conjunction with PAM or
> > some other method I haven't thought of to prevent users from logging on
> > to certain servers.
> You can't do this with GPO, because nothing on the server can interpret
> the GPO stuff. And I don't recommend to change the directory ACLs for that!
> You can configure PAM to allow local/remote logins only for members of
> an (LDAP) group. There are many tutorials about that on the internet.
> Regards,
> Marc
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba

More information about the samba mailing list