[Samba] Access to ldb with simpleSecurityObject

Andrew Bartlett abartlet at samba.org
Fri Jul 4 05:04:15 MDT 2014


On Mon, 2014-06-30 at 12:05 +0200, Quentin Gibeaux wrote:
> Hi,
> 
> I'm trying to access to the internal's ldap of samba4 (running as AD-DC) 
> with a simpleSecurityObject entry.
> It seems that the authentication process searches only 'user' objects 
> (objectclass=user) in the ldb. Is that possible to configure the auth 
> behavior ?
> 
> I'd like to use simpleSecurityObject (that aren't 'user') to manage 
> entries from cron, cgi and so on, without allowing this user to login on 
> windows clients, samba shares, etc. I'm afraid that won't be possible, 
> but i might be wrong.

No, it's not possible in Samba.  A user is a user, as far as AD is
concerned.

Andrew Bartlett

-- 
Andrew Bartlett                       http://samba.org/~abartlet/
Authentication Developer, Samba Team  http://samba.org
Samba Developer, Catalyst IT          http://catalyst.net.nz/services/samba




More information about the samba mailing list