[Samba] Deny login for a specific user in a specific machine in a samba domain

Rodrigo Abrantes Antunes rodrigoantunes at pelotas.ifsul.edu.br
Wed May 20 06:00:20 MDT 2015


  Well, samba 3 can't act as AD DC, so I guess the only way I can achieve
this remotely is setting this in registry using a login script. How can I
set this in registry? There Isn't something that automates the creation of
scripts that change policies by registry?

Citando Marc Muehlfeld <mmuehlfeld at samba.org>:

> Hello Rodrigo,
>
> Am 19.05.2015 um 13:40 schrieb Rodrigo Abrantes Antunes:
>> PDC. I'm using samba 3, I need scripts to apply GPO?
>
> You need an AD DC, to use group policies. I'm pretty sure that you can't
> do that in an NT4 domain with poledit, too.
>
> A workaround may be to deny the logon for this user in the machines
> local security policy:
> https://technet.microsoft.com/en-us/library/dd277395.aspx
> Computer Configuration\Windows Settings\Security Settings\Local
> Policies\User Rights Assignment -> Deny logon locally
>
> Regards,
> Marc
> --
> To unsubscribe from this list go to the following URL and read
> theinstructions:  https://lists.samba.org/mailman/options/samba
-- 
Rodrigo Abrantes Antunes
Instituto Federal Sul-rio-grandense


More information about the samba mailing list