[Samba] Restricting AD group logging on to Servers

Marco Gaiarin gaio at sv.lnf.it
Mon Dec 4 08:37:37 UTC 2017


Mandi! Roy Eastwood via samba
  In chel di` si favelave...

> or should I set it to /dev/null or similar non-existent dir?

Pay a little attention to that.

If you set an invalid shell for users, in newer debian this can lead to
minor trouble (eg; if you run scripts for users with 'su', they did not work or
you have to run with explicit shell).


I prefere to have all users with valid shell, and act elsewhere (eg, in
SSH in 'authorized-groups').

-- 
dott. Marco Gaiarin				        GNUPG Key ID: 240A3D66
  Associazione ``La Nostra Famiglia''          http://www.lanostrafamiglia.it/
  Polo FVG   -   Via della Bontà, 7 - 33078   -   San Vito al Tagliamento (PN)
  marco.gaiarin(at)lanostrafamiglia.it   t +39-0434-842711   f +39-0434-842797

		Dona il 5 PER MILLE a LA NOSTRA FAMIGLIA!
      http://www.lanostrafamiglia.it/index.php/it/sostienici/5x1000
	(cf 00307430132, categoria ONLUS oppure RICERCA SANITARIA)



More information about the samba mailing list