[Samba] Best practice for creating an RO LDAP User in AD...

Rowland Penny rpenny at samba.org
Wed Nov 8 15:34:11 UTC 2017


On Wed, 8 Nov 2017 16:14:20 +0100
Marco Gaiarin via samba <samba at lists.samba.org> wrote:

> Mandi! Rowland Penny via samba
>   In chel di` si favelave...
> 
> > Why don't you do what most people do, use kerberos. Create the user
> > with a random password, set password to never expire, set the users
> > shell to /bin/false. Now set exim to use kerberos (don't ask me
> > how, I don't use exim)
> 
> Seems not possible:
> 
> 	https://lists.exim.org/lurker/message/20120918.093204.bb65a97f.en.html
> 

It seems there is the heimdal_gssapi authenticator:

https://www.exim.org/exim-html-current/doc/html/spec_html/ch-the_heimdalgssapi_authenticator.html

Rowland



More information about the samba mailing list