[Samba] my protected AD, part 2

Stefan G. Weichinger lists at xunil.at
Wed Nov 7 08:57:12 UTC 2018

Some may remember my thread a few months ago, I asked how to set up a 
somehow protected AD:

I run 2 servers for a department of a company.

They have a ADS Domain BIGCOMPANY and we want and have to deny access to 
their admins ... although it would be comfortable to run the 2 sambas as 
domain member servers (password policies from upstream etc)

So I am NOT admin in their domain but have to make sure that only the ~5 
users of the department can access the shares on my sambas.

ok there is "valid users" per share ... and the linux root user is 
completely separate anyway.

Would that be enough?

More information about the samba mailing list