[Samba] net ads status stripped output

Rowland penny rpenny at samba.org
Thu Jun 4 07:31:08 UTC 2020


On 04/06/2020 08:17, Markus Lindberg wrote:
>> If you do not want to authenticate users and groups, why are you joining
>> the computers to AD ?
>>
>> The whole idea behind AD is the centralisation of users and groups. If
>> you are using users and groups created locally on the computer (i.e.
>> they are not in AD), then you are not using AD even if the computer is
>> joined to AD.
>>
>> I think you need to explain just what you are doing.
> We are joining the computers to the AD since we are using 802.1x
> combined with RADIUS to place computers in a AD group that is tied to a
> RADIUS group. This allows us to place computers in different VLANs
> based on the RADIUS group. When we join the computer to the AD it gets
> created in a specific container, then we do _some_ changes to the
> computer object, placing it into a AD group for example.
>
> --
> Markus

What then, there must be users and groups involved (there is at least 
one user, the computer), where do they come from ?

Rowland





More information about the samba mailing list