[Samba] default backend = rid not showing full group information for users
Magnus Holmgren
holmgren at lysator.liu.se
Tue May 5 17:57:03 UTC 2020
tisdag 5 maj 2020 kl. 09:31:08 CEST skrev Rowland penny via samba:
> > I thought you were asking for a use case. No, if you don't have any
> > systemd
> > units that make use of the dynamic user feature, you don't need to include
> > that NSS module. Strictly speaking, you don't need it even you do use that
> > feature; that just means you can't translate the uids and gids, but since
> > they are ephemeral and not supposed to own any files, other than possibly
> > temporary ones, I don't see how that's much of a loss.
>
> OK, I will try this another way, just what are 'dynamic users' and what
> would you use them for ?
>
> I have only been using Linux since shortly after Linus released it and I
> have never used a 'dynamic user' or felt the need to.
It's explained on the man page. It's just a UID/GID pair systemd allocates
from the range 61184...65519, but a few other security features are implied,
such as private /tmp and readonly file system.
http://man7.org/linux/man-pages/man5/systemd.exec.5.html#OPTIONS
--
Magnus Holmgren holmgren at lysator.liu.se
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.samba.org/pipermail/samba/attachments/20200505/0fc05f73/signature.sig>
More information about the samba
mailing list