[Samba] default backend = rid not showing full group information for users

Magnus Holmgren holmgren at lysator.liu.se
Tue May 5 17:57:03 UTC 2020


tisdag 5 maj 2020 kl. 09:31:08 CEST skrev Rowland penny via samba:
> > I thought you were asking for a use case. No, if you don't have any
> > systemd
> > units that make use of the dynamic user feature, you don't need to include
> > that NSS module. Strictly speaking, you don't need it even you do use that
> > feature; that just means you can't translate the uids and gids, but since
> > they are ephemeral and not supposed to own any files, other than possibly
> > temporary ones, I don't see how that's much of a loss.
> 
> OK, I will try this another way, just what are 'dynamic users' and what
> would you use them for ?
> 
> I have only been using Linux since shortly after Linus released it and I
> have never used a 'dynamic user' or felt the need to.

It's explained on the man page. It's just a UID/GID pair systemd allocates 
from the range 61184...65519, but a few other security features are implied, 
such as private /tmp and readonly file system.

http://man7.org/linux/man-pages/man5/systemd.exec.5.html#OPTIONS

-- 
Magnus Holmgren        holmgren at lysator.liu.se
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.samba.org/pipermail/samba/attachments/20200505/0fc05f73/signature.sig>


More information about the samba mailing list