[Samba] Problems with groups, minimum gidnumber?

Rowland penny rpenny at samba.org
Fri May 15 17:33:41 UTC 2020


On 15/05/2020 18:26, Harald Hannelius wrote:
>
> On Fri, 15 May 2020, Rowland penny via samba wrote:
>> On 15/05/2020 16:33, Harald Hannelius wrote:
>>> If there's a way to copy the sambaNTPassword password-hash from the 
>>> LDAP for the Samba 3 DC with samba-tool I would have loved to find 
>>> that information long ago :)
>> Why do you need the sambaNTPassword ?
>
> So the users would have the same password. I don't have time to wait 
> for our IDM to change the passwords one by one.
That is another reason to lose the IDM, AD is an IDM.
> That migh be true. I have two large filesystems with users and groups 
> that would have required migration in that case. Which would have been 
> an even greater mess I think.
>
> But since my users now have uidNumber: in AD, don't they use that as 
> uid and not the RID?

Yes and no ;-)

The uid is used to identify the Unix user and the RID is used for 
authentication.

Just a thought, it is possible your Samba users are using the AD 
password anyway.

Rowland






More information about the samba mailing list