[Samba] GPO on a DC

Rowland Penny rpenny at samba.org
Fri Jun 24 15:09:31 UTC 2022


On Fri, 2022-06-24 at 14:45 +0000, samba-ml-en wrote:
> Hello Rowland,
> 
> I removed the down level options, left the winbind enum ones (I am
> still testing, not many users/groups), re-enabled netbios, and
> disabled winbind over RPC.
> 
> now I can see better ldap conversation, however I am hitting in one
> case the same problem as before, the other probably another issue.
> so:
> 
> 1) tls enabled = Yes
> 
> I have a valid certificate

You may have, but don't use ldaps, use kerberos instead, it is more
secure.

Rowland





More information about the samba mailing list