[Samba] Usage of the machine account for ldapsearch
Rowland Penny
rpenny at samba.org
Wed Feb 4 14:43:11 UTC 2026
On Wed, 4 Feb 2026 13:44:09 +0100
Matthias Kühne | Ellerhold Aktiengesellschaft via samba
<samba at lists.samba.org> wrote:
> Hallo Rowland,
>
> sadly my ldbsearch has no "-P" switch. Looking through the files on
> my domain member I cant find any *.ldb files. These are only
> available on a DC.
>
> This works on a DC:
>
> # ldbsearch -H
> /var/lib/samba/private/sam.ldb.d/DC=AD,DC=ELLERHOLD,DC=LAN.ldb -a
>
> But I had hopes to use the machine account on a domain member.
>
> Using "groups <USER>" is out too, because if a user hasnt logged in
> awhile, then his group membership is just Domain Users and nothing
> more.
>
> Thanks and have a nice day.
>
This is why I install all Samba packages, whether I am going to run
Samba as a DC or a Domain member.
Rowland
More information about the samba
mailing list