w2k join/logon

Andrew Bartlett abartlet at samba.org
Wed Dec 14 01:34:54 GMT 2005


On Wed, 2005-12-14 at 10:04 +1100, tridge at samba.org wrote:
> Andrew,
> 
>  > If win2000 operates in an AD domain without a servicePrincipalName, then
>  > we need to add logic to our cracknames code, so that when we lookup by
>  > SPN we find the account.
> 
> I assumed the fix would be to automatically add a default
> servicePrincipalName attribute to machine accounts when they are
> created. Why do you think its better to work around it not being
> there?

Mostly I was thinking of the sync issues, if we are comparing with
windows LDAP.  We should check what windows allows/does, but I'm quite
happy to have this automatically created, as it's just simpler.....

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Student Network Administrator, Hawker College  http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20051213/9b93f04f/attachment.bin


More information about the samba-technical mailing list