w2k join/logon

Stefan (metze) Metzmacher metze at samba.org
Wed Dec 14 16:58:27 GMT 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Andrew Bartlett schrieb:
> On Wed, 2005-12-14 at 10:04 +1100, tridge at samba.org wrote:
>> Andrew,
>>
>>  > If win2000 operates in an AD domain without a servicePrincipalName, then
>>  > we need to add logic to our cracknames code, so that when we lookup by
>>  > SPN we find the account.
>>
>> I assumed the fix would be to automatically add a default
>> servicePrincipalName attribute to machine accounts when they are
>> created. Why do you think its better to work around it not being
>> there?
> 
> Mostly I was thinking of the sync issues, if we are comparing with
> windows LDAP.  We should check what windows allows/does, but I'm quite
> happy to have this automatically created, as it's just simpler.....

I would say just do what w2k3 does, when a w2k machine joins

- --
metze

Stefan Metzmacher <metze at samba.org> www.samba.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3-nr1 (Windows XP)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFDoE8vm70gjA5TCD8RAiOAAJsEQbnrpPjwbbwgcxlUDBJ97dyLtgCgv4XM
BLHU5ps5KaUcPFppaR1JAqE=
=2aVT
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list