Hi MJ,

On 20.03.19 15:38, mj wrote:
> Our concern: these regular AD tools will not change the LAM
> unixPassword. So that intial password will remain eternally in AD. We
> are not sure if it is possible to actually use that password to logon
> (as LDAP/windows logins will use the regular unicodePwd password, I guess)

true, I plan to allow deactivation of Unix password option via server profile. 
This will be part of LAM 6.8.


> Another thing: is it possible to set a default unix group? Can't find
> such an option in LAM. It seems to default to the top group,
> alphabetically. We would like to set unix group to "Domain Users", and
> manage other group memberships using the windows groups.

This can be done with profile editor:

https://www.ldap-account-manager.org/static/doc/manual/ch05.html#a_accountProfile


Best regards

Roland

-- 

LDAP Account Manager
https://www.ldap-account-manager.org/


_______________________________________________
Lam-public mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/lam-public

Reply via email to