On Wed, 2003-10-15 at 08:05, Gavin Davenport wrote:
> wbinfo --set-auth-user=Administrator%password ????

NEVER do this.

There is never a good reason to do this.  The wbinfo command is for NT4
trusted domains, that are running 'restrict anonymous'.  If you are
joined with ADS, and there are ADS trusts to these machines, then Samba
can use kerberos, and never needs a 'wbinfo' user.

Even when you do need a 'wbinfo user', it does not need any special
powers - only those given to *every* user.  So add a new, boring,
unprivileged user.

That password is stored clear-text, in secrets.tdb.

Andrew Bartlett

-- 
Andrew Bartlett                                 [EMAIL PROTECTED]
Manager, Authentication Subsystems, Samba Team  [EMAIL PROTECTED]
Student Network Administrator, Hawker College   [EMAIL PROTECTED]
http://samba.org     http://build.samba.org     http://hawkerc.net

Attachment: signature.asc
Description: This is a digitally signed message part

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba

Reply via email to