Re: [Samba] require_membership_of is ignored

2013-01-26 Thread TAKAHASHI Motonobu
From: John P Arends Date: Thu, 24 Jan 2013 21:45:13 + > The problem is, I can log on as any AD user. > > require_membership_of is being ignored. I can put in a valid group with > no spaces in the name, a group by SID, and either way, everyone can log > in. As far as I examined Samba 3.5.6 s

Re: [Samba] require_membership_of is ignored

2013-01-24 Thread Nico Kadel-Garcia
On Thu, Jan 24, 2013 at 5:24 PM, John P Arends wrote: > I want to make sure if someone also gets local console access somehow they > still can't get in. That's my concern with just making changes to how sshd > authenticates. One way I've dealt with this, and a pretty simple one, is not use LDAP

Re: [Samba] require_membership_of is ignored

2013-01-24 Thread Philipoff, Andrew
, January 24, 2013 1:45 PM To: samba@lists.samba.org Subject: [Samba] require_membership_of is ignored I have a RHEL 6.3 machine successfully bound to AD using winbind, and commands like wbinfo -u and wbinfo -g output the users and groups. I can also log in as any AD user. The problem is, I can l

Re: [Samba] require_membership_of is ignored

2013-01-24 Thread John P Arends
boun...@lists.samba.org [mailto:samba-boun...@lists.samba.org] On > Behalf Of John P Arends > Sent: Thursday, January 24, 2013 1:45 PM > To: samba@lists.samba.org > Subject: [Samba] require_membership_of is ignored > > I have a RHEL 6.3 machine successfully bound to AD using winbind, and

[Samba] require_membership_of is ignored

2013-01-24 Thread John P Arends
I have a RHEL 6.3 machine successfully bound to AD using winbind, and commands like wbinfo -u and wbinfo -g output the users and groups. I can also log in as any AD user. The problem is, I can log on as any AD user. require_membership_of is being ignored. I can put in a valid group with no spa