RE: [Samba] Authenticateing DC's on an ldap backend... nobody knows how?

2004-09-28 Thread John H Terpstra
>  Original Message 
> Subject: [Samba] Authenticateing DC's on an ldap backend... nobody
> knows how?
> From: "Jim C." <[EMAIL PROTECTED]>
> Date: Mon, September 27, 2004 9:34 pm
> To: [EMAIL PROTECTED]
>
> Doesn't anyone here know how to authenticate hosts in the group 'Domain
> Controllers' such that you don't have to set 'ldap admin dn' to the ldap
> server's root dn?  What's the big deal?  Why is this such a secret?
> Everytime I ask about it I get dead silence. It doesn't seem to matter
> what list I am on either.

I can answer most questions. There are no secrets, just some things that
you could help to better document - if you feel so inclined.
On the other hand, most of us a rather busy people and give our
attention to important issues as much as we can. It is not abnormal
that there are prolonged periods of silence when we are all bogged
down.

If your problem is urgent you might consider hiring a Samba consultant.
See http://www.samba.org/samba/support

- John T.

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Réf. : Re: Re: [Samba] Authenticateing DC's on an ldap backend... nobody knows how?

2004-09-28 Thread stephane . purnelle





I know, but I want to say that samba manage machine group same as a other
group, not for Domain Users and Domain Admin group.
You can create a group for machine account but, I think that actually is
not very important for samba domain.

I can be mistaken.





---
Stéphane PURNELLE [EMAIL PROTECTED]
Service Informatique   Corman S.A.   Tel : 00 32 087/342467


   
  Adam Tauno   
  Williams Pour :   [EMAIL PROTECTED]
  <[EMAIL PROTECTED] cc : [EMAIL PROTECTED]
  nd.com>  Objet :  Re: Re: [Samba] 
Authenticateing DC's on an ldap backend... nobody knows how?
   
  28/09/2004 15:56 
   
   




> Could explain more your problem ?
> On samba there are machine account for windows NT4, 2000, XP but no
> separation between workstation and server and DC.

?  A machine account is machine account,  only WINS cares about the
difference.

> And also, there are no specific group for machine which are managed by
> samba.

This is an entirely site specific setup thing.  If you want all your
machine
accounts created with a given gidNumber you can certainly do that.



--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Re: Re: [Samba] Authenticateing DC's on an ldap backend... nobody knows how?

2004-09-28 Thread Adam Tauno Williams
> Could explain more your problem ?
> On samba there are machine account for windows NT4, 2000, XP but no
> separation between workstation and server and DC.

?  A machine account is machine account,  only WINS cares about the difference.

> And also, there are no specific group for machine which are managed by
> samba.

This is an entirely site specific setup thing.  If you want all your machine
accounts created with a given gidNumber you can certainly do that.
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Re: Re: [Samba] Authenticateing DC's on an ldap backend... nobody knows how?

2004-09-28 Thread stephane . purnelle




Hi,

Could explain more your problem ?

On samba there are machine account for windows NT4, 2000, XP but no
separation between workstation and server and DC.
And also, there are no specific group for machine which are managed by
samba.

---
Stéphane PURNELLE [EMAIL PROTECTED]
Service Informatique   Corman S.A.   Tel : 00 32 087/342467


|-+->
| |   Paul Gienger <[EMAIL PROTECTED]>  |
| |   Envoyé par :  |
| |   [EMAIL PROTECTED]|
| |   s.samba.org   |
| | |
| | |
| |   28/09/2004 15:16  |
| | |
|-+->
  
>---|
  |
   |
  |Pour :   "Jim C." <[EMAIL PROTECTED]>   
|
  |cc : [EMAIL PROTECTED]  
   |
  |Objet :  Re: [Samba] Authenticateing DC's on an ldap backend... nobody 
knows how?  |
  
>---|




Jim C. wrote:

> Doesn't anyone here know how to authenticate hosts in the group
> 'Domain Controllers' such that you don't have to set 'ldap admin dn'
> to the ldap server's root dn?  What's the big deal?  Why is this such
> a secret? Everytime I ask about it I get dead silence. It doesn't seem
> to matter what list I am on either.

Well if that's the way you're asking the question it's probably because
no one can understand what you're talking about and they are too busy
answering well formed quesions to ask for clarification.

--
Paul Gienger Office: 701-281-1884
Applied Engineering Inc.
Information Systems Consultant   Fax:701-281-1322
URL: www.ae-solutions.commailto: [EMAIL PROTECTED]


--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba



--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


Re: [Samba] Authenticateing DC's on an ldap backend... nobody knows how?

2004-09-28 Thread Paul Gienger
Jim C. wrote:
Doesn't anyone here know how to authenticate hosts in the group 
'Domain Controllers' such that you don't have to set 'ldap admin dn' 
to the ldap server's root dn?  What's the big deal?  Why is this such 
a secret? Everytime I ask about it I get dead silence. It doesn't seem 
to matter what list I am on either.
Well if that's the way you're asking the question it's probably because 
no one can understand what you're talking about and they are too busy 
answering well formed quesions to ask for clarification.

--
Paul Gienger Office: 701-281-1884
Applied Engineering Inc. 
Information Systems Consultant   Fax:701-281-1322
URL: www.ae-solutions.commailto: [EMAIL PROTECTED]

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba


[Samba] Authenticateing DC's on an ldap backend... nobody knows how?

2004-09-27 Thread Jim C.
Doesn't anyone here know how to authenticate hosts in the group 'Domain 
Controllers' such that you don't have to set 'ldap admin dn' to the ldap 
server's root dn?  What's the big deal?  Why is this such a secret? 
Everytime I ask about it I get dead silence. It doesn't seem to matter 
what list I am on either.

Jim C.
--
-
| I can be reached on the following Instant Messenger services: |
|---|
| MSN: [EMAIL PROTECTED]  AIM: WyteLi0n  ICQ: 123291844 |
|---|
| Y!: j_c_llings   Jabber: [EMAIL PROTECTED]|
-
--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba