[Samba] LDAP, checkpwnam and PDC

2006-12-04 Thread Ben Wheare
Hiya, I'm trying to set up a Samba PDC with an LDAP backend. I experienced problems joining machines to domains, the machine account was created, but Windows said user name cannot be found. I resolved this by adding ldap to /etc/nsswitch.conf, but this has the side effect of allowing ldap

Re: [Samba] LDAP, checkpwnam and PDC

2006-12-04 Thread Carlos Eduardo Pedroza Santiviago
Hi, On 12/4/06, Ben Wheare [EMAIL PROTECTED] wrote: Hiya, I'm trying to set up a Samba PDC with an LDAP backend. I experienced problems joining machines to domains, the machine account was created, but Windows said user name cannot be found. I resolved this by adding ldap to

Re: [Samba] LDAP, checkpwnam and PDC

2006-12-04 Thread Edmundo Valle Neto
If you dont want some users to be able to login using their posix accounts give to them a null shell, put /bin/false in the shell attribute. I dont know what distribution do you use or what is the default of idealx scripts, but in Debian, smbldap-tools (the packaged idealx scripts) does that

Re: [Samba] LDAP, checkpwnam and PDC

2006-12-04 Thread Marc Muehlfeld
Hi, Carlos Eduardo Pedroza Santiviago schrieb: People (only 3) who can login via SSH already have real user accounts in /etc/passwd etc. You don`t need to create special real user accounts, like you call them. Restrict sshd with AllowGroups, AllowUsers, DenyGroups and/or DenyUsers. Also you

Re: [Samba] LDAP, checkpwnam and PDC

2006-12-04 Thread Matt Skerritt
On 05/12/2006, at 4:28 AM, Ben Wheare wrote: Hiya, I'm trying to set up a Samba PDC with an LDAP backend. I experienced problems joining machines to domains, the machine account was created, but Windows said user name cannot be found. I resolved this by adding ldap to /etc/nsswitch.conf,