Re: [SCIENTIFIC-LINUX-USERS] Samba security update for SL7 broke AD authentication

2018-12-11 Thread Gilbert E. Detillieux
Thanks, Jose. That was helpful. Our AD server doesn't have SFU set up, so I commented out the rfc2307-related statements, but plugged in the rest of your recommended config into our smb.conf file. Some progress. I can now enumerate AD users and groups with the "wbinfo" command. I can now

Re: [SCIENTIFIC-LINUX-USERS] Samba security update for SL7 broke AD authentication

2018-12-10 Thread Jose Marques
> On 6 Dec 2018, at 15:45, Gilbert E. Detillieux > wrote: > > What I'm now trying to set up is a working winbindd-based configuration to > essentially do what smbd used to do directly (communicating with the AD > server) before they took that functionality away, with as little fuss (and > opp

Re: [SCIENTIFIC-LINUX-USERS] Samba security update for SL7 broke AD authentication

2018-12-06 Thread Gilbert E. Detillieux
On 06/12/2018 3:53 a.m., Jose Marques wrote: On 5 Dec 2018, at 17:07, Gilbert E. Detillieux wrote: I looked up a few tutorials online, all of which focused on configuring NSS and PAM (with dire warnings about how getting this wrong will break your system authentication What are you trying t

Re: [SCIENTIFIC-LINUX-USERS] Samba security update for SL7 broke AD authentication

2018-12-06 Thread Jose Marques
> On 5 Dec 2018, at 17:07, Gilbert E. Detillieux > wrote: > > I looked up a few tutorials online, all of which focused on configuring NSS > and PAM (with dire warnings about how getting this wrong will break your > system authentication What are you trying to setup? A samba server that uses a