Displaying 2 results from an estimated 2 matches for "winsshgroup".
2017 Aug 10
0
idmap question
...ed and see which groups are used and with SePrivileges you should set.
For me this has advantages, like.
Restricting logins based on linux and windows group/users, of uid/gid ranges.
And for me more flexability in use of winbind or ldap things.
(an example, sshd_config: AllowGroups linuxsshgroup winsshgroup)
* Note: for this user and group MUST have a gid.
This also matches pam restrictions better, kerberos had minimal of uid=1000
For RID its the same, but see AD/RID advantages and disadvantages also.
Hope this helps a bit.
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samb...
2017 Aug 10
3
idmap question
Hi all,
What is the real purpose if the following lines when using idmap-rid or
idmap-ad:
# Default idmap config for local BUILTIN accounts and groups
idmap config * : backend = tdb
idmap config * : range = 3000-7999
When using the next two lines
# idmap config for the SAMDOM domain
idmap config SAMDOM : backend = rid [or ad]
idmap config SAMDOM : range = 10000-999999
AD users will be in