Chunduru, Krishnachaithanya
2017-Jul-04 08:55 UTC
[Samba] Authentication issues with Samba 4.3.8
Hi, The users are created locally, each user have their own workstation. The workstation id and the unix id are different. Users will try to access the share with the unix local account only. All the VM's are part of domain, so users will first login to their stations using domain id and then will access the share using unix local id. Thank you. Regards, Krishna -----Original Message----- From: samba [mailto:samba-bounces at lists.samba.org] On Behalf Of Rowland Penny via samba Sent: Monday, July 03, 2017 10:49 PM To: samba at lists.samba.org Subject: Re: [Samba] Authentication issues with Samba 4.3.8 On Mon, 3 Jul 2017 22:38:49 +0530 "Chunduru, Krishnachaithanya" <Krishnachaithanya.Chunduru at broadridge.com> wrote:> Hi, > > All the users are created locally.Do you mean just on the Samba standalone server or on the windows machines as well ?> > Samba share users are not having a shell to modify anything. They can > just login via the windows machines. >Are the windows machines part of a workgroup or a domain ? Rowland -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba This message and any attachments are intended only for the use of the addressee and may contain information that is privileged and confidential. If the reader of the message is not the intended recipient or an authorized representative of the intended recipient, you are hereby notified that any dissemination of this communication is strictly prohibited. If you have received this communication in error, please notify us immediately by e-mail and delete the message and any attachments from your system.
On Tue, 4 Jul 2017 14:25:48 +0530 "Chunduru, Krishnachaithanya" <Krishnachaithanya.Chunduru at broadridge.com> wrote:> Hi, > > The users are created locally, each user have their own workstation. > The workstation id and the unix id are different. > > Users will try to access the share with the unix local account only. > > All the VM's are part of domain, so users will first login to their > stations using domain id and then will access the share using unix > local id. Thank you. >OK, that isn't easy to understand, but I think you mean your users log into a Windows domain computer then connect to your Samba standalone server, is this correct ? If it is correct, WHY? Doing it this way, means you have to create the users three times! If the user changes their password, it also needs to be changed on the standalone server. Have you considered using a Unix domain member instead, this way you only create the user once. See here for more info: https://wiki.samba.org/index.php/Setting_up_Samba_as_a_Domain_Member I would suggest using the 'rid' backend if you do go this way. Rowland
Chunduru, Krishnachaithanya
2017-Aug-04 12:53 UTC
[Samba] Authentication issues with Samba 4.3.8
Hi Rowland/All, I want to sync the local /etc/passwd to smbpasswd database in Aix. Can someone please help with any tools or scripts available to proceed further. Setting up a domain level user for all the samba users is tough for us right now. Regards, Krishna -----Original Message----- From: samba [mailto:samba-bounces at lists.samba.org] On Behalf Of Rowland Penny via samba Sent: Tuesday, July 04, 2017 2:42 PM To: samba at lists.samba.org Subject: Re: [Samba] Authentication issues with Samba 4.3.8 On Tue, 4 Jul 2017 14:25:48 +0530 "Chunduru, Krishnachaithanya" <Krishnachaithanya.Chunduru at broadridge.com> wrote:> Hi, > > The users are created locally, each user have their own workstation. > The workstation id and the unix id are different. > > Users will try to access the share with the unix local account only. > > All the VM's are part of domain, so users will first login to their > stations using domain id and then will access the share using unix > local id. Thank you. >OK, that isn't easy to understand, but I think you mean your users log into a Windows domain computer then connect to your Samba standalone server, is this correct ? If it is correct, WHY? Doing it this way, means you have to create the users three times! If the user changes their password, it also needs to be changed on the standalone server. Have you considered using a Unix domain member instead, this way you only create the user once. See here for more info: https://wiki.samba.org/index.php/Setting_up_Samba_as_a_Domain_Member I would suggest using the 'rid' backend if you do go this way. Rowland -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba This message and any attachments are intended only for the use of the addressee and may contain information that is privileged and confidential. If the reader of the message is not the intended recipient or an authorized representative of the intended recipient, you are hereby notified that any dissemination of this communication is strictly prohibited. If you have received this communication in error, please notify us immediately by e-mail and delete the message and any attachments from your system.