Luc Lalonde
2022-Jan-13 15:22 UTC
[Samba] Samba on CentOS 8 with sssd and AD users/groups and local users/groups
Hello Rowland, I've read the article mentionned below...? and I don't see how it could be interpreted as a 'non-recomendation'. When you go through the documentation for RHEL AD integration, they mostly point to SSSD use. In fact, that article states that the two (Winbind and SSSD) are complimentary. SSSD needs Winbind for AD integration.?? Winbind can be used alone for AD integration... I have to say though, I've had success using Winbind alone on RHEL7, but not RHEL8. This subject has been beaten to death on this list... So sorry for adding to it.?? Just want to add my personal note. We use SSSD with Winbind on all our systems (CentOS 7, 8 and Fedora).?? It's rock solid for us. Cheers, Luc. On 1/13/22 10:07, Rowland Penny via samba wrote:> Not really, even red-hat admits that while you can use sssd with Samba, > they do not recommend it, see here: > > https://access.redhat.com/articles/4355391-- Luc Lalonde, analyste ----------------------------- D?partement de g?nie informatique et g?nie logiciel: ?cole polytechnique de MTL (514) 340-4711 x5049 Luc.Lalonde at polymtl.ca
Rowland Penny
2022-Jan-13 15:47 UTC
[Samba] Samba on CentOS 8 with sssd and AD users/groups and local users/groups
On Thu, 2022-01-13 at 10:22 -0500, Luc Lalonde via samba wrote:> Hello Rowland, > > I've read the article mentionned below... and I don't see how it > could > be interpreted as a 'non-recomendation'.Did you miss this under 'Support status': [quote] Therefore Red Hat currently does not recommend using the idmap_sss module for Samba file server enrolled into an IdM or AD domain. [/quote] They only provide limited support if you use sssd with Samba and only then if it is an existing setup. I cannot see any other definition of 'does not recommend' other than 'do not use it' Rowland