Displaying 4 results from an estimated 4 matches for "cc961563".
2017 Nov 08
4
Best practice for creating an RO LDAP User in AD...
...t install --purge postfix
That installs postfix and removes exim and purges exims config.. ;-)
The setup for the Ad in the link below is the same but if you want access without auth,
Have you tried to query the GC ports. ( 3268 or 3269 )
And read :
https://technet.microsoft.com/en-us/library/cc961563.aspx
That should work, havent tried it myself to be honist, dont use it..
Greetz,
Louis
> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces at lists.samba.org] Namens
> Marco Gaiarin via samba
> Verzonden: woensdag 8 november 2017 16:14
> Aan: samba at list...
2017 Nov 09
0
Best practice for creating an RO LDAP User in AD...
...=ad,DC=fvg,DC=lnf,DC=it> with scope subtree
# filter: (uid=gaio)
# requesting: ALL
#
# search result
search: 2
result: 1 Operations error
text: 00002020: Operation unavailable without authentication
# numResponses: 1
> And read :
> https://technet.microsoft.com/en-us/library/cc961563.aspx
> That should work, havent tried it myself to be honist, dont use it..
Interesting. But scare me a bit. In this way i can put in anonymous
access also the password hashes?
Really, AFAI've understoow well, the ACL in AD are a complex beast, and
broke things, or make some restricted i...
2017 Nov 16
1
Best practice for creating an RO LDAP User in AD...
...GC ports. ( 3268 or 3269 )
>
> No, but now yes and does not work:
Yes, GC is just as restricted as the normal ports, just read-only and
covering the full forest (if we had forest support, which we do not).
>
> > And read :
> > https://technet.microsoft.com/en-us/library/cc961563.aspx
> > That should work, havent tried it myself to be honist, dont use it..
>
> Interesting. But scare me a bit. In this way i can put in anonymous
> access also the password hashes?
I'm not sure what you mean here exactly, but do avoid anonymous access
if at all possible....
2017 Nov 08
5
Best practice for creating an RO LDAP User in AD...
Mandi! Rowland Penny via samba
In chel di` si favelave...
> Not sure what you are proposing is going to work, AD expects every user
> to be a member of Domain Users, even though there is nothing in AD to
> show membership.
Ah.
> Do you require this user to visible on all domain machines ?
[...]
> It might help if you could explain how you are going to use your new
> user