Robert Thurlow wrote:
> Ian Collins wrote:
>
>>> I've tested with Samba in a zone - it works fine, but the
>>> default zone config suppresses the ability to grant the
>>> SYS_SMB privilege to processes in a zone.  This is fixable
>>> by modifying the zone config (adding sys_smb to the
>>> 'limitpriv' property in the zone).
>
>> What impact does this (SYS_SMB privilege) have on the zone when running
>> Samba?
>
> Only processes with the SYS_SMB priv can listen on the
> SMB/CIFS port 137.  A process in a zone can't be granted
> the process unless the zone has been configured to permit
> that via 'limitpriv'.
>
Odd, I have a couple of dozen zones (both exclusive and shared IP)
running Samba and I didn't have to change the default configuration.

-- 
Ian.

_______________________________________________
cifs-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/cifs-discuss

Reply via email to