On January 9, 2010 5:50:14 PM -0500 Frank Cusack <[email protected]> wrote:
My unix usernames and windows usernames are identical, so I could just
try to use the one-to-one rule-based mapping as documented but I'd like
to have the flexibility of windows users that don't have rfc2307
attributes being refused cifs service.

Not that it matters because when I add the rule-based mapping

# idmap add 'winuser:*[email protected]' 'unixuser:*'
# idmap add 'wingroup:*[email protected]' 'unixgroup:*'

this doesn't work, even after I explicitly set
config/ds_name_mapping_enabled to false.

I do notice that in the XYZ.COM/Computers container that the machine
account has a "DNS name" field of "fs1.XYZ.COM" instead of
"fs1.loc.XYZ.COM".

Both cases yield the same result with the machine account having
the incorrectly DNS name field.  That field is not editable in
the Windows GUI.

You can change it in the attribute editor tab, but fixing it has
no effect.

I've also tried setting the smbd/fqdn property of smb/server to
loc.XYZ.COM running smbadm join resets it.

-frank
_______________________________________________
cifs-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/cifs-discuss

Reply via email to