On Sun, Jul 07, 2002 at 05:39:04PM -0400, Sam Varshavchik wrote:
> >Any ideas on how to solve this problem are welcome. I'd also appreciate
> >alternative solutions for my "create maildir on the fly" approach.
> 
> Whichever process you use to create new accounts, add additional logic to 
> the same process that creates the home directory and maildirs.  Presumably, 
> new accounts on your systems don't materialize out of thin air after 
> someone says "Hocus-pocus".  Presumably, you have some kind of a process 

Actually they do :-)

WinbindD is a full-blown Name Service Switch (/usr/lib/libnss_winbind.so)
and when it's installed and /etc/nsswitch.conf changed, any getpwent-style
call is intercepted by winbindd and goes off to the Windows domain. It's
great - your Unix account is "DOMAIN+account" and your Windows groups come
through too. However, the actual creation of directories assosiated with
that user is still a Unix process. That's why he refers to pam_mkhomedir.
When the PAM process (e.g. login or sshd) gets to the session components, it
can call pam_mkhomedir which auto-creates the home dir as these "virtual"
users login for the first time. 

None of the Courier PAM-enabled services appear to support the PAM session
components, and therefore cannot load pam_mkhomedir.so

I couldn't find a way around it. In the end I resorted to cronjobbing a
Windows user-dump each night and create their home dirs from that. Then all
the rest of the Winbindd stuff works.

-- 
Cheers

Jason Haar
Information Security Manager, Trimble Navigation Ltd.
Phone: +64 3 9635 377 Fax: +64 3 9635 417
PGP Fingerprint: 7A2E 0407 C9A6 CAF6 2B9F 8422 C063 5EBB FE1D 66D1


-------------------------------------------------------
This sf.net email is sponsored by:ThinkGeek
We have stuff for geeks like you.
http://thinkgeek.com/sf
_______________________________________________
courier-users mailing list
[EMAIL PROTECTED]
Unsubscribe: https://lists.sourceforge.net/lists/listinfo/courier-users

Reply via email to