On Thu, 2003-05-29 at 04:13, Tom Hallewell wrote:
> I should probably add some clarifications here.  First, since we have over
> 200 users, we would like to not have to add the users anywhere.  It seems
> like the tweak would have to take place in PAM.
> What we'd really like to do is find a friendly way where PAM can be
> configured to maybe try both (username, domain+username).
> Again, any help would be greatly appreciated.
> Tom

You could set 'winbind use default domain' in the smb.conf.  This is
experimental in Samba 2.2, and supported in Samba 3.0.  (You should not
use the file-server component in samba 2.2 with this option).

This solves the PAP issue.

For MSCHAP(v2) I'll have a patch out next week (just need to get it back
off the development machine it's sitting on) to connect a Samba 3.0
alpha member server to PPP for MSCHAP authentication.  This also allows
things like encryption of the connection.  (I use it for a wireless
gateway).

Andrew Bartlett

-- 
Andrew Bartlett                                 [EMAIL PROTECTED]
Manager, Authentication Subsystems, Samba Team  [EMAIL PROTECTED]
Student Network Administrator, Hawker College   [EMAIL PROTECTED]
http://samba.org     http://build.samba.org     http://hawkerc.net

Attachment: signature.asc
Description: This is a digitally signed message part

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba

Reply via email to