On Tue, 2004-03-09 at 16:33, Arno Hahma wrote: 
> On 8. Mar, 2004, at 13:42, Andrew Bartlett wrote:

>                 still other problems like having to set
>                 /homepermissions to 1777 since 
>                 PAM is apparently not run
>                 as root and cannot create home directories, if /home
>                 is not world 
>                 writable. I don't actually like this, 
>         
>         Is this with SSH?  This is an OpenSSH bug/feature.  This pam
>         module 
> 
> No, but with samba-3.0.2a. That is, winbindd can't create homedirs

Winbind will *never* create home directories.  

> ,unless /home 
> has been set to 1777 -mode (or subdirs in /home, if domain (%D)
> isbeing used as an additional
> level in template directory). Apparently, samba runs the
> pam-modulepam_mkhomedir.so 
> without root-permissions and creates the directory as the
> owner:groupitself.

If so configured, smbd will run PAM for account/session modules, but it
will do so with root privileges.

Andrew Bartlett

-- 
Andrew Bartlett                                 [EMAIL PROTECTED]
Manager, Authentication Subsystems, Samba Team  [EMAIL PROTECTED]
Student Network Administrator, Hawker College   [EMAIL PROTECTED]
http://samba.org     http://build.samba.org     http://hawkerc.net

Attachment: signature.asc
Description: This is a digitally signed message part

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba

Reply via email to