Re: [SAMBA] How to stop winbindd from granitng UID=0? Security hole?

2005-07-06 Thread Adam Tauno Williams
But now there is a real problem. There is a domain user root. If the domain is present, we can login to the client with putting simple root as a username, and using domain password. And we are actually getting uid 0, so we are real root, not just dorm user with funny-looking username. Of

[SAMBA] How to stop winbindd from granitng UID=0? Security hole?

2005-07-01 Thread Molot
I have domain controller on Windows 2003. On the client side standard installation of samba 3.0.1? ldap, kerberos and winbindd. Setup should allow all users from domain login to all client's services (console, ssh and so on) using domain name and password. Ok, we have acquired this point. It aslo