Re: [Samba] Null sid enumeration

2010-03-16 Thread Bryan Payne
Anyone have any tips or advice? I'd hate for this to be the backbreaker on pci compliance. -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba

[Samba] Null sid enumeration

2010-03-12 Thread Bryan Payne
I'm needing to prevent null sid enumeration for pci reasons. It's a samba pdc that authenticates against an openldap backend. I restrict anonymous set to 1 but I'm still able to pull sid's using cain. I've set it to 2, but as you might expect, no one could login via windows. On the ldap end, I

[Samba] Can change password but cannot force password change

2008-12-03 Thread Bryan Payne
The setup: Two pdc's- pdcA is local, pdcB is remote. Openldap- local, both pdc's talk to it. The situation: I set a user's pwdLastSet to zero to force a password change upon login. If the user is logging into a machine talking to pdcA, it asks them to change their password. If the user is logging

[Samba] Specifying proxy server per user

2008-12-01 Thread Bryan Payne
Was wondering if it's possible to assign specific users a proxy server for web browsing. My current setup is openldap, samba pdc and a squid proxy server. Our call center uses the web alot and I'd like to have them use the proxy. The agents don't usually login to the same windows machine. Is this