On Thu, Jan 20, 2005 at 11:48:43AM +1100, John Clarke wrote:
> 
> Thanks Oscar.  Ben has explained the reason it's failing; apparently
> samba 2.2 can't authenticate with AD, even though my old version of
> pam_smb from the same distro can do so.

2.2 _can_ according to the samba3 docs, (The Official Samba-3 HOWTO and 
Reference Guide)
        
        3.3.4 ADS Security Mode (User Level Security)

        Both Samba-2.2, and Samba-3 can join an Active Directory domain. This 
is possible if the
        domain is run in native mode. Active Directory in native mode perfectly 
allows NT4-style
        Domain Members. This is contrary to popular belief. Active Directory in 
native mode
        prohibits only the use of Backup Domain Controllers running MS Windows 
NT4.

apparently it just doesn't use kerberos authentication.

Anyway going to Samba3 sounds like a good thing to do.

Matt



-- 
SLUG - Sydney Linux User's Group Mailing List - http://slug.org.au/
Subscription info and FAQs: http://slug.org.au/faq/mailinglists.html

Reply via email to