Re: samba / UNIX password sync



I am (as per config snipets in my first message) and that part is working.
Problem is that Linux passwd doesn't get synced when smbpasswd change is
made from windows client.

V

On 8/30/06, Manuel Arostegui Ramirez <manuel@xxxxxxxxxxxxxx> wrote:

El Miércoles, 30 de Agosto de 2006 01:14, Vladimir Kosovac escribió:
> Hi all.
>
> I am running very old version of samba (2.2.7) and cannot upgrade just
yet,
> must make this work as it is (if possible).
>
> After playing a bit with pam modules, I got first part of what I want to
do
> going - windows user is able to change domain password from windows.
> However, this change never gets synced to Linux password, although (I
> think) configuration is OK. Can someone give me some pointers to what
else
> I need to look at? Current relevant config is:
>
> Server: Red Hat 7.1 / samba-2.2.7-2.7.2 (compiled from RH source with
some
> extra options, --with pam-smb_passwd included)
> Client: Windows 2000 / some XP
>
> #/etc/pam.d/samba
> #%PAM-1.0
> # The PAM configuration file for the `samba' service
> #
> auth required /lib/security/pam_smbpass.so nodelay
> account required /lib/security/pam_pwdb.so audit nodelay
> session required /lib/security/pam_pwdb.so nodelay
> password required /lib/security/pam_smbpass.so nodelay
> smbconf=/etc/samba/smb.conf
>
> #/etc/samba/smb.conf
> security = user
> encrypt passwords = yes
> smb passwd file = /etc/samba/smbpasswd
> unix password sync = Yes
> passwd program = /usr/bin/passwd %u
> passwd chat = *New*password* %n\n *Retype*new*password* %n\n
> *passwd:*all*authentication*tokens*updated*successfully*
> pam password change = yes
> obey pam restrictions = yes
>
> What am I missing? Help appreciated,
>
> Vladimir

Are you using pam_smbpass?


--
Manuel Arostegui Ramirez.

Electronic Mail is not secure, may not be read every day, and should not
be used for urgent or sensitive issues.

--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list

--
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list



Relevant Pages

  • Re: XP is great
    ... > The OS'es and Apps (Linux & Windows) allude to being user-customizable by ... You seem to prescribe to the theory of BG that any fault found in it ... of those who refuse to admit to and fix them, ... I'm sorry but to say it should never be changed from default config is ...
    (sci.electronics.design)
  • Re: CUPS and HPLJ and yast
    ... > Any advice on how to approach the config of the suse box with directly ... You can individually point the remaining workstations at the printer, ... allow anonymous access to the CUPS print server. ... I have set my local network up as a Windows Domain, ...
    (alt.os.linux.suse)
  • Re: help with 2000i on win2k server (sp3 on database)
    ... See Leonard's post for the config options. ... If the server is mangling itself, then ANYTHING running on the server ... that I work with will support the database AND the application. ... As for Windows vs. Linux/NetWare, I can agree, but I also see MANY ...
    (comp.databases.btrieve)
  • Re: Q: add an ssh login failure delay like it is for plain login
    ... Are your sure that this can be configured by pam? ... The config is written to the config files. ... Bt it seems you are not using crappy tools and so know everything ... so please tell me which pam module knows about the option you ...
    (comp.os.linux.misc)
  • Re: AD Policy audit tool for Windows 2000
    ... Configuration and Administration - it's an MMC snap-in) to compare ... vendor and delta it against the config on the box. ... client's system differs from the default group policy config. ... >> active directory after a default Windows 2000 installation. ...
    (Security-Basics)