Multiple authentication methods. (mapping AD user as local user)
Hello,
I 've got standalone samba server and now I have to allow to connect to it users joined to AD domain but still leaving local authentication metod and local user management.
I'm looking for the best way to map domain user as an local user to connect to samba server.
What is the best practise to do it?
Thanks in advance
Responses
It's not clear what you mean by map as a local user. There's any number of ways to get AD-managed users able to authenticate to an EL-based host (pure LDAP, pure Kerberos, winbind, SSSD, third-party tools). Beauty of PAM is that you can even use multiple methods at the same time. As long as your application (in this case, Samba) knows what to do with the POSIXized userids that the AD-binding service provides to the OS, there typically really isn't any need to literally create a local user mapped to the remote auth-service.
Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.
