Multiple authentication methods. (mapping AD user as local user)

Latest response

Hello,

I 've got standalone samba server and now I have to allow to connect to it users joined to AD domain but still leaving local authentication metod and local user management.
I'm looking for the best way to map domain user as an local user to connect to samba server.

What is the best practise to do it?

Thanks in advance

Responses

It's not clear what you mean by map as a local user. There's any number of ways to get AD-managed users able to authenticate to an EL-based host (pure LDAP, pure Kerberos, winbind, SSSD, third-party tools). Beauty of PAM is that you can even use multiple methods at the same time. As long as your application (in this case, Samba) knows what to do with the POSIXized userids that the AD-binding service provides to the OS, there typically really isn't any need to literally create a local user mapped to the remote auth-service.

I would like to allow only one user from the domain to login to existing shares leaving samba as standalone server.

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.