Wishing for the Holy Grail of the One Password for All
Posted Apr 18, 2003 1:53 UTC (Fri) by nicku
Parent article: Interview: Taking Samba beyond POSIX (IBM developerWorks)
I wish Robert McMillan had asked Andrew about using Samba as an AD PDC using something like OpenLDAP. When will that happen? So far it seems Samba is only aiming at being an AD member, not an AD PDC. We want to use OpenLDAP for all our directory infrastructure, including supporting Linux and Windows clients. Currently, with Samba, it's all a bit clunky; for example, we still need to support two (actually, three) passwords to support binds and Samba authentication. The clunkiness is in synchronising these passwords. I'd love for those clunks to be resolved, perhaps by using Kerberos to hold all passwords.
I know that you can use smb authentication on Linux, but we still need the userPassword attribute to authenticate web applications, for instance.
to post comments)