Re: samba-ad-dc: are pam/nss-winbind, and winbind itself, needed for AD-DC functionality?

Michael Tokarev via samba <[email protected]> Sun, 8 Mar 2026 14:24:39 +0300
Newsgroups gmane.network.samba.general
Message-ID <[email protected]>
On 08.03.2026 14:08, Rowland Penny via samba wrote:

> This is my understanding of the relationship between winbindd and
> Samba.
> 
> The winbindd daemon is required by Samba to be able to 'talk' to AD,
> whether this is a DC or Unix domain member.

Yup, - after removing winbind from server services, s3fs (sysvol etc)
does not work anymore, and in strace it's visible than smbd is trying
to access /run/samba/winbindd and fails.

So yes, only nss and pam stuff isn't needed.

Thanks,

/mjt

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba