delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2014/08/04/15:01:00

X-Recipient: archive-cygwin AT delorie DOT com
DomainKey-Signature: a=rsa-sha1; c=nofws; d=sourceware.org; h=list-id
:list-unsubscribe:list-subscribe:list-archive:list-post
:list-help:sender:date:from:to:subject:message-id:reply-to
:references:mime-version:content-type:in-reply-to; q=dns; s=
default; b=vXxflDFS15EfqDegeXphBfitBGhggtrdKeImhtV5FVFbvsd6o8YnD
oxEXakN2FiCknUFbyqvBKcRznbZmk4eV3PnOpg70in8XOF16+CGM6/2R3AHj85EU
PVMv/Spml9fTsL35WUtUAO82uDcsxn7+3MZJDCqFib9NJQ5kXddckE=
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sourceware.org; h=list-id
:list-unsubscribe:list-subscribe:list-archive:list-post
:list-help:sender:date:from:to:subject:message-id:reply-to
:references:mime-version:content-type:in-reply-to; s=default;
bh=6BVeqRuQGysAilEcEa8aI9uXxYc=; b=KBn2GMQZfyAiz6IlmWcCif2JhcZB
zYvcmk/wakLdyNFFEWLUgzx084lAEHYXG21xV4pJW3T8ioOyr/OW2mh30lZSyg2C
clyTvMxCMyMvk+wOq8BD/VeK9bZMju3xhqJGNC5BE/hVAQE6fUxREK9Cwe3Qo3HJ
Y5hvBFzCmPGvN9s=
Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm
List-Id: <cygwin.cygwin.com>
List-Subscribe: <mailto:cygwin-subscribe AT cygwin DOT com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-help AT cygwin DOT com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
Delivered-To: mailing list cygwin AT cygwin DOT com
Authentication-Results: sourceware.org; auth=none
X-Virus-Found: No
X-Spam-SWARE-Status: No, score=-5.9 required=5.0 tests=AWL,BAYES_00 autolearn=ham version=3.3.2
X-HELO: calimero.vinschen.de
Date: Mon, 4 Aug 2014 21:00:24 +0200
From: Corinna Vinschen <corinna-cygwin AT cygwin DOT com>
To: cygwin AT cygwin DOT com
Subject: Re: Simplify AD integration?
Message-ID: <20140804190024.GM2578@calimero.vinschen.de>
Reply-To: cygwin AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
References: <20140730134716 DOT GM25860 AT calimero DOT vinschen DOT de> <53D93510 DOT 6020903 AT redhat DOT com> <20140730184349 DOT GT25860 AT calimero DOT vinschen DOT de>
MIME-Version: 1.0
In-Reply-To: <20140730184349.GT25860@calimero.vinschen.de>
User-Agent: Mutt/1.5.23 (2014-03-12)

--n8884J15jRwcBTvu
Content-Type: text/plain; charset=utf-8
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Jul 30 20:43, Corinna Vinschen wrote:
> On Jul 30 12:10, Eric Blake wrote:
> > [resend; apologies for the encryption snafu]
> >=20
> > On 07/30/2014 07:47 AM, Corinna Vinschen wrote:
> > >=20
> > >   Default is 'auto':
> > >=20
> > >     builtin accounts;   "+SYSTEM", "+LOCAL", etc.
> > >     primary domain      "corinna", "cgf", ...
> > >     other domain:       "DOMAIN1+walter", "DOMAIN2+mathilda"
> > >=20
> >=20
> > >=20
> > > Also, the leading '+' for builtin accounts results in some downsides,
> > > one of them for instance the fact that `chown +x' assumes that x is a
> > > numerical uid or gid.  Thus `chown +SYSTEM ...' fails.  On the other
> > > hand it simplifies the account handling inside of Cygwin.
> >=20
> > I'm really worried about the leading + thing.
> > [...]
>=20
> Good points.  I might have overvalued the gain of easily recognizing
> builtin accounts by the leading '+' separator.
>=20
> Big, big, hmmmmm,  *thinking*...

I just uploaded a new snapshot to http://cygwin.com/snapshots/

This snapshot contains only a single change:  It drops the prepended
plus entirely,  So the builtin and well-known accounts are now called as
familiar: SYSTEM instead of +SYSTEM, Administrators instead of
+Administrators, etc.

The documentation doesn't reflect this change yet, but I will fix that
pretty soon.

As for other changes, I'm still not sure since we seem to have as
many different opinions as interested community members :}

I would still like to drop the db_prefix and db_separator settings and
just stick to the setting called "auto":

    builtin accounts;   "SYSTEM", "Administrators", etc.
    primary domain      "corinna", "yaakov", ...

This is typically all you see on non-domain machines.  On domain
maches, add this:

    other domain:       "DOMAIN1+walter", "DOMAIN2+mathilda"

(local SAM accounts are subsumed under "other domain" here).

Would anybody have really terrible problems with this approach?
If so, what problems?


Corinna

--=20
Corinna Vinschen                  Please, send mails regarding Cygwin to
Cygwin Maintainer                 cygwin AT cygwin DOT com
Red Hat

--n8884J15jRwcBTvu
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=9JTU
-----END PGP SIGNATURE-----

--n8884J15jRwcBTvu--

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019