I have ldap authorization working great from the login form. This is really a wonderfully useful, functional, and well tested and documentated project!

I have mod_auth_ntlm_winbind working with apache, but the usernames are being formatted by winbind as "domainname + username". (Shows in the sso log entries that way) I see where/how to change the "separator" in smb.conf, but have not figured out how to completely omit the domain and "seperator". Googling has lead me to some patches for mod_auth_ntlm_winbind, but these aparently require custom compiling. I have to work within my security policies which do not allow me to use that; I am restricted to official releases and wherever possible official packages (so they can be automatically kept up to date).

I know others have this working, and strongly believe I am just missing something!

I have scoured through documentation and searched for everything I can think of.

Hopefully you all can help!

Comments

zanymonster’s picture

UPDATE!!! I found and fixed my issue. It was just that I needed to comment out the following line in my smb.conf!

#winbind separator = +

zanymonster’s picture

Status: Active » Closed (works as designed)