[global] workgroup = SAMBA realm = SAMBA.LAN netbios name = BENRIME security = ADS encrypt passwords = true vfs objects = acl_xattr kerberos method = dedicated keytab dedicated keytab file = /etc/krb5.keytab idmap config *:backend = tdb idmap config *:range = 1000000-1999999 idmap config SAMBA:backend = rid idmap config SAMBA:range = 10000-999999 winbind nss info = rfc2307 winbind trusted domains only = no winbind use default domain = yes winbind enum users = no winbind enum groups = no template shell = /bin/bash sync always = yes