<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Active Directory users integration in Network and Storage Protocols</title>
    <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65014#M5907</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I don't think so - is this a multiprotocol filer or an NTFS filer?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check out /etc/usermap.cfg and its related man pages&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 17 Dec 2010 12:05:20 GMT</pubDate>
    <dc:creator>rkaramchedu1</dc:creator>
    <dc:date>2010-12-17T12:05:20Z</dc:date>
    <item>
      <title>Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65009#M5905</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have joined a netapp filer to a domain. The authentication works, also the NTFS ACLs are set properly and users can access the shares. But I need to provision every user twice: first for the domain and secondly in /etc/passwd from the netapp. Is there a way to avoid that? The authentication and authorization is done using Active Directory but the user needs to appear in /etc/passwd for some reason...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jun 2025 07:03:22 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65009#M5905</guid>
      <dc:creator>cr_emilio</dc:creator>
      <dc:date>2025-06-05T07:03:22Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65014#M5907</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I don't think so - is this a multiprotocol filer or an NTFS filer?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check out /etc/usermap.cfg and its related man pages&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Dec 2010 12:05:20 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65014#M5907</guid>
      <dc:creator>rkaramchedu1</dc:creator>
      <dc:date>2010-12-17T12:05:20Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65017#M5908</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It is multiprotocol. I am serving both NFS and CIFs. But this qtree in particular is NTFS only. It only works if I add the user to the passwd file. It doesn't matter the password since it uses the one in AD.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Dec 2010 12:08:06 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65017#M5908</guid>
      <dc:creator>cr_emilio</dc:creator>
      <dc:date>2010-12-17T12:08:06Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65021#M5910</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That does not seem right. It appears that the filer is configured to do local user authentication. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you turn on cifs.trace_login and see what the error is? AFAIK, if you do Windows AD authentication, you do not need any /etc/passwd entries.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://media.netapp.com/documents/wp_3014.pdf" target="_blank"&gt;http://media.netapp.com/documents/wp_3014.pdf&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Dec 2010 14:22:01 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65021#M5910</guid>
      <dc:creator>rkaramchedu1</dc:creator>
      <dc:date>2010-12-17T14:22:01Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65025#M5912</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What exactly do you mean under "user needs to appear in /etc/passwd"? What does not work if user is not entered there?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 18 Dec 2010 15:42:46 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65025#M5912</guid>
      <dc:creator>aborzenkov</dc:creator>
      <dc:date>2010-12-18T15:42:46Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65029#M5914</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If I dont add the entry in /etc/passwd users cannot connect at all. Authentication fails. If I add them authentication works with the AD password and everything seems to be fine.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 10:41:40 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65029#M5914</guid>
      <dc:creator>cr_emilio</dc:creator>
      <dc:date>2010-12-20T10:41:40Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65033#M5916</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Does it happen for this particular qtree only or for any qtree with NTFS security?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;NetApp always performs NT-to-Unix user mapping, even for access to NTFS qtree from Windows client. If mapping fails, access is denied. Check, that&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- usermap.cfg does not deny access by listing empty Unix user name, like&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;\&lt;/STRONG&gt; =&amp;gt; ""&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any NT user which maps to empty Unix user in this way will be denied access&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- you have non empty wafl.default_unix_user. Default is pcuser that is normally available in /etc/passwd&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 11:04:17 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65033#M5916</guid>
      <dc:creator>aborzenkov</dc:creator>
      <dc:date>2010-12-20T11:04:17Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65039#M5917</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;how you are supplying the username to filer?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;did you try "AD domain\AD username" format?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 14:12:00 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65039#M5917</guid>
      <dc:creator>lovik_netapp</dc:creator>
      <dc:date>2010-12-20T14:12:00Z</dc:date>
    </item>
    <item>
      <title>Re: Active Directory users integration</title>
      <link>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65042#M5919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Finally I made it work. It was wafl.default_unix_user which was empty so users with no mapping just mapped to anything and it didn't work. Now I can use new users without problems and they follow the access rules in the NTFS domain!!!&lt;/P&gt;&lt;P&gt;I will let you also know that you solved an issue NetApp support wasn't able to solve and want to say that the support from netapp in this matter has been worse than awfull.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 20 Dec 2010 17:06:02 GMT</pubDate>
      <guid>https://community.netapp.com/t5/Network-and-Storage-Protocols/Active-Directory-users-integration/m-p/65042#M5919</guid>
      <dc:creator>cr_emilio</dc:creator>
      <dc:date>2010-12-20T17:06:02Z</dc:date>
    </item>
  </channel>
</rss>

