45Drives Knowledge Base |
KB450274 - Restricting Domain User Login https://knowledgebase.45drives.com/kb/kb450274-restricting-domain-user-login/ |
This article will outline how to restrict Domain User login when joined to a Active Directory.
vim /etc/security/pam_winbind.conf
require_membership_of
lines or only the last will be used.require_membership_of=sid1,sid2,sid3
systemctl restart winbind
Try to login using the command below and confirm they can not connect:
su 'domain\user'