Using embedded SMB as Active Directory Domain Controller


I have a number of Windows 11 clients on my home network all connecting to my TrueNAS Scale system via SMB. I’d really like to get single signon between the Windows clients and the TrueNAS, which I expect will most easily be implemented by having the Samba deamon act as Active Directory Controller.

This seems to be well documented in the official Samba documentation.
But before embarking on expanding this rabbit hole, I’d like to check with the community of whether this is an bad idea or not.

Thanks in advance for any reflections :slight_smile:

Not possible. We don’t compile samba with the domain controller role. If you set up a Domain Controller on separate VM / hardware, we can join the existing AD domain and SMB clients can use SSO to connect to shares.