Hello again, At the moment everything works fine, but I'd like Samba to use a dedicated LDAP access DN instead of the global directory admin one. Could you give me any recommendations as to how access rules should be set for this DN so that it both can work without problems and have no unnecessary privileges? Regards, -- MS