LDAP: seperated "ldap suffix" for machine accounts

Luke Kenneth Casson Leighton lkcl at switchboard.net
Thu Jan 21 15:42:22 GMT 1999


> Would having a separate objectclass for trust accounts help?

YES, ala NT 5.0 schema, for preference.  basically putting in the code
that i took out of jean-f's original work.

you'd still need to re-create enumeration of _all_ accounts, depending on
the ACB_INFO mask that is passed as one of the arguments, which needs to
be passed to the passdb functions, by the way.



More information about the samba-technical mailing list