Security Identifier (SID) to User Identifier (uid) Resolution System

Luke Kenneth Casson Leighton lkcl at
Tue Jan 4 18:27:52 GMT 2000

> > i know you don't.  means samba will never be fully nt-domain
> > interoperable.
> > 
> 	This is actually something I've spent most of the holiday thinking
> about, as an offshoot of my work with extending Samba's ACL support.  (it
> was somewhat of a suprise to come back today, check my mail, and find out
> that the rest of you folks had been thinking of the exact same things :P)
> 	To reinforce Luke's point, what the problem boils down to is this:
> 	Samba can ONLY fully participate in an NT Domain environment IFF it
> is possible for Samba to have (and be aware of) 1:1 mappings between
> specific SIDs and specific POSIX uids/gids.

you get it, i get it.

some people think it's ok to have a half-baked solution, in a
self-contained samba environment, and actually it is.

some think it's ok to have a half-baked solution in a full nt domain

