use ntSid instead of rid for pdb_ldap?

Andrew Bartlett abartlet at samba.org
Fri Apr 25 13:57:23 GMT 2003


On Fri, 2003-04-25 at 23:24, Volker Lendecke wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> > However, I'm very much open to suggestions.
> 
> - From a first sight this looks ok to me. If we are going to make
> changes to the schema, what about adding an optional 'memberSid'
> attribute to 'sambaGroupMapping'? This would enable us to map aliases
> and what else might come decently.

These aliases would not be visible to unix till we have winbind reading
a real group database in a SAM - but if it helps get us closer to that
point I don't see it as particularly disruptive either way.

Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at pcug.org.au
Manager, Authentication Subsystems, Samba Team  abartlet at samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
http://samba.org     http://build.samba.org     http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20030425/0702b106/attachment.bin


More information about the samba-technical mailing list