use ntSid instead of rid for pdb_ldap?

Andrew Bartlett abartlet at
Fri Apr 25 13:57:23 GMT 2003

On Fri, 2003-04-25 at 23:24, Volker Lendecke wrote:
> Hash: SHA1
> > However, I'm very much open to suggestions.
> - From a first sight this looks ok to me. If we are going to make
> changes to the schema, what about adding an optional 'memberSid'
> attribute to 'sambaGroupMapping'? This would enable us to map aliases
> and what else might come decently.

These aliases would not be visible to unix till we have winbind reading
a real group database in a SAM - but if it helps get us closer to that
point I don't see it as particularly disruptive either way.

Andrew Bartlett

Andrew Bartlett                                 abartlet at
Manager, Authentication Subsystems, Samba Team  abartlet at
Student Network Administrator, Hawker College   abartlet at
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url :

More information about the samba-technical mailing list