svn commit: samba r4925 - branches/SAMBA_3_0/examples/LDAP branches/SAMBA_3_0/source branches/SAMBA_3_0/source/include branches/SAMBA_3_0/source/lib branches/SAMBA_3_0/source/passdb branches/SAMBA_3_0/source/rpc_server branches/SAMBA_3_0/source/smbd branches/SAMBA_3_0/source/utils trunk/examples/LDAP trunk/source trunk/source/include trunk/source/lib trunk/source/passdb trunk/source/rpc_server trunk/source/smbd trunk/source/utils

Gerald (Jerry) Carter jerry at
Mon Jan 24 18:22:31 GMT 2005

Hash: SHA1

Guenther Deschner wrote:
| Hi Jerry,
| On Mon, Jan 24, 2005 at 11:55:22AM -0600, Gerald (Jerry) Carter wrote:
|>| Migrate Account Policies to passdb (esp. replicating ldapsam).
|>~From an LDAP data model wouldn't it just be better to store these
|>as attributes in the sambaDomain object instead of giving each
|>its own entry ?
| Yes, that's true. Volker proposed a multivalued
| attribute for that as well. But I wanted to include
| some descriptive string (description-attribute) into
| ldap to prevent admins from 'just playing' with
| the accountPolicy settings. I thought these were
| a bit difficult to integrate all in the sambaDomain object.

Since we have a small list of acocunt policies and I
can't see that growing to huge amounts, I was thinking
of just having an attribute per policy included the
sambaDomain object.  The descriptive string for each
policy should be hard-coded in smbd IMO.

btw...would you mind if we did not include this in 3.0.11?
But a later release?  Once it makes it into the release,
we have to live with it (and worry about interface changes).
And I'm just not 100% convinced that this is the final
destination yet.

cheers, jerry
Version: GnuPG v1.2.4 (GNU/Linux)
Comment: Using GnuPG with Thunderbird -


More information about the samba-technical mailing list