svn commit: samba r7994 - branches/SAMBA_3_0/source/include branches/SAMBA_3_0/source/libads branches/SAMBA_3_0/source/nsswitch branches/SAMBA_3_0/source/param branches/SAMBA_3_0/source/sam trunk/source/include trunk/source/libads trunk/source/nsswitch trunk/source/param trunk/source/sam

Guenther Deschner gd at
Wed Jun 29 16:10:37 GMT 2005

Hi Jerry,

On Wed, Jun 29, 2005 at 10:42:07AM -0500, Gerald (Jerry) Carter wrote:
> Guenther,
> Why a new parameter?  Shouldn't idmap backend = ad just imply
> using the full set of attributes from AD ?  Or maybe just add
> sfu_support=yes as a parametric option to the ad plugin?

IMHO, the point is that the idmap-plugin just cares about uid/gid and not about
loginshells or homedirectories (which winbindd does). And winbindd does just
not know what idmap-plugin is running. 

What I could think of is skipping idmap completly (and doing the
uid/gid-retrieval ourself in ads/sfu-mode) when users decide to plug into an 
existing ads/sfu-infrastructure, but I see no way of how we could idmap let
decide how to handle shells and homedirs, no?


Günther Deschner                    GPG-ID: 8EE11688
Novell / SUSE LINUX                       gd at
Samba Team                              gd at
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url :

More information about the samba-technical mailing list