New Unix user and group domain

Gerald (Jerry) Carter jerry at samba.org
Mon Feb 27 13:24:54 GMT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Volker Lendecke wrote:
> On Mon, Feb 27, 2006 at 10:43:44AM +0100, Stefan (metze) Metzmacher wrote:
>> but how does the dc know that the member shares the ID space?
>> what is if you have some member servers with a different space and some
>> which should share the ID space, I think that should be possible.
> 
> This would only be supportable when we require everything to
> be explicitly mapped.

This is a good point though.  Right now 'winbind trusted domains
only = yes' is a member server setting.  We would now require
an analogous feature be enabled on the DC as well.  I'm
beginning to understand why you hate that option so much.

The long term solution is the \unixinfo pipe.  Do we really
want to provide a hackish solution for 3.0.22 and then
change again in 3.0.23 or should do we hold 3.0.22 for me
to finish the \unixinfo pipe.  I haven't really dug into
the code yet.  If we decide to hold 3.0.22 for this, in your
opinion how much work (in days) am I looking at just to get
a working system?  We can do performance optimizations as
we move forward.






cheers, jerry
=====================================================================
I live in a Reply-to-All world                -----------------------
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFEAv2mIR7qMdg1EfYRAvuSAKDbOr8NsnHLFHJ5psx/NPvcIKFGlgCg2Tg1
4bHyM9gZVaDGjdEvtNuWJq0=
=5/ls
-----END PGP SIGNATURE-----


More information about the samba-technical mailing list