http://git.samba.org/?p=vl/samba.git/.git;a=shortlog;h=idmap

Volker Lendecke Volker.Lendecke at SerNet.DE
Fri Aug 8 22:56:29 GMT 2008


On Fri, Aug 08, 2008 at 03:06:22PM -0400, simo wrote:
> I think the problem here is that tdb will still be the default.
> Ie it will happily allocate for foreign domains unless there is an
> explicit configuration for them.

Yes, and that is deliberate.

We could implement something like "winbind ignore domains"
the opposite of that, but with that winbind would not accept
anything at all for the filtered domains, not only idmap
requests would be dropped. From my point of view it does
not make sense to allow one kind of request (i.e. for
example PAM auth) but not others (i.e. sid2uid).

Volker
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.samba.org/archive/samba-technical/attachments/20080809/f701b471/attachment.bin


More information about the samba-technical mailing list