[SAMBA4] Help wanted towards AD schema

Andrew Bartlett abartlet at samba.org
Fri Mar 20 20:59:28 GMT 2009


On Fri, 2009-03-20 at 18:57 +0300, Matthieu Patou wrote:
> On 03/20/2009 12:50 PM, Andrew Bartlett wrote:
> > I wondered if someone would like to take on this challenge, to assist us
> > moving to a full AD schema.
> >
> > To do this, we need:
> >
> >   - When a new schema class is added, we must fill in some of the
> > 'automatic' attributes.  For example, it seems that adminDescription and
> > adminDisplayName are set the same as 'CN'.
> >    
> In a w2k3 domain adminDescription is not the same as CN, do you have a 
> list of attributes that must clone others ?

No, and I can't find any information in the docs about this behaviour.
The implementer would do well look hader, and to then ask Microsoft for
a detailed description.

> >   - MS-ADTS 3.1.1.2.3.2 says that if the mapiID is set to
> > 1.2.840.113556.1.2.49 then it is autogenerated
> >
> >    
> >   - MS-ADTS 3.1.1.2.3.4 specifies ldapDisplayName generation
> >
> > and of course, anything else AD does.
> >
> >    
> I'm a bit lost can you explain this more precisely ?

These sections of the WSPP docs (on the Microsoft website) do exactly
that.

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.                  http://redhat.com

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20090321/28ea8b79/attachment.bin


More information about the samba-technical mailing list