[IPA] Storing SID in String Format

Andrew Bartlett abartlet at samba.org
Thu Oct 1 21:28:56 MDT 2009

On Thu, 2009-10-01 at 23:07 -0400, Endi Sukma Dewata wrote:
> ----- "Andrew Bartlett" <abartlet at samba.org> wrote:
> > Actually, I have a better idea.  When you are able, use the name Samba3
> > uses.  That way we are not further diverging the schemas folks will find
> > on the net.  (sambaSid is the name for a string-format SID in Samba3).
> > See also the unloved but still mostly-passing-the-testsuite 'samba3sam'
> > mapping module.  I would strongly suggest rather than just renaming all
> > the attributes with a 'Samba4' prefix, that you try and map them to the
> > right thing in your target schema, or the Samba3 schema.  We don't need
> > more schemas out there. 
> Thanks for your feedbacks. I initially picked the samba4 prefix because
> there's already some attributes/object classes using that prefix like
> samba4top and samba4rdn. 


> I agree that we should try to reuse Samba3
> schema if possible, but there seems to be far fewer attribute type &
> object class definitions in Samba3 schema than those in AD schema.

Yep.  It's just a suggestion for the cases where other standard or
accepted schema already exist.  Even (as a last resort) the ns* schema
used by the existing adsync tool is better than inventing yet another
set of attributes.

> So let me change the mapping table with Samba3 schema as many as
> possible, then we'll review it again. Thanks!

No worries!

Andrew Bartlett
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Cisco Inc.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20091002/d1dd20d0/attachment.pgp>

More information about the samba-technical mailing list