[Samba] Bug in Samba4? (idmap Domain Users

Trever L. Adams trever.adams at gmail.com
Tue Aug 17 07:15:23 MDT 2010


 On 08/17/2010 03:38 AM, Matthieu Patou wrote:
>  
> By default it's decided that we map the Domain users group to the unix
> users group, like we map the domain administrator to root.
>
> It can be changed on provision: --users=
>
> Cheers.
> Matthieu
>
I was starting to think that this actually is the right way to do it.
The only problem is in trust relationships where you have to create
another user group that contains "Domain Users" and enable nested groups
(assuming you are using the remote "Domain Users (or similiar)" for
permissions. Problem? Maybe in performance. (I am just getting started
with Samba in large scale deployments, so I do not know. I have just
seen references to the possibilities of problems.)

Thank you, Matthieu for answering.

Trever
-- 
"The hand that rocks the cradle is the hand that rules the world" --
W.Wallace

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 261 bytes
Desc: OpenPGP digital signature
URL: <http://lists.samba.org/pipermail/samba-technical/attachments/20100817/5bf9ef80/attachment.pgp>


More information about the samba-technical mailing list