Samba4: idmap replication between 2 DC's

Michael Adam obnox at
Thu Jul 12 07:05:48 MDT 2012

Hi steve,

steve wrote:
> On 11/07/12 21:23, Gémes Géza wrote:
> >
> >If you put
> >idmap_ldb:use rfc2307 = yes
> >in your smb.conf then setting the uids gids in AD will guarantee that
> >they are the same across your samba4/s3fs servers, because then they
> >will get that from AD instead of their private idmap (with a fail-back
> >to idmap, if the entry has no uid/gid set).
> >
> >Regards
> >
> >Geza
> Hi Geza
> I don't think
>  idmap_ldb:use rfc2307 = yes
> works in Samba4 with s3fs
> It doesn't appear as an option in
>  testparm -v either

That has no meaning. This is why:

The Options with a name containing a colon ":" are
the so called "parametrict options" originally introduced
for vfs modules in samba (smbd).

These are not properly established in the internal configuration
system, but can be used ad hoc in the code. (It has to be like
this for vfs modules that can be contributed externally.)

Hence "testparm -v" can not show this as a possible option.
It only shows the non-parametric genuine samba options.

As a side-remark, for the s4-configuration, "samba-tool testparm"
is the right tool. "testparm" is for the s3-part (smbd, ...).

Cheers - Michael

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 206 bytes
Desc: not available
URL: <>

More information about the samba-technical mailing list