Hi, Is idmap.ldb (4.0.7 AD DC) in use if all entries (users and groups) have posix attributes in AD? I'm asking that because I plan to share the sysvol folder between DCs using a cluster file system (ocfs2) but with different idmap.ldb entries that could become a maintenance nightmare. Cheers Geza Gemes