RFC2307 on a Samba DC - HowTo

steve steve at steve-ss.com
Sun May 18 16:40:39 MDT 2014

On Mon, 2014-05-19 at 00:26 +0200, Marc Muehlfeld wrote:
> Hello Steve,
> Am 18.05.2014 21:07, schrieb steve:
> >  'Check if RFC2307 is enabled in your Active Directory
> > 
> > If you have a working Samba Active Directory, you can check the
> > following, to find out, if RFC2307 is already enabled:' 
> > 
> > Marc,
> > Your howto is misleading.
> > rfc2307 is ALWAYS activated for a Samba4 DC.
> > 
> > Your howto applies only if a user wishes to use windows to manage
> > rfc2307. samba-tool and ldbedit can be used to manage rfc2307 without
> > any special provisioning nor schema extension.
> I did some changes in the complete HowTo, to be more specific:
> https://wiki.samba.org/index.php/Using_RFC2307_on_a_Samba_DC

The implication is that the ypserv NIS schema _has_ to be installed and
that windows is the only way to work with rfc2307. There is no mention
of samba-tool to do the same on the DC.

how about this as the first paragraph:
'Samba4 comes complete with a complete set of rfc2307 attributes which
are available immediately following a default provision. The following
howto is only needed should you need to work with rfc2307 from a windows

Then another howto on manipulation rfc2307 on the DC from the Unix side:
1. samba-tool
2. ldbedit
3. ldbmodify


More information about the samba-technical mailing list