RFC2307 on a Samba DC - HowTo

Marc Muehlfeld mmuehlfeld at samba.org
Mon May 19 10:41:25 MDT 2014

Hello Rowland,

Am 19.05.2014 11:00, schrieb Rowland Penny:
> If you want your user to be a Unix user as well you can add:
> '--uid-number=UID_NUMBER --gid-number=GID_NUMBER'
> You must supply the two numbers and keep track of them yourself, there
> is nowhere in samba4 AD (as standard) to store these numbers.

I think --use-rfc2307 should be default on provisioning. It does not
hurt and brings no disadvantages if not used. But samba-tool could use
it, like ADUC, to automatically get the next free UID/GID. And it would
be ADUC compatible.

I had created a feature request for that:

> The last big problem is, if you carry out a classicupgrade, you get the
> posix objectClasses in AD, NO windows tools will add these objectClasses
> and if you then start to add users (either by ADUC or samba-tool), then
> these new users will not get the posix objectClasses. This could then
> lead to incorrect results being returned by searches of AD by external
> tools, if these tools rely on the posix objectClasses.

Can you open a enhancement request in bugzilla for that, please?


More information about the samba-technical mailing list