Radically trim down winbind?

Volker Lendecke vl at samba.org
Fri Nov 4 09:08:07 UTC 2016


On Fri, Nov 04, 2016 at 09:16:22AM +0100, Andreas Schneider wrote:
> > I mean both. Even wbinfo -u can be very tough regarding load. If I talk to
> > people dealing with AD every day, Microsoft wants people to consolidate
> > domains and reduce the number of trusts. This means that domains will
> > grow. You don't want to list 100k users via winbind. Ever. As Uri said,
> > we might need some easy replacement that *might* grab the machine account
> > password and try what winbind does today, but this is an add-on.
> 
> I'm fine if we can provide a replacement. I think some people still find it 
> useful. At least those with small domains or myself as a developer ...

Sure. In my experience, people use "wbinfo -u" as a test whether
winbind works at all and can connect to a DC. We have "wbinfo
--ping-dc" or if you want the more expensive "wbinfo -t" for that.

> Go ahead.
> 
> 
> I would wait till Monday that more people can comment. Then propose a patch.

Sure. This will take a bit. I just wanted to ask first for severe
concerns.

Volker



More information about the samba-technical mailing list