[Samba] samba.schema question

Andrew Bartlett abartlet at samba.org
Mon Nov 1 05:54:16 GMT 2004


On Sat, 2004-10-30 at 07:24, Misty Stanley-Jones wrote:
> I see in samba.schema that it is possible to have multiple SambaDomainName 
> entries for a dn.  However I don't see how this does any good because you 
> must only have one sambaSID entry per user.  Is there any way to associate 
> more than one sambaSID with a dn, so that a user would be authorized to log 
> into more than one domain without a trust relationship?  If it's not possible 
> now, is it in the works for the future?

No, and not in the future.  My feeling is that we have sufficient
complexity, before we go beyond what MS supports in this kind of thing. 
There be dragons!

In all seriousness, what is wrong with a trusted domain setup?  Or move
all your machines into a single domain, which is the pattern in the post
Win2k Microsoft world.

Andrew Bartlett

-- 
Andrew Bartlett                                 abartlet at samba.org
Authentication Developer, Samba Team            http://samba.org
Student Network Administrator, Hawker College   abartlet at hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba/attachments/20041101/eafcbf2d/attachment.bin


More information about the samba mailing list