[Samba] Migrating NT4 Domain with Idealx tools

Marcel de Riedmatten mdr at dotforge.ch
Wed Nov 17 15:35:14 GMT 2004

Le sam 13/11/2004 à 12:23, Paul Coray a écrit :
> Marcel de Riedmatten wrote:
> > Le mar 09/11/2004 à 17:57, Paul Coray a écrit :

> > This doesn't seem normal.  The samba attribute should be added by the
> > vampire.
> But I my case it doesn't... net rpc vampire says 'Couldn't create Posix 
> information for machinename$'. Well in reality, it did, but without 
> samba atrrs.
> Now I realize this works when i configure LDAP and Idealx-Tools to store 
> machine accounts in the same container as useraccounts. Although this 
> makes my directory look somewhat messy, I can live with it if I have to. 
> Still I can't add machines doing smbldap-useradd -w, nor when I try to 
> join the domain from a client.

you can have them separated. What count is that the machines account are
visible on domain controllers (PDC BDC) ie getent passwd must show the
machine (posix) account. This is nss_ldap configuration. If samba
doesn't see the machine (posix) account it won't work . 

>   So I would suspect some problem in the communication with the
> > PDC and double check that on the samba box 
> > 
> > 1) you have the domain SID as local SID
> Do SIDS for the PDC and for the domain have to be the same?

yes the domain SID _is_ the (local) SID of the PDC and all domain
controllers must have the same SID.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Ceci est une partie de message
	=?ISO-8859-1?Q?num=E9riquement?= =?ISO-8859-1?Q?_sign=E9e=2E?=
Url : http://lists.samba.org/archive/samba/attachments/20041117/b416a496/attachment.bin

More information about the samba mailing list