[Samba] LDAP suffixes

Gerald (Jerry) Carter jerry at samba.org
Wed Aug 17 15:25:59 GMT 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

William Jojo wrote:
> 
> 
> need clarification of the use of:
> 
> ldap suffix
> ldap machine suffix
> ldap user suffix
> ldap idmap suffix
> 
> smb.conf.5 indicates you should have a fully qualified suffix such as:
> 
>    ldap suffix = dc=blah,dc=com
>    ldap machine suffix = ou=People,dc=blah,dc=com
>    ldap user suffix = ou=People,dc=blah,dc=com
>    ldap group suffix = ou=Groups,dc=blah,dc=com
>    ldap idmap suffix = ou=Idmap,dc=blah,dc=dom

The man page is wrong.  You can use a fully DN only if
'ldap suffix' is an empty string.






cheers, jerry
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFDA1cHIR7qMdg1EfYRAsXyAKCq8GFqct+LEVBP3R+F0M7NzNOm1QCg8xZf
8WkxQg2zAzTtyEmyXdE/uDU=
=LOaG
-----END PGP SIGNATURE-----


More information about the samba mailing list