[Samba] LDAP suffixes

John H Terpstra jht at primastasys.com
Wed Aug 17 15:31:23 GMT 2005


On Wednesday 17 August 2005 09:25, Gerald (Jerry) Carter wrote:
> William Jojo wrote:
> > need clarification of the use of:
> >
> > ldap suffix
> > ldap machine suffix
> > ldap user suffix
> > ldap idmap suffix
> >
> > smb.conf.5 indicates you should have a fully qualified suffix such as:
> >
> >    ldap suffix = dc=blah,dc=com
> >    ldap machine suffix = ou=People,dc=blah,dc=com
> >    ldap user suffix = ou=People,dc=blah,dc=com
> >    ldap group suffix = ou=Groups,dc=blah,dc=com
> >    ldap idmap suffix = ou=Idmap,dc=blah,dc=dom
>
> The man page is wrong.  You can use a fully DN only if
> 'ldap suffix' is an empty string.

Oops. I had not caught that. Will fix it now.

- John T.


More information about the samba mailing list