[Samba] Winbind problem (Trusting domains)

Simo Sorce idra at samba.org
Fri Dec 16 11:36:49 GMT 2005


On Fri, 2005-12-16 at 12:33 +0100, Michael Gasch wrote:
> it has always been mentioned, that idmap_rid is the better backend in 
> large organizations

Sorry ?

I do not think idmap_rid is good for v. large organization.
Probably the best bet is idmap_ldap.

Nscd is ok as long as you know it's downsides. For example on the PDC it
is necessary to shut it down while adding or modifying users, and it may
be a problem on member servers as it caches both positive _and_ negative
lookups.

Simo.

-- 
Simo Sorce    -  idra at samba.org
Samba Team    -  http://www.samba.org
Italian Site  -  http://samba.xsec.it



More information about the samba mailing list