[Samba] 3.0.20b seems to ignore "ldap user suffix"

Jonas Jochum jj at archit.uni-karlsruhe.de
Fri Oct 28 11:36:46 GMT 2005

Excerpts from smb.conf:   
 passdb backend = ldapsam:ldap://localhost   
 ldap admin dn = cn=admin,dc=arch,dc=uni-karlsruhe,dc=de   
 ldap group suffix = ou=groups   
 ldap machine suffix = ou=computer   
 ldap suffix = o=archipool,dc=arch,dc=uni-karlsruhe,dc=de   
 ldap ssl = no   
 ldap user suffix = ou=aktiv,ou=Accounts   
 The system wide ldap suffix is a different one   
 (ou=accounts,o=archipool,dc=arch,dc=uni-karlsruhe,dc=de). Samba, however,   
 should only search for users in the specified user suffix, since not all   
 system users are supposed to be able to use samba.    
 Oct 28 12:17:30 far-poolserver64 slapd[9499]: SRCH   
 "o=archipool,dc=arch,dc=uni-karlsruhe,dc=de" 2 3   
 [debug output snipped]   
 Oct 28 12:17:30 far-poolserver64 slapd[9499]:     filter: (&(uid=dummy)  
 Should I file a bug report, does anybody spot a config error or is more info 
  Jonas Jochum   
  archIT - Faculty of Architecture   

