[Samba] POLL: Does anyone actually use multiple passdb backends on the same server?

Gerald (Jerry) Carter jerry at samba.org
Fri Feb 10 15:42:59 GMT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Gunther Schlegel wrote:
> Gerald,
> 
>> We are discussing removing the capability to chaining passdb
>> backends.  It's a decent idea but overly complicates things
>> IMO and unless it has wide spread use, we'll probably axe it
>> soon (voting is starting up on the samba-tecnnical ml now).
> 
> At least I use it:
> 
> passdb backend = ldapsam:ldap://someserver.riege.de, tdbsam , guest
> 
> On the other hand as far as I remember it put tdbsam in 
> it because I just wanted to separate root from the ldap
> tree, as otherwise I would have a global root account on way
> too much servers.
> 
> Though I suppose this is not necessary anymore with the new role
> capabilities in samba 3.0.20? ( I still use 3.0.10/14 ).
> 
> So I guess I do nt need this anymore after an upgrade.

Yeah.  The current recommendation post 3.0.11 is to use
the privileges rather than a root account.  So I think
it is still acceptable to remove the chaining feature.




cheers, jerry


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFD7LSDIR7qMdg1EfYRAv4KAJ96e0cvvrQxS9Pnp06wqfNwjsxgvwCgozb9
l5Tbj80ZTXzD4h62sbzkkI0=
=KXvY
-----END PGP SIGNATURE-----


More information about the samba mailing list