[Samba] Re: Samba 3 + LDAP with multiple ou's

Daniel Cristian Cruz danielcristian at gmail.com
Thu Oct 18 15:56:12 GMT 2007


Yes, each unit has it's own PDC, but each one need to authenticate all
users from the organization.

I think there is no other way than using all users under the same
container, but I'm not a Samba+LDAP specialist, maybe I let something
out on my readings.

Sorry if this message was replicated, some weird things happening through
google groups.

2007/10/18, Daniel Cristian Cruz <danielcristian at gmail.com>:
>
> Hello, all.
>
> I was wondering if anyone could help me with this configuration:
>
> I had a LDAP tree with this structure:
>
> dc=base
> + ou=unit1
>   + ou=People
>   + ou=Groups
>   + ou=Computers
> + ou=unit2
>   + ou=People
>   + ou=Groups
>   + ou=Computers
> + ou=unit3
>   + ou=People
>   + ou=Groups
>   + ou=Computers
> ...
>
> And I need people from unit1 logging on unit2, unit3, etc.
>
> First thing is to put all users on one SAMBA Domain, but:
>
> Does Samba support "sub" search for users without PAM? Any workaround?
>
> Is the only alternative to put everyone in one big group like this:
>
> dc=base
> + ou=People
> + ou=Groups
> + ou=Computers
>
> Considering less than 100.000 users (today only 10.000), is it good or
> bad?
>
> I read man pages, search google and asked some IRC Channels, but I
> didn't found anything.
>
> Thanks.
>
> --
> Daniel Cristian Cruz
> $B%/%k%:(B  $B%/%j%9%A%"%s(B $B%@%K%(%k(B




-- 
Daniel Cristian Cruz
$B%/%k%:(B  $B%/%j%9%A%"%s(B $B%@%K%(%k(B


More information about the samba mailing list