[Samba] Winbind IDMAP question.

Chavez, James R. james.chavez at sanmina-sci.com
Wed Aug 6 18:30:31 GMT 2008


Hello all,

I have joined my linux boxes to AD and can authenticate using Active
Directory usernames and passwords using Winbind.
I want to Authenticate to AD but have that user mapped to a local Unix
or NIS ID otherwise the AD authentication is useless and only hinders
with file permissions and such.

My first questions in regards to an ADS domain member server. 
Can Winbind be used to map a SPECIFIC unix uid to a SPECIFIC Windows
RID?
I thought I was onto something with idmap_rid but it seems that uses a
predefined pool of UID's.
However from what I am reading it seems that idmap_ldap can be used to
accomplish this. Am I wrong about that? . Can Samba and Winbind
accomplish this?

2nd question is in regards to ADS, can I use a local UID to RID map
somewhat similar to usernamemap for smbpasswd backend? 

Also if possible any how to or links are appreciated.

Thank you for your time.
James

CONFIDENTIALITY
This e-mail message and any attachments thereto, is intended only for use by the addressee(s) named herein and may contain legally privileged and/or confidential information. If you are not the intended recipient of this e-mail message, you are hereby notified that any dissemination, distribution or copying of this e-mail message, and any attachments thereto, is strictly prohibited.  If you have received this e-mail message in error, please immediately notify the sender and permanently delete the original and any copies of this email and any prints thereof.
ABSENT AN EXPRESS STATEMENT TO THE CONTRARY HEREINABOVE, THIS E-MAIL IS NOT INTENDED AS A SUBSTITUTE FOR A WRITING.  Notwithstanding the Uniform Electronic Transactions Act or the applicability of any other law of similar substance and effect, absent an express statement to the contrary hereinabove, this e-mail message its contents, and any attachments hereto are not intended to represent an offer or acceptance to enter into a contract and are not otherwise intended to bind the sender, Sanmina-SCI Corporation (or any of its subsidiaries), or any other person or entity.


More information about the samba mailing list