[Samba] Samba 3 with OpenLDAP multimaster or Fedora-DS

Adam Tauno Williams adamtaunowilliams at gmail.com
Wed Jun 18 13:55:23 GMT 2008

On Tue, 2008-06-17 at 16:39 -0400, Charlie wrote:
> Lots of folks have samba 3 running over OpenLDAP.  Syncrepl is what
> I'd use if I was setting it up today, but I have a very reliable and
> mature implementation already running slurpd, so I am going to stick
> with that for the moment.
> As for multi-master, I agree with Zeilinga's comments on LDUP.  Google
> for "multimaster considered harmful" or read
> http://www.openrowley.com/2006/10/05/is-multi-master-replication-really-harmful/
> if you don't know what I'm talking about.

OpenLDAP 2.4.x provides working multi-master (although I still think not
nearly as many people need multi-master as think they do).


> We have one PDC and WINS server per physical site, which is more
> reliable and fault-tolerant than anything else I've tried, but it does
> make LDAP configuration a bit dicey since the Samba Team doesn't yet
> understand why anyone would want to combine a unified authentication
> infrastructure with geographically localized network control.  Setting
> up domain trusts with our configuration is tricky.

