[Samba] Winbind group mapping problem
ben at redcircleit.com
Tue Feb 10 17:18:10 GMT 2009
Dale Schroeder wrote:
> Which winbind idmap backend are you using?
> The default tdb backend generates id's randomly (which appears to be
> your case), meaning you will have to do a lot of chown commands on box B.
> For consistent mappings, use something like idmap_rid.
Thanks very much Dale, I was using the tdb backend.
I read the docs but I'm not clear on whether the configuration can
simply be retrofitted to both servers or whether changes to the data
itself will be needed.
I did make a quick test but aside from ownerships showing as 'user'
rather than 'DOMAIN\user' nothing changed in respect of missing UIDs/GIDs.
BTW the ultimate aim of was is to validate a server that will actually
replace a single ADS domain member. This being the case I suppose I
could back up the relevant tdb files, do a leave on the existing server,
join the new one and copy the tdbs into place? Still, if I can use
idmap_rid without undue hassle it's clearly a better solution.
More information about the samba