[Samba] Sample idmap configuration block for Samba 3.4.X as a PDC ?

Patrick Rynhart prynhart at gmail.com
Sun Oct 11 22:23:26 MDT 2009

idmap has undergone a number of changes in the syntax etc. as is evident
from the following talk:


I'm wanting to get a minimal example of idmap for the case where Samba
is a PDC but also in a trust with a Windows DC "SANDBOX".  Are the
following "idmap" parameters correct and sufficient to be using with
Samba 3.4.X ?

idmap backend = ldap:ldap://
idmap uid = 50000-60000
idmap gid = 50000-60000
idmap alloc backend = ldap
idmap alloc config : ldap_url = ldap://
idmap alloc config : ldap_base_dn = ou=idmap,dc=seat,dc=massey,dc=ac,dc=nz
idmap alloc config : ldap_user_dn = cn=admin,dc=seat,dc=massey,dc=ac,dc=nz

idmap config SANDBOX : backend = ldap
idmap config SANDBOX : range = 50000-59999
idmap config SANDBOX : ldap_url = ldap://
idmap config SANDBOX : ldap_base_dn = ou=idmap,dc=seat,dc=massey,dc=ac,dc=nz
idmap config SANDBOX : ldap_user_dn = cn=admin,dc=seat,dc=massey,dc=ac,dc=nz
idmap config SANDBOX : ldap_alloc_url = ldap://
idmap config SANDBOX : ldap_alloc_base_dn =

More information about the samba mailing list