[Samba] using ldap only idmap

Miguel Medalha miguelmedalha at sapo.pt
Sun Oct 18 09:58:16 MDT 2009

Quoting from the Samba 3.3.0 release notes:

Winbind idmap backend changes

The idmap configuration has changed with version 3.3 to something that 
allows a smoother upgrade path from pre-3.0.25 configurations that use 
"idmap backend". The reason for this change is that to many, also to 
Samba developers, the 3.0.25 style configuration with "idmap config" 
turned out to be very complex. Version 3.3 no longer deprecates the 
"idmap backend" parameter, instead with "idmap backend" the default 
idmap backend is specified.

Accordingly, the "idmap config : default = yes" setting is no longer 
being looked at.

The alloc backend defaults to the default backend, which should be able 
to allocate IDs. In the default distribution the tdb and ldap backends 
can allocate, the ad and rid backends can not. The idmap alloc range is 
now being set with the "old" parameters "idmap uid" and "idmap gid". The 
"idmap domains" parameter has been removed.

Release note here:


More information about the samba mailing list