[Samba] Samba4 member of an another « Samba4 » domain

François Lafont flafdivers at free.fr
Mon Apr 15 17:47:41 MDT 2013

Le 15/04/2013 04:28, steve a écrit :

> Indeed, for each new user or group you create you always end up with an idmap entry too. What
> idmap_ldb:use rfc2307 = yes
> is saying is 'ignore idmap and give priority to AD'. Of course, the attributes must be there in the first place otherwise it will fall back to idmap again.  Exactly what we are trying to avoid at all costs. I had to prove this to myself by creating a user in AD with rfc2307 stuff and then deleting his entry in idmap. With the
> idmap_ldb:use rfc2307 = yes
> in place then no problem. All his stuff came from AD as expected:) 

Ok. I think it's clear for me now.

> I think we're speaking the same language now.

Yes, thank you for your help Steve. :-)

François Lafont

More information about the samba mailing list