[Samba] Samba 4 DC - idmap config on a samba 4 member server

Thomas Simmons twsnnva at gmail.com
Thu Feb 21 04:27:13 MST 2013


Did you compile Samba "--with-shared-modules=idmap_ad"?


On Thu, Feb 21, 2013 at 2:21 AM, Hervé Hénoch <h.henoch at isc84.org> wrote:

> Hello Franck
>
> I had the same problem. When I removed "config" in the two lines, getent
> group worked.
>
>
> idmap config *:backend = tdb
> idmap config *:range = 70001-80000
>
> For the role of idmap you can read : http://www.samba.org/samba/**
> docs/man/Samba-HOWTO-**Collection/idmapper.html<http://www.samba.org/samba/docs/man/Samba-HOWTO-Collection/idmapper.html>
>
> Regards
>
> Le 20/02/2013 21:39, BOTZ Franck (Informaticien) - DDT 67/SG/MGI/CI a
> écrit :
>
>  Without idmap line, it work too.
>>
>> [global]
>>
>> workgroup = DDCS
>> security = ADS
>> realm = DDCS.LOCAL
>> encrypt passwords = yes
>>
>> # idmap config *:backend = tdb
>> # idmap config *:range = 70001-80000
>> # idmap config DDCS:backend = ad
>> # idmap config DDCS:schema_mode = rfc2307
>> # idmap config DDCS:range = 500-40000
>>
>> winbind nss info = rfc2307
>> winbind trusted domains only = no
>> winbind use default domain = yes
>> winbind enum users = yes
>> winbind enum groups = yes
>>
>> What is the really role of idmap's line ?
>>
>> I have of to miss something
>>
>
> --
>
> Hervé Hénoch
> Responsable informatique
> Institut Sainte Catherine
> 250 chemin de Baigne-Pieds
> CS 80005 — 84918 AVIGNON cedex 9
> Téléphone : 04.90.27.57.44
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/**mailman/options/samba<https://lists.samba.org/mailman/options/samba>
>


More information about the samba mailing list