[Samba] Can one Samba 4 server provide an entire forest?

mathias dufresne infractory at gmail.com
Mon Jul 4 08:37:58 UTC 2016


As Microsoft itself discourage to use trust relationships if not _really_
needed (security reasons), as Samba should be able to perform only
bi-directional and transitive relationship (the most open, not usable for
security reason), as, if I understood global catalog in Samba correctly,
relationship needs a global catalog which would receive most objects from
every trusted domain (so relationship can't be used to avoid 4GB DB size
limitation), why using relationship?

2016-07-02 0:00 GMT+02:00 Garland McAlexander <garland at linear.nyc>:

> You'd best set up child domains on their own DC's. Since Active Directory
> doesn't support multiple domains per DC.
>
> On Fri, Jul 1, 2016 at 4:39 PM, Juan Castro <jccyc1965 at gmail.com> wrote:
>
> > I successfully set up an AD domain controller for domain
> CORP.COMPANY.COM.
> > Is it possible to have SALES.CORP.COMPANY.COM and TECH.CORP.COMPANY.COM,
> > each with its own users, by using only that one Samba server? Or do I
> have
> > to set up a separate Samba server for each of those two domains, and have
> > each of them join the existing domain?
> >
> > Juan Castro
> > Enviado do meu Olivetti Programma 101
> > --
> > To unsubscribe from this list go to the following URL and read the
> > instructions:  https://lists.samba.org/mailman/options/samba
> >
>
>
>
> --
> *Sincerely,*
> *Garland McAlexander*
> *O: 212-271-0198*
> *C: 321-315-9948*
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
>


More information about the samba mailing list