[Samba] [samba] file server, AD client, no rfc2307

mathias dufresne infractory at gmail.com
Thu Jul 27 14:33:00 UTC 2017


2017-07-27 15:14 GMT+02:00 Rowland Penny via samba <samba at lists.samba.org>:

> On Thu, 27 Jul 2017 08:51:52 +0100
> Rowland Penny via samba <samba at lists.samba.org> wrote:
>
> > On Thu, 27 Jul 2017 08:36:51 +0100
> > Rowland Penny via samba <samba at lists.samba.org> wrote:
> >
> > >
> > > I will have a look at the provision code for the Samba DC to see
> > > what it actually does when you use '--use-rfc2307', if it just adds
> > > 'ypServ30.ldif', I will setup a test domain without '--use-rfc2307'
> > > and see what happens ;-)
> > >
> > > Rowland
> > >
> >
> > OK, '--use-rfc2307' adds 'idmap_ldb:use rfc2307 = yes' to smb.conf on
> > the DC and then adds 'ypServ30.ldif'. As far as I am aware, nothing
> > actually uses anything in 'ypServ30.ldif'.
> >
> > I will set up a new domain and see what happens.
> >
> > Rowland
> >
> >
>
> OK, I can now confirm that you do not need '--use-rfc2307' to use the
> winbind 'ad' backend on a Unix domain member.
>
> You do need 'idmap_ldb:use rfc2307 = yes' in the smb.conf on a DC to
> use uidNumber & gidNumber attributes on the DC.
>
> You will not be able to use ADUC without '--use-rfc2307'
>

Nice, thank you for testing. I'll try that next days to first be sure of
the winbind client configuration.
Then I will have to test the working configuration against MS AD as it is
MS AD my client use. It won't be my client too long...


>
> Rowland
>
> --
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
>


More information about the samba mailing list