[Samba] Maintaining Unix Attributes in AD - best practice?

Henry Jensen hjensen at mailbox.org
Fri May 25 13:32:30 UTC 2018

On Thu, 24 May 2018 19:45:46 +0100
Rowland Penny via samba <samba at lists.samba.org> wrote:

> > So, what would be the best was to add Unix attributes to AD? 
> > I read on this list, that adding AD users with "samba-tool
> > --uid-number" is discouraged.  
> Where did you read that ??

It was a message on the list. Something about messing up the internal
AD uidNumber counter. 

> Of course you can use samba-tool, there are just two problems:
> The first is that you cannot ADD posix attributes with 'samba-tool
> user', you have to create the user with the attributes in the first
> place. The second is, you have to track the uidNumber & gidNumber
> attributes yourself, there is no automatic way of doing this. You could
> always 'add' the two missing attributes and then write your own script
> around 'samba-tool user create'

Thanks for the clarification.

Kind regards,


More information about the samba mailing list