[Samba] Adding a new DC - ID Mappings

Rowland Penny rpenny at samba.org
Mon Nov 26 10:12:16 UTC 2018

On Mon, 26 Nov 2018 09:47:06 +0000
Rob Mason via samba <samba at lists.samba.org> wrote:

> I’m looking to replace a DC within a small network by adding a new DC
> and transferring FMSO roles, then demoting the old DC
> (https://wiki.samba.org/index.php/Demoting_a_Samba_AD_DC).
> I am able to successfully deploy the new DC following directions in
> https://wiki.samba.org/index.php/Joining_a_Samba_DC_to_an_Existing_Active_Directory.
> However, I am struggling with ID mappings – I’m not really
> understanding how this should work. Should I have to manually
> re-create the passwd/group entries on my new DC in order to gain the
> old uid/gid values?  I’ve copied the idmap.ldb as suggested in the
> text, and whilst wbinfo returns the domain users, getent doesn’t show
> the domain accounts, only the local passwd entries.
> Have I missed something obvious??

No, you shouldn't have to recreate anything in AD, it all should be

Lets start with what OS you are using and a copy of your smb.conf.


More information about the samba mailing list