[Samba] Verify if Samba AD was provisioned with RFC2037

Rowland penny rpenny at samba.org
Sun Jan 3 14:53:48 UTC 2021

On 03/01/2021 14:32, Marco Shmerykowsky via samba wrote:
> Is there a way to confirm whether a samba AD was
> provisioned using RFC2307?

All that provisioning with '--use-rfc2307' does is to put 'idmap_ldb:use 
rfc2307' into the first DC's smb.conf (a 'join' doesn't do this) and 
adds the 'ypServ30.ldif' to AD. The first makes DC's use uidNumber & 
gidNumber attributes from AD instead of the xidNumber attributes from 
idmap.ldb. The second makes the Unix attributes tabs work in ADUC, only 
problem is, they no longer exist 🙁

All of the RFC2307 attributes are in the AD schema by default, even if 
you provision without '--use-rfc2307'.


More information about the samba mailing list