Move from unicodePwd to userPassword?

Andrew Bartlett abartlet at samba.org
Fri Dec 30 21:53:46 GMT 2005


On Fri, 2005-12-30 at 23:41 +1100, Luke Howard wrote:
> >This would make it easier to implement the unicodePwd set operation,
> >because it would not conflict with our internal use.  I also take Luke
> >Howard's hint seriously:  If we later migrate to match Micorsoft,
> >changing formats but not names sounds very painful.
> 
> AD doesn't salt the password history, so you won't be able to preserve
> histories when you support replication. I'm just trying to stop you
> from having the same migration difficulties we had :-)
> 
> Also, you might want to use an attribute other than userPassword if you
> eventually want to support RFC 2307 (s. 5.3).

Yes, I had meant to frame that as part of the question:  Is there a
good, standard attribute name I should consider for this?

Andrew Bartlett

-- 
Andrew Bartlett                                http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Student Network Administrator, Hawker College  http://hawkerc.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20051231/9a4734c0/attachment.bin


More information about the samba-technical mailing list