New Unix user and group domain

simo idra at samba.org
Thu Feb 23 16:38:48 GMT 2006


On Thu, 2006-02-23 at 10:24 -0600, Volker Lendecke wrote:
> > 1.  Why did you move the Unix create user/group calls into
> >     the passdb API?  I don't understand what you are trying
> >     to solve there.
> 
> Nothing so far. I want to give the admin the possibility to
> live without 'add user script' and friends if
> ldapsam:trusted=edit or so. These scripts have given me so
> much headache in particular with LDAP that I want another
> option.

I strongly agree with this, scripts are often a headache for admins.
I'd like we can add the users/groups/mappings directly into ldap without
relying on external scripts. I'd like that when ldapsam:trusted is set
and no user script defined then we go with our own code.
It would be nice if we could template our own user/group creation code
(templates are much easier to understand and customize than user scripts
and fits most cases), but we can always do it later.

Simo.

-- 
Simo Sorce
Samba Team
email: idra at samba.org
http://samba.org/~idra



More information about the samba-technical mailing list