Le 15/04/2013 04:28, steve a écrit : > Indeed, for each new user or group you create you always end up with an idmap > entry too. What > > idmap_ldb:use rfc2307 = yes > > is saying is 'ignore idmap and give priority to AD'. Of course, the > attributes must be there in the first place otherwise it will fall back to > idmap again. Exactly what we are trying to avoid at all costs. I had to > prove this to myself by creating a user in AD with rfc2307 stuff and then > deleting his entry in idmap. With the > > idmap_ldb:use rfc2307 = yes > in place then no problem. All his stuff came from AD as expected:)
Ok. I think it's clear for me now. > I think we're speaking the same language now. Yes, thank you for your help Steve. :-) Bye. -- François Lafont -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba