-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

John H Terpstra wrote:

The passwd backend is a separate issue from the idmap backend. Of you will
never need more than just a PDC, then there is no compelling reason to
store idmap backend in an ldap database.

On the other hand, if you do need more than a single Samba PDC (ie: PDC
and one or more BDCs) and you need consistant UID/GIDs across the whole
network, then an idmap backend in ldap is a must.

Domain member server would need consistent SID<->uid mapping as well.
But remember that on a Samba PDC, winbindd is only useful mapping users/groups from trusted domains (not its own).




cheers, jerry
 ----------------------------------------------------------------------
 Hewlett-Packard            ------------------------- http://www.hp.com
 SAMBA Team                 ---------------------- http://www.samba.org
 GnuPG Key                  ---- http://www.plainjoe.org/gpg_public.asc
 "You can never go home again, Oatman, but I guess you can shop there."
                            --John Cusack - "Grosse Point Blank" (1997)

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQE/oqVfIR7qMdg1EfYRAvWuAJ9slzLLfRmq9UXdOQDl0Mv3rWihcwCgyjcx
xPZVZyErZcw0DWddCdyKFo8=
=0czf
-----END PGP SIGNATURE-----

--
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba

Reply via email to