Web lists-archives.com

Re: [Samba] [samba] file server, AD client, no rfc2307

On Thu, 27 Jul 2017 08:51:52 +0100
Rowland Penny via samba <samba@xxxxxxxxxxxxxxx> wrote:

> On Thu, 27 Jul 2017 08:36:51 +0100
> Rowland Penny via samba <samba@xxxxxxxxxxxxxxx> wrote:
> > 
> > I will have a look at the provision code for the Samba DC to see
> > what it actually does when you use '--use-rfc2307', if it just adds
> > 'ypServ30.ldif', I will setup a test domain without '--use-rfc2307'
> > and see what happens ;-)
> > 
> > Rowland
> > 
> OK, '--use-rfc2307' adds 'idmap_ldb:use rfc2307 = yes' to smb.conf on
> the DC and then adds 'ypServ30.ldif'. As far as I am aware, nothing
> actually uses anything in 'ypServ30.ldif'. 
> I will set up a new domain and see what happens.
> Rowland

OK, I can now confirm that you do not need '--use-rfc2307' to use the
winbind 'ad' backend on a Unix domain member.

You do need 'idmap_ldb:use rfc2307 = yes' in the smb.conf on a DC to
use uidNumber & gidNumber attributes on the DC.

You will not be able to use ADUC without '--use-rfc2307' 


To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba