Re: [Samba] Winbind, cached logons and 'user persistency'...

> Maybe the winbind cache time is set to low for this. 

OK. But this look still strange/dangerous to me. Two 'open point':

1) seems to me that there's many 'cache time' parameters:

  + idmap cache time, default 604800 (one week); seems related only to
    SID<->GID/UID query, so unrelated here.

  + winbind cache time, default 300 (5 minutes); this seems the
    parameter i need to tackle with.

but... HOW work that cache? There's a 'negative' timeout also? Or
simply cache data and use cached data if all DC are not available?

2) in my network i've 7 DCs. Tearing down the main switch i've surely
 disconnected all the remote DCs. But still i've two local one, one of
that in the same phisical proxmox server of the DM member that lost
cache. So could be reachable!!

I suppose that a DM will try to contact *all* DCs (at first glance, the
same-site-dc; after all available DCs), right?

There's some things i can do to make sure DCs are alive and kicking?

Ah, DM are 4.8.8+nmu-1~deb9, your packages.

