Hi, I have an interesting issue on 3.0.13: the ldap filter insists on having ...&(objectclass=smabaSamAccount)... as part of the filter. Of course at the same time the "smbldap-useradd -w ..." initially does not add in this objectclass... (the chicken and egg issue) Yet, on another system (different domain, etc) I did not have this issue. Does anyone have any experience on this? tom