-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 I just came across the following in the Samba HOWTO: It is important that all LDAP IDMAP clients use only the master LDAP server because the idmap backend facility in the smb.conf file does not correctly handle LDAP redirects. It's found in Chapter 13, section "Samba Server Deployment Types and IDMAP," subsection "Domain Member Server or Domain Member client," underneath the "Winbind with an NSS/LDAP backend-based IDMAP facility" header---[1] is close by. Is this statement current? I seem to recall reading that configuring a BDC to talk to an LDAP slave was entirely possible. Thanks! [1] http://us4.samba.org/samba/docs/man/Samba-HOWTO-Collection/idmapper.html#id2584963 - -- Anthony Chavez http://anthonychavez.org/ mailto:acc@anthonychavez.org jabber:acc@jabber.anthonychavez.org -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (Darwin) iQEVAwUBQthWlPAIdTFWAbdTAQptsAf+O+7U6Ig3M8x9tk6Lx+joPLzCNZFJggd4 1kyPcu2p07mJXykqiA0QnLMQLE+ABQfKoLWQ6SZ8ePVhbYIAaMpFr4hsvO54gYP7 T9RNi+tnM5V+kNn5T005pkPsbl36mLOpJBcIFdKxUGLwspH4Gu3jFiaFcprRXvLK ngwUepOv31jJqN4YsG3oVXf7Vd6zLXuzVxszxrJLW2pICm2B6f5u6jtDnoGWoDro 1AYW08TYKzyxJ48z28PBN4/gJ4suwpBih+fU7SKXgIp5+BCIdqPYWgwBIMMTtn0L cIGTnsBg6lkpcZS2AZu3IyTVEzychri/fe/CZBpB4CY1VgiQvsqjHQ==mmF2 -----END PGP SIGNATURE-----