Hi All, When running testparm .. I met: passdb expand explicit = yes what does it mean? .. what should I do? could any body please help?.. Thanks & Regards Winanjaya [root@samba samba]# testparm -v Load smb config files from /etc/samba/smb.conf Processing section "[homes]" Processing section "[profiles]" Processing section "[netlogon]" Processing section "[printers]" Processing section "[tmp]" Processing section "[public]" Loaded services file OK. WARNING: passdb expand explicit = yes is deprecated Server role: ROLE_DOMAIN_PDC Press enter to see a dump of your service definitions announce version = 4.9 announce as = NT max mux = 50 max xmit = 16644 name resolve order = lmhosts wins host bcast max ttl = 259200 max wins ttl = 518400 min wins ttl = 21600 time server = Yes unix extensions = Yes use spnego = Yes client signing = auto server signing = No client use spnego = Yes enable asu support = Yes svcctl list = Spooler, NETLOGON change notify timeout = 60 deadtime = 0 getwd cache = Yes keepalive = 300 kernel change notify = Yes lpq cache time = 30 max smbd processes = 0 paranoid server security = Yes max disk size = 0 max open files = 10000 socket options = TCP_NODELAY SO_RCVBUF=8192 SO_ use mmap = Yes hostname lookups = No name cache timeout = 660 load printers = Yes printcap cache time = 750 printcap name = /etc/printcap cups server iprint server disable spoolss = No enumports command addprinter command deleteprinter command show add printer wizard = Yes os2 driver map mangling method = hash2 mangle prefix = 1 max stat cache size = 0 stat cache = Yes machine password timeout = 604800 add user script = /usr/sbin/smbldap-useradd -m rename user script delete user script add group script = /usr/sbin/smbldap-groupadd - delete group script add user to group script = /usr/sbin/smbldap-gr delete user from group script = /usr/sbin/smbld set primary group script = /usr/sbin/smbldap-us add machine script = /usr/sbin/smbldap-useradd shutdown script abort shutdown script username map script logon script = logon.bat logon path = \\%N\%U\profile logon drive = H: logon home = \\%N\%U domain logons = Yes os level = 65 lm announce = Auto lm interval = 60 preferred master = Yes local master = No domain master = Auto browse list = Yes enhanced browsing = Yes dns proxy = No wins proxy = No wins server wins support = Yes wins hook wins partners kernel oplocks = Yes lock spin count = 3 lock spin time = 10 oplock break wait time = 0 ldap admin dn = cn=Manager,dc=lippogeneral,dc=c ldap delete dn = Yes ldap group suffix = ou=Groups ldap idmap suffix = ou=Users ldap machine suffix = ou=Computers ldap passwd sync = Yes ldap replication sleep = 1000 ldap suffix = dc=lippogeneral,dc=com ldap ssl = start tls ldap timeout = 15 ldap page size = 1024 ldap user suffix = ou=Users add share command change share command delete share command eventlog list config file preload lock directory = /var/cache/samba pid directory = /var/run utmp directory wtmp directory utmp = No default service message command get quota command set quota command remote announce remote browse sync socket address = 0.0.0.0 homedir map = auto.home afs username map afs token lifetime = 604800 log nt token command time offset = 0 NIS homedir = No panic action host msdfs = No enable rid algorithm = Yes passdb expand explicit = Yes idmap backend idmap uid idmap gid template homedir = /home/%D/%U template shell = /bin/false winbind separator = \ winbind cache time = 300 winbind enum users = Yes winbind enum groups = Yes winbind use default domain = No winbind trusted domains only = No winbind nested groups = No winbind max idle children = 3 winbind nss info = template comment path username invalid users valid users admin users read list write list printer admin force user force group read only = Yes acl check permissions = Yes acl group control = No acl map full control = Yes create mask = 0744 force create mode = 00 security mask = 0777 force security mode = 00 directory mask = 0755 force directory mode = 00 directory security mask = 0777 force directory security mode = 00 force unknown acl user = No inherit permissions = No inherit acls = No inherit owner = No guest only = No guest ok = No only user = No hosts allow hosts deny allocation roundup size = 1048576 aio read size = 0 aio write size = 0 aio write behind ea support = No nt acl support = Yes profile acls = No map acl inherit = No afs share = No block size = 1024 max connections = 0 min print space = 0 strict allocate = No strict sync = No sync always = No use sendfile = No write cache size = 0 max reported print jobs = 0 max print jobs = 1000 printable = No printing = cups cups options print command lpq command = %p lprm command lppause command lpresume command queuepause command queueresume command printer name use client driver = No default devmode = No force printername = No default case = lower case sensitive = Auto preserve case = Yes short preserve case = Yes mangling char = ~ hide dot files = Yes hide special files = No hide unreadable = No hide unwriteable files = No delete veto files = No veto files hide files veto oplock files map archive = Yes map hidden = No map system = No map readonly = yes mangled names = Yes mangled map store dos attributes = No browseable = Yes blocking locks = Yes csc policy = manual fake oplocks = No locking = Yes oplocks = Yes level2 oplocks = Yes oplock contention limit = 2 posix locking = Yes strict locking = Yes share modes = Yes dfree cache time = 0 dfree command copy include preexec preexec close = No postexec root preexec root preexec close = No root postexec available = Yes volume fstype = NTFS set directory = No wide links = Yes follow symlinks = Yes dont descend magic script magic output delete readonly = No dos filemode = No dos filetimes = Yes dos filetime resolution = No fake directory create times = No vfs objects msdfs root = No msdfs proxy [homes] comment = Home Directories valid users = %U read only = No create mask = 0664 directory mask = 0775 browseable = No [profiles] path = /home/samba/profile valid users = %U, "@Domain Admins" force user = %U read only = No create mask = 0600 directory mask = 0700 guest ok = Yes profile acls = Yes browseable = No csc policy = disable [netlogon] comment = Network Logon Service path = /home/samba/netlogon [printers] comment = All Printers path = /var/spool/samba printable = Yes browseable = No [tmp] comment = Temporary file space path = /tmp read only = No guest ok = Yes [public] path = /home/samba/public read only = No guest ok = Yes [root@samba samba]# *********************** Our outgoing mail has been scanned by MSS. ***********************