Hi, I'm reading http://samba.org/samba/docs/man/Samba-HOWTO-Collection/samba-pdc.html , http://samba.org/samba/docs/man/Samba-HOWTO-Collection/samba-bdc.html and http://samba.org/samba/docs/man/Samba-HOWTO-Collection/domain-member.html and I'm still not quite sure... If I set up a network with one samba 3 PDC and a few samba 3 BDCs, all pointing to the same OpenLDAP server and using an "idmap alloc backend = ldap", I don't need an "add user script" nor an "add group script", is it right? But, do I need an "add machine script" though? How should I handle the uid/gid for machines... they won't be handled by idmap, or will they? TIA -- Mariano Absatz - "El Baby" el.baby at gmail.com www.clueless.com.ar -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- There is always a well-known solution to every human problem - neat, plausible, and wrong. H. L. Mencken US editor (1880 - 1956) -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- * TagZilla 0.066 * http://tagzilla.mozdev.org
On Tue, Oct 13, 2009 at 15:06, Mariano Absatz <el.baby at gmail.com> wrote:> Hi, > > I'm reading > http://samba.org/samba/docs/man/Samba-HOWTO-Collection/samba-pdc.html , > http://samba.org/samba/docs/man/Samba-HOWTO-Collection/samba-bdc.html and > http://samba.org/samba/docs/man/Samba-HOWTO-Collection/domain-member.htmland I'm still not quite sure... > > If I set up a network with one samba 3 PDC and a few samba 3 BDCs, all > pointing to the same OpenLDAP server and using an "idmap alloc backend > ldap", I don't need an "add user script" nor an "add group script", is it > right? > > But, do I need an "add machine script" though? How should I handle the > uid/gid for machines... they won't be handled by idmap, or will they? >Let me rephrase this... Do I have to use "add machine script" if I use "ldapsam:trusted=yes" AND "ldapsam:editposix=yes"? Or does "editposix" also takes care of adding machine accounts to my ldap tree? -- Mariano Absatz - El Baby www.clueless.com.ar
Ok so my understanding is you need to have add user script and add group script set up on all of the DC's however you can have them pointing to one server. -- W. Nick Pappin IT Staff Latah Federal Credit Union 208.874.4394 On Tue, Oct 13, 2009 at 11:06 AM, Mariano Absatz <el.baby at gmail.com> wrote:> Hi, > > I'm reading > http://samba.org/samba/docs/man/Samba-HOWTO-Collection/samba-pdc.html , > http://samba.org/samba/docs/man/Samba-HOWTO-Collection/samba-bdc.html and > http://samba.org/samba/docs/man/Samba-HOWTO-Collection/domain-member.htmland I'm still not quite sure... > > If I set up a network with one samba 3 PDC and a few samba 3 BDCs, all > pointing to the same OpenLDAP server and using an "idmap alloc backend > ldap", I don't need an "add user script" nor an "add group script", is it > right? > > But, do I need an "add machine script" though? How should I handle the > uid/gid for machines... they won't be handled by idmap, or will they? > > TIA > > -- > Mariano Absatz - "El Baby" > el.baby at gmail.com > www.clueless.com.ar > > > -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- > There is always a well-known solution to every human problem - > neat, plausible, and wrong. > H. L. Mencken > US editor (1880 - 1956) > -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- > * TagZilla 0.066 * http://tagzilla.mozdev.org > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >