From: Wil C. <wc...@na...> - 2004-02-01 01:48:59
|
I noticed a bug in the Samba attributes in the LDAP Users & Groups module. The module adds sambaPrimaryGroupSID and presumes that the RID can be algorithmically generated. There are several "well known" groups and corresponding RIDs, such as the "Domain Users" group with RID of 513. It would be better to ascertain the group SID with an LDAP query if the group already exists; however, considering that the smbldap tools do not populate this attribute and none of the docs mention that it is required, it would probably be best to simply not add the attribute. Wil --=20 Wil Cooley wc...@na... Naked Ape Consulting http://nakedape.cc * * * * Linux, UNIX, Networking and Security Solutions * * * * * Naked Ape Consulting http://nakedape.cc * * Secure E-mail Server * * Naked Ape Mail Defender http://nakedape.cc/r/md * |