1
0
mirror of https://github.com/samba-team/samba.git synced 2024-12-24 21:34:56 +03:00
samba-mirror/docs-xml/smbdotconf/winbind/winbindnssinfo.xml
Günther Deschner e1d2b47693 s3-docs: Add a clarification note for nss_info primary group membership calculation.
Guenther

Autobuild-User: Günther Deschner <gd@samba.org>
Autobuild-Date: Wed Oct 19 03:10:40 CEST 2011 on sn-devel-104
2011-10-19 03:10:40 +02:00

41 lines
1.5 KiB
XML

<samba:parameter name="winbind nss info"
context="G"
type="boolean"
advanced="1" developer="1"
xmlns:samba="http://www.samba.org/samba/DTD/samba-doc">
<description>
<para>This parameter is designed to control how Winbind retrieves Name
Service Information to construct a user's home directory and login shell.
Currently the following settings are available:
<itemizedlist>
<listitem>
<para><parameter moreinfo="none">template</parameter>
- The default, using the parameters of <parameter moreinfo="none">template
shell</parameter> and <parameter moreinfo="none">template homedir</parameter>)
</para>
</listitem>
<listitem>
<para><parameter moreinfo="none">&lt;sfu | sfu20 | rfc2307 &gt;</parameter>
- When Samba is running in security = ads and your Active Directory
Domain Controller does support the Microsoft "Services for Unix" (SFU)
LDAP schema, winbind can retrieve the login shell and the home
directory attributes directly from your Directory Server. For SFU 3.0 or 3.5 simply choose
"sfu", if you use SFU 2.0 please choose "sfu20". Note that
retrieving UID and GID from your ADS-Server requires to
use <parameter moreinfo="none">idmap config DOMAIN:backend</parameter> = ad
as well. The primary group membership is currently
always calculated via the "primaryGroupID" LDAP attribute.
</para>
</listitem>
</itemizedlist>
</para>
</description>
<value type="default">template</value>
<value type="example">sfu</value>
</samba:parameter>