Thanassis Tsiodras wrote:
If I use the share from a Windows PC, where a domain user has logged in, the generated folders/files indeed seem to belong to the same user (when reviewed from another machine). The ACLs appear to survive reboots...

Do they? i.e. is this guaranteed?

Yes, it is guaranteed.

The idmap documentation I read seems to suggest that even though idmap attempts to retain the same ephemeral UID for the same Windows SID, this is not guaranteed... the UID might change after a reboot of OpenSolaris.

It actually makes no attempt whatsoever to retain the same ephemeral UID across reboots. The ephemeral UID is unimportant... ephemeral. It is never, ever written to disk. What's stored on the disk is the Windows-style SID for the user, not a UNIX-style UID. The ephemeral ID is used only momentarily, as the user's identity is passed up and down through layers that know only how to handle UIDs.

I'm sure there's a white paper or blog entry somewhere describing the whole architecture, but I don't immediately know where. If you're interested I'll see if I can dig it up.
_______________________________________________
cifs-discuss mailing list
[email protected]
http://mail.opensolaris.org/mailman/listinfo/cifs-discuss

Reply via email to