-----Original Message----- From: Antoine Jacoutot [mailto:[EMAIL PROTECTED]
On Tuesday 16 September 2003 21:34, Rauno Tuul wrote: > IMHO groupmapping doesnt fill that hole, because whatever groupmap entry > doesn't give admin rights on LDAP. > So, you think that's ok to remove that piece of code, right ? removing isn't the best solution, for security reasons. then can anyone turn the LDAP to a mess... Honestly said, the parameter "domain admin group" should come back. Some say it isn't necessary. But how can you add PC's to domain with for example 2 users "brick" and "stone" (different passwords), when their uid isn't 0 and they aren't in "admin users" list? Rgds, Rauno. -- To unsubscribe from this list go to the following URL and read the instructions: http://lists.samba.org/mailman/listinfo/samba
