On Tue, 2004-03-02 at 00:13, Lapin(c) wrote:
> I was exploring a local LDAP solution, as it's for a very large network (1000
> sites / 100000 users)

That's a big site :-)

>  we want a disjunction between local administration for
> machines and global administration for users.

Then perhaps the NT domain modal of 'service domains' and 'resource
domains' might be the right solution.  However, I still suggest one
massive domain, as Samba's domain trust (between DCs) support still has
some issues.

You don't want TDBs, because you must have the same database on each and
every DC in the domain.  Even if you create resource domains, by using
tdbsam, we remove the ability to have a BDC at that site.

Andrew Bartlett

-- 
Andrew Bartlett                                 [EMAIL PROTECTED]
Manager, Authentication Subsystems, Samba Team  [EMAIL PROTECTED]
Student Network Administrator, Hawker College   [EMAIL PROTECTED]
http://samba.org     http://build.samba.org     http://hawkerc.net

Attachment: signature.asc
Description: This is a digitally signed message part

-- 
To unsubscribe from this list go to the following URL and read the
instructions:  http://lists.samba.org/mailman/listinfo/samba

Reply via email to