Are you running winbindd on the member server? I would
recommend it but since the posixAccount information is being
shared via LDAP, make sure to set 'winbind trusted domains only = yes'
Yes, winbind is running and I set 'winbind trusted domains only = yes'.
I found out that I need to use 'fake' 'idmap uid' and 'idmap gid' to get it to
work. Is that a winbind bug? In contrast to the documentation, 'nscd' must be
running, otherwise I am not able to logon to the member server.
-Remy
--
To unsubscribe from this list go to the following URL and read the
instructions: https://lists.samba.org/mailman/listinfo/samba