1<html><head><meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1"><title>idmap_nss</title><link rel="stylesheet" href="samba.css" type="text/css"><meta name="generator" content="DocBook XSL Stylesheets V1.71.0"></head><body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF"><div class="refentry" lang="en"><a name="idmap_nss.8"></a><div class="titlepage"></div><div class="refnamediv"><h2>Name</h2><p>idmap_nss — Samba's idmap_nss Backend for Winbind</p></div><div class="refsynopsisdiv"><h2>DESCRIPTION</h2><p>The idmap_nss plugin provides a means to map Unix users and groups 2 to Windows accounts and obseletes the "winbind trusted domains only" 3 smb.conf option. This provides a simple means of ensuring that the SID 4 for a Unix user named jsmith is reported as the one assigned to 5 DOMAIN\jsmith which is necessary for reporting ACLs on files and printers 6 stored on a Samba member server. 7 </p></div><div class="refsect1" lang="en"><a name="id291819"></a><h2>EXAMPLES</h2><p> 8 This example shows how to use idmap_nss to check the local accounts for its 9 own domain while using allocation to create new mappings for trusted domains 10 </p><pre class="programlisting"> 11 [global] 12 idmap domains = SAMBA TRUSTEDDOMAINS 13 14 idmap config SAMBA:backend = nss 15 idmap config SAMBA:readonly = yes 16 17 idmap config TRUSTEDDOMAINS:default = yes 18 idmap config TRUSTEDDOMAINS:backend = tdb 19 idmap config TRUSTEDDOMAINS:range = 10000 - 50000 20 21 idmap alloc backend = tdb 22 idmap alloc config:range = 10000 - 50000 23 </pre></div><div class="refsect1" lang="en"><a name="id259310"></a><h2>AUTHOR</h2><p> 24 The original Samba software and related utilities 25 were created by Andrew Tridgell. Samba is now developed 26 by the Samba Team as an Open Source project similar 27 to the way the Linux kernel is developed. 28 </p></div></div></body></html> 29