3 ### Multimaster-ServerIDs and URLs ###
5 ${MMR_SERVERIDS_CONFIG}
8 include ${LDAPDIR}/backend-schema.schema
10 pidfile ${LDAPDIR}/slapd.pid
11 argsfile ${LDAPDIR}/slapd.args
12 sasl-realm ${DNSDOMAIN}
15 # uid=([^,]*),cn=${DNSDOMAIN},cn=digest-md5,cn=auth
16 # ldap:///${DOMAINDN}??sub?(samAccountName=\$1)
19 # uid=([^,]*),cn=([^,]*),cn=digest-md5,cn=auth
20 # ldap:///${DOMAINDN}??sub?(samAccountName=\$1)
23 uid=([^,]*),cn=([^,]*),cn=digest-md5,cn=auth
24 ldap:///cn=samba??one?(cn=\$1)
27 uid=([^,]*),cn=([^,]*),cn=ntlm,cn=auth
28 ldap:///cn=samba??one?(cn=\$1)
31 by dn=cn=samba-admin,cn=samba manage
35 access to dn.subtree="cn=samba"
38 access to dn.subtree="${DOMAINDN}"
39 by dn=cn=samba-admin,cn=samba manage
40 by dn=cn=manager manage
43 password-hash {CLEARTEXT}
45 include ${LDAPDIR}/modules.conf
47 defaultsearchbase ${DOMAINDN}
57 directory ${LDAPDIR}/db/samba
58 rootdn cn=Manager,cn=Samba
60 ########################################
64 rootdn cn=Manager,${SCHEMADN}
66 directory ${LDAPDIR}/db/schema
68 index samAccountName eq
70 index objectCategory eq
71 index lDAPDisplayName eq
74 index entryUUID,entryCSN eq
76 #syncprov is stable in OpenLDAP 2.3, and available in 2.2.
77 #We only need this for the contextCSN attribute anyway....
79 syncprov-sessionlog 100
80 # syncprov-checkpoint 100 10
83 ### Multimaster-Replication of cn=schema Subcontext ###
84 ${MMR_SYNCREPL_SCHEMA_CONFIG}
87 #########################################
91 rootdn cn=Manager,${CONFIGDN}
93 directory ${LDAPDIR}/db/config
95 index samAccountName eq
98 index objectCategory eq
104 index entryUUID,entryCSN eq
106 #syncprov is stable in OpenLDAP 2.3, and available in 2.2.
107 #We only need this for the contextCSN attribute anyway....
109 syncprov-sessionlog 100
110 # syncprov-checkpoint 100 10
112 ### Multimaster-Replication of cn=config Subcontext ###
113 ${MMR_SYNCREPL_CONFIG_CONFIG}
116 ########################################
117 ### cn=users /base-dn ###
120 rootdn cn=Manager,${DOMAINDN}
122 directory ${LDAPDIR}/db/user
124 index samAccountName eq
127 index objectCategory eq
132 index lDAPDisplayName eq
137 index entryUUID,entryCSN eq
139 #syncprov is stable in OpenLDAP 2.3, and available in 2.2.
140 #We only need this for the contextCSN attribute anyway....
142 syncprov-sessionlog 100
143 # syncprov-checkpoint 100 10
145 ### Multimaster-Replication of cn=user/base-dn context ###
146 ${MMR_SYNCREPL_USER_CONFIG}