delorie.com/archives/browse.cgi   search  
Mail Archives: cygwin/2006/03/02/19:25:16

X-Spam-Check-By: sourceware.org
Message-Id: <200603030024.k230Ow2b012557@tigris.pounder.sol.net>
From: cygwin AT trodman DOT com (Tom Rodman)
To: cygwin AT cygwin DOT com
Subject: Re: going thru domain switch..does cygwin grok "SID history"?
In-reply-to: <20060302152705.GM3184@calimero.vinschen.de>
References: <200603021513 DOT k22FDeoK009816 AT tigris DOT pounder DOT sol DOT net> <20060302152705 DOT GM3184 AT calimero DOT vinschen DOT de>
Date: Thu, 02 Mar 2006 18:24:57 -0600
X-IsSubscribed: yes
Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm
List-Unsubscribe: <mailto:cygwin-unsubscribe-archive-cygwin=delorie DOT com AT cygwin DOT com>
List-Subscribe: <mailto:cygwin-subscribe AT cygwin DOT com>
List-Archive: <http://sourceware.org/ml/cygwin/>
List-Post: <mailto:cygwin AT cygwin DOT com>
List-Help: <mailto:cygwin-help AT cygwin DOT com>, <http://sourceware.org/ml/#faqs>
Sender: cygwin-owner AT cygwin DOT com
Mail-Followup-To: cygwin AT cygwin DOT com
Delivered-To: mailing list cygwin AT cygwin DOT com

thanks Corinna

On Thu 3/2/06 16:27 +0100 Corinna wrote:
> On Mar  2 09:13, Tom Rodman wrote:
> > Has anyone experienced a domain migration where the filesystem was
> > left unchanged, and a "SID history" was injected into Active Directory
> > trustees? Under "Sid history", I'm told, each trustee (user or group) in
> > the new domain, contains a reference to it's former identity in the old
> > domain. The files and dirs have SIDs from the old domain only, but the
> > SID history feature is supposed to make this moot.
> > 
> > Can we expect sensible output from 'ls -l'?  
> 
> No, you have to rebuild /etc/passwd and /etc/group.

we have a cron job that rebuilds both daily

The SIDs on several hundred GB worth of files and dirs will almost all
be from the old domain. The old domain controller will be shutdown,
but there will be a SID history associated w/(almost) each domain user
account and group that was in the old domain. This SID history will be
saved on the domain controler in the new domain.

So, if you run 'ls -l' in one of these directories whose files have SIDs
from the old domain, I'm wondering if the SID history mechanism will
work, showing the matching user or group in the new domain?

I'll let you know what our tests show in the next few weeks.

--
thanks Corinna 
Tom

--
Unsubscribe info:      http://cygwin.com/ml/#unsubscribe-simple
Problem reports:       http://cygwin.com/problems.html
Documentation:         http://cygwin.com/docs.html
FAQ:                   http://cygwin.com/faq/

- Raw text -


  webmaster     delorie software   privacy  
  Copyright © 2019   by DJ Delorie     Updated Jul 2019