For the part I’m concerned, I take the last samba src.rpm, from Rocky Linux (EL8) or CentOS Stream (EL9), update the dependencies and rebuild it with dc option enabled.
It’s simple, fast and efficient if you accept the option to have MIT Kerberos instead of Heimdal for DC.
That is one reason, I think another reason is they want to lock you into their inferior freeipa, yes freeipa is good at what it does, but it isn’t AD and never will be.
I agree with both, noting that the best tool in freeipa is directory server, robust and resilient.
On the other hand, AD DC support for samba is regularly tested in Fedora.
Is there any way you can contribute your work to the above mentioned package request so that the rpm source becomes more “official”? Not that your repo doesn’t work perfectly. I think rebuilds would become automatic on new releases. I’d like to include DC functionality in a distro. Thanks. PS: at least for EL8.
Well, my repository is a personal effort given to the community for free and I migrated to EL9 for my samba environment.
I could contribute to the mentioned package request, but I need to learn how to do it first and then get the required credentials, maybe you should contribute too?