after issued: /usr/share/openldap/migration/migrate_passwd.pl /tmp/sambaAdmin > /tmp/sambaAdmin.ldif i got following ldif: #cat sambaAdmin.ldif dn: uid=Administrator,ou=People,dc=xxx,dc=it uid: Administrator cn: Samba Admin givenName: Samba sn: Admin mail: Administrator@xxxxxx objectClass: person objectClass: organizationalPerson objectClass: inetOrgPerson objectClass: posixAccount objectClass: top userPassword: {crypt}x loginShell: /bin/bash uidNumber: 0 gidNumber: 0 homeDirectory: /root gecos: Samba Admin i think it's correct. i load it into ldap db to create Adminstrator entry using: /opt/fedora-ds/slapd-<server>/ldif2ldap "cn=Directory manager" password /tmp/sambaAdmin.ldif i wonder if at this point Admnistrator should be created with sambaSamAccount objectclass or later when issuing smbpasswd -a Administrator -w<ldap-admin-password> what i see is that in ldap db Administrator entry has only what is in ldif file. -- maurizio -- Fedora-directory-users mailing list Fedora-directory-users@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/fedora-directory-users