ubuntuNetwork Authentication guid & samba domai co
Hi I need to know how to set up network Authentication with ubuntu and windows machines. I have one ubuntu 1104 machine as proxy,dns,samba servers. Windows machaines need to be able to have their samba shares come up when the windows user logs on also need this for the other ubuntu boxes to. How do I do this? A gui would be good to would make thing easyer for me. also how do I use samba as a domain controler for the windows boxes? this is a small home/office network. Someone told me to set up a OpenLDAP Server would that work? again how do you do that with a gui for the user and how do i use samba as a domain controler for my ubuntu and windows hosts.
computers
1 ubuntu 1104
1 lubuntu 1104
1 ubuntu 1004
1 windows 7
1 windows xp
severs on ubuntu only
proxy ip 1.2.3.7
dns ip 1.2.3.7
samba ip 1.2.3.7
samba smb.conf
# Samba config file created using SWAT
# from UNKNOWN (W)
# Date: 2010/06/13 22:20:03
[global]
workgroup = LBERMUDEZ
server string = %h server (Samba, Ubuntu)
map to guest = Bad User
obey pam restrictions = Yes
pam password change = Yes
passwd program = /usr/bin/passwd %u
passwd chat = *Enter\snew\s*\spassword:* %n\n *Retype\snew\s*\spassword:* %n\n *password\supdated\ssuccessfully* .
unix password sync = Yes
syslog = 0
log file = /var/log/samba/log.%m
max log size = 1000
dns proxy = No
usershare allow guests = Yes
panic action = /usr/share/samba/panic-action %d
valid users = lance
write list = lance
[music]
path = /home/lance/Music
write list =
guest ok = Yes
[printers]
comment = All Printers
path = /var/spool/samba
create mask = 0700
printable = Yes
browseable = No
browsable = No
[print$]
comment = Printer Drivers
path = /var/lib/samba/printers
[acer]
path = /home/lance/500gb/mombackup
read only = No
[music]
path = /home/lance/Music
write list =
guest ok = Yes
Comments
-
Samba is used to share directories and printers with windows computers using the smb protocol, not as a domain controller.
You should be able to install webmin on your system to allow you to configure samba and openldap from a web based gui.
OpenLDAP is used to for a directory and user authentication server, you can find a good guide for setup on both operating systems at http://erikberg.com/notes/auth.html . Once openldap is installated you can use webmin to configure both the users and groups in openLDAP, then use webmin to configure the shared drives.0 -
mfillpot wrote:Samba is used to share directories and printers with windows computers using the smb protocol, not as a domain controller.
One clarifications: samba is an implementation of a protocol, therefore you could as well use it in linux networks for sharing folders.
If I recall correctly you do can use samba as a domain controller... check the docs!OpenLDAP is used to for a directory and user authentication server, you can find a good guide for setup on both operating systems at http://erikberg.com/notes/auth.html. Once openldap is installated you can use webmin to configure both the users and groups in openLDAP, then use webmin to configure the shared drives.
If you are to use a web gui....configure everything and then turn it of. Having it on is a security risk.
Regards0 -
Lance is trying to use Samba in the new way, I was reading this post as well as other posts and he's trying to use it as a real domain controller. That's what Samba4 is for (or in their future plans at least): an AD Domain Controller , a file server and a MS Role controller (FSMO roles are planned...). I've tried to use samba as a replacement of a real MS AD domain controller but it's quite hard now to get something working quick. That's why there're questions related to LDAP as well as shares and users/groups.
In my opinion OpenLDAP has better features and more options than original LDAP tree customized from Microsoft but if you're a MS sysadmin you don't care about it, you've an AD tree with a lot of Windows machines and users attached to it, you need to have them working with your new AD samba tree. Fedora 389 directory server project (http://directory.fedoraproject.org/) it's a layer for samba+openldap+... projects and aims to target to enterprise users who wants to replace a real AD domain controller, by the way there's a gap to cover to get something totally transparent if you plan to replace MS technology.
I'm trying to get the same thing with Samba4 but it ain't that easy, there're guides around the net but I've never found a complete solution covering all aspects if this problem (undocumented from Microsoft as well, they tend to cover well their documentation without too much details for alternative solutions)0
Categories
- All Categories
- 51 LFX Mentorship
- 104 LFX Mentorship: Linux Kernel
- 576 Linux Foundation IT Professional Programs
- 304 Cloud Engineer IT Professional Program
- 125 Advanced Cloud Engineer IT Professional Program
- 53 DevOps Engineer IT Professional Program
- 61 Cloud Native Developer IT Professional Program
- 5 Express Training Courses
- 5 Express Courses - Discussion Forum
- 2.1K Training Courses
- 19 LFC110 Class Forum
- 7 LFC131 Class Forum
- 27 LFD102 Class Forum
- 158 LFD103 Class Forum
- 21 LFD121 Class Forum
- 1 LFD137 Class Forum
- 61 LFD201 Class Forum
- 1 LFD210 Class Forum
- LFD210-CN Class Forum
- 1 LFD213 Class Forum - Discontinued
- 128 LFD232 Class Forum
- LFD237 Class Forum
- 23 LFD254 Class Forum
- 612 LFD259 Class Forum
- 105 LFD272 Class Forum
- 1 LFD272-JP クラス フォーラム
- 1 LFD273 Class Forum
- 2 LFS145 Class Forum
- 25 LFS200 Class Forum
- 739 LFS201 Class Forum
- 1 LFS201-JP クラス フォーラム
- 11 LFS203 Class Forum
- 76 LFS207 Class Forum
- 300 LFS211 Class Forum
- 54 LFS216 Class Forum
- 47 LFS241 Class Forum
- 41 LFS242 Class Forum
- 37 LFS243 Class Forum
- 11 LFS244 Class Forum
- 37 LFS250 Class Forum
- 1 LFS250-JP クラス フォーラム
- LFS251 Class Forum
- 141 LFS253 Class Forum
- LFS254 Class Forum
- 1.1K LFS258 Class Forum
- 10 LFS258-JP クラス フォーラム
- 93 LFS260 Class Forum
- 132 LFS261 Class Forum
- 33 LFS262 Class Forum
- 80 LFS263 Class Forum
- 15 LFS264 Class Forum
- 11 LFS266 Class Forum
- 18 LFS267 Class Forum
- 18 LFS268 Class Forum
- 23 LFS269 Class Forum
- 203 LFS272 Class Forum
- 1 LFS272-JP クラス フォーラム
- LFS274 Class Forum
- LFS281 Class Forum
- 236 LFW211 Class Forum
- 172 LFW212 Class Forum
- 7 SKF100 Class Forum
- SKF200 Class Forum
- 903 Hardware
- 219 Drivers
- 74 I/O Devices
- 44 Monitors
- 116 Multimedia
- 209 Networking
- 101 Printers & Scanners
- 85 Storage
- 763 Linux Distributions
- 88 Debian
- 66 Fedora
- 15 Linux Mint
- 13 Mageia
- 24 openSUSE
- 142 Red Hat Enterprise
- 33 Slackware
- 13 SUSE Enterprise
- 357 Ubuntu
- 479 Linux System Administration
- 41 Cloud Computing
- 70 Command Line/Scripting
- Github systems admin projects
- 95 Linux Security
- 78 Network Management
- 108 System Management
- 49 Web Management
- 68 Mobile Computing
- 23 Android
- 30 Development
- 1.2K New to Linux
- 1.1K Getting Started with Linux
- 538 Off Topic
- 131 Introductions
- 217 Small Talk
- 22 Study Material
- 826 Programming and Development
- 278 Kernel Development
- 514 Software Development
- 928 Software
- 260 Applications
- 184 Command Line
- 3 Compiling/Installing
- 76 Games
- 316 Installation
- 61 All In Program
- 61 All In Forum
Upcoming Training
-
August 20, 2018
Kubernetes Administration (LFS458)
-
August 20, 2018
Linux System Administration (LFS301)
-
August 27, 2018
Open Source Virtualization (LFS462)
-
August 27, 2018
Linux Kernel Debugging and Security (LFD440)