[samba] pdc+bdc
inkubus-22
inkubus-22 на yandex.ru
Вт Сен 19 15:04:37 MSD 2006
Уважаемые, all
столунулся вот с такой проблемой:
имеем samba 2.2.12 в качестве пдс пользователи лежат в smbpasswd
настраиваем bdc+ldap имеем freebsd.6.1 openldap 2.3.27 samba 3.0.23
smb.conf
[global]
dos charset = CP866
unix charset = KOI8-R
display charset = KOI8-R
workgroup = SERV
netbios name =cons-nt
server string = PDC Microsoft Windows
interfaces = fxp0, lo
client schannel = No
server schannel = No
passdb backend = ldapsam:ldap://127.0.0.1/
passwd program = /usr/local/sbin/smbldap-passwd -u "%u"
passwd chat = "Changing password for*\nNew password*" %n\n "*Retype new password*" %n\n"
username map = /usr/local/etc/samba/smbusers
unix password sync = Yes
log level = 8 ads:10 auth:10 sam:10 rpc:10
syslog = 8
log file = /var/log/samba/log.%m
max log size = 10000
name resolve order = lmhosts wins dns host bcast
time server = Yes
socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
add user script = /usr/local/sbin/smbldap-useradd -m "%u"
delete user script = /usr/local/sbin/smbldap-userdel "%u"
add group script = /usr/local/sbin/smbldap-groupadd -p "%g"
delete group script = /usr/local/sbin/smbldap-groupdel "%g"
add user to group script = /usr/local/sbin/smbldap-groupmod -m "%u" "%g"
delete user from group script = /usr/local/sbin/smbldap-groupmod -x "%u" "%g"
set primary group script = /usr/local/sbin/smbldap-usermod -g "%g" "%u"
add machine script = /usr/local/sbin/smbldap-useradd -w "%u"
logon script = %u.cmd
logon path =
logon drive = F:
logon home =
domain logons = Yes
os level = 253
preferred master = No
domain master = No
wins support = Yes
ldap admin dn = cn=admin,dc=xxxx,dc=ru
ldap delete dn = Yes
ldap group suffix = ou=Groups
ldap idmap suffix = ou=Users
ldap machine suffix = ou=Computers
ldap passwd sync = Yes
ldap suffix = dc=palcons,dc=ru
ldap user suffix = ou=Users
admin users = root, "@Domain Admins"
hosts allow = 192.168.145., 127.
veto files = /*.avi/*.mp3/
[netlogon]
comment = Network Logon Service
path = /usr/local/etc/samba/netlogon/%u.bat
guest ok = Yes
share modes = No
volume = NETLOGON
[Profiles]
path = /usr/local/etc/samba/profiles/%u
admin users = admin, root, %u
read only = No
create mask = 0600
directory mask = 0700
guest ok = Yes
добовляем машину в smbpasswd
регистрируем машинку в домене
root[/usr/local/etc/samba]#>net rpc join -U root 16:01
Joined domain SERV.
устанавливаем сид
root[/usr/local/etc/samba]#>net rpc getsid SERV 10:23
Storing SID S-1-5-21-703746687-2398079630-2454373809 for Domain SERV in secrets.tdb
все в порядке идём дальше пытаемся забрать пользователей
>net rpc vampire -S 192.168.145.50 -w serv 10:22
Fetching DOMAIN database
Failed to fetch domain database: NT code 0x1c010002
и всё здесь затык поиск по гугл ничего не даёт!!!!
Кто знает как быть?
--
---
с уважением
Подробная информация о списке рассылки Samba