Samba3 - OpenLDAP - Krb5 - Active Directory.pdf

(825 KB) Pobierz
Seamless Integration between Active Directory Services and Linu
Seamless Integration:
Active Directory Services
and Samba 3.0
FVLUG – December 8, 2003
Wim Kerkhoff
31484484.002.png
Overview
What is Microsoft Active Directory Services?
What is Samba?
Windows 2000 Server configuration
Linux/Samba3 configuration
Test Kerberos authentication
Winbind/PAM configuration
Test PAM using SSH/FTP
Some screenshots, demos
Summary
31484484.003.png
What is Active Directory
Services?
Unified Environment
Easier to Manage in Win2k then NT4
Group Policies
Handles all sorts of things: DNS, trust
relationships, etc…. Everything goes in
ADS/LDAP
ADS Domain Controllers replace NT
PDC/BDCs
LDAP
31484484.004.png
What is Samba?
“Samba is a file and print server for Windows-based
clients using TCP/IP as the underlying transport
protocol. In fact, it can support any SMB/CIFS-
enabled client. One of Samba's big strengths is that
you can use it to blend your mix of Windows and
Linux machines together without requiring a separate
Windows NT/2000/2003 Server. Samba is actively
being developed by a global team of about 30 active
programmers and was originally developed by
Andrew Tridgell.”
31484484.005.png
SMB? CIFS? History
“SMB: Acronym for ‘Server Message
Block’. This is Microsoft's file and printer
sharing protocol”
“CIFS: Acronym for ‘Common Internet File
System’. Around 1996, Microsoft
apparently decided that SMB needed the
word "Internet" in it, so they changed it to
CIFS”
31484484.001.png
Zgłoś jeśli naruszono regulamin