LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 03-17-2008, 08:01 PM   #1
wslyhbb
Member
 
Registered: Apr 2002
Location: Chicago, IL
Distribution: Mandriva 2009.0 PowerPack x86_64
Posts: 150

Rep: Reputation: 15
Joining a Samba+LDAP Domain question


I have Samba with a LDAP backend. I have the following users in my LDAP:
dn: uid=Administrator,ou=People,dc=mydomain,dc=com
cn: Administrator
sn: Administrator
uid: Administrator
objectClass: top
objectClass: person
objectClass: organizationalPerson
objectClass: inetOrgPerson
objectClass: sambaSamAccount
objectClass: posixAccount
objectClass: shadowAccount
gidNumber: 512
uidNumber: 0
homeDirectory: /home/%U
sambaLogonTime: 0
sambaLogoffTime: 2147483647
sambaKickoffTime: 2147483647
sambaPwdCanChange: 0
sambaPrimaryGroupSID: S-1-5-21-504526975-3671300981-3734984268-512
sambaSID: S-1-5-21-504526975-3671300981-3734984268-500
loginShell: /bin/false
gecos: Netbios Domain Administrator
sambaLMPassword: xxx
sambaAcctFlags: [U]
sambaNTPassword: xxx
sambaPwdLastSet: 1205460847
sambaPwdMustChange: 1209348847
userPassword:: xxx

dn: uid=root,ou=People,dc=mydomain,dc=com
objectClass: top
objectClass: person
objectClass: organizationalPerson
objectClass: inetOrgPerson
objectClass: posixAccount
objectClass: shadowAccount
objectClass: sambaSamAccount
cn: root
sn: root
givenName: root
uid: root
uidNumber: 1002
gidNumber: 512
homeDirectory: /home/root
loginShell: /bin/bash
gecos: System User
sambaLogonTime: 0
sambaLogoffTime: 2147483647
sambaKickoffTime: 2147483647
sambaPwdCanChange: 0
displayName: System User
sambaSID: S-1-5-21-504526975-3671300981-3734984268-3004
sambaPrimaryGroupSID: S-1-5-21-504526975-3671300981-3734984268-512
sambaLMPassword: xxx
sambaAcctFlags: [U]
sambaNTPassword: xxx
sambaPwdLastSet: 1205465156
sambaPwdMustChange: 1209353156
userPassword:: xxx

My smbusers file:
# Unix_name = SMB_name1 SMB_name2 ...
root = Administrator admin
nobody = guest pcguest smbguest

I am able to join the domain as either root or Administrator, however, if root does not exist in LDAP I cannot join the domain as Administrator. I do not understand why this is. I thought Administrator maps to root, root is in my /etc/passwd file, and I do not want it in LDAP.

Last edited by wslyhbb; 03-18-2008 at 05:53 AM.
 
Old 03-18-2008, 10:47 AM   #2
iamwilliam
Member
 
Registered: Apr 2006
Location: Nairobi
Distribution: CentOS
Posts: 78

Rep: Reputation: 21
The way I understand it is that all domain logons are looked up in LDAP. /etc/passwd is then used only for localhost logins (if configured to do so). Therefore the mapping in smbusers only applies to the LDAP accounts.
 
Old 03-18-2008, 12:55 PM   #3
wslyhbb
Member
 
Registered: Apr 2002
Location: Chicago, IL
Distribution: Mandriva 2009.0 PowerPack x86_64
Posts: 150

Original Poster
Rep: Reputation: 15
Yes that is true. I guess that makes sense. I guess what I was not understanding was, root is basically the only account that can add a domain member? It was just that for security reasons, I did not want my root account distributed.

Well thanks for the reply.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
joining a samba domain ikw38 Linux - Networking 20 09-22-2009 11:14 PM
joining my samba domain tude_1802 Linux - Newbie 1 08-22-2005 07:35 AM
Windows XP joining Samba 3 domain looks for LDAP in DNS dlublink Linux - Networking 3 08-10-2005 06:52 PM
Joining a machine from another domain to my linux samba domain acummins Linux - Networking 0 09-13-2003 07:07 AM
samba and xp re-joining the domain manwe Linux - Networking 1 08-04-2003 08:44 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 03:08 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration