Share your knowledge at the LQ Wiki.
Go Back > Forums > Linux Forums > Linux - Networking
User Name
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.


  Search this Thread
Old 05-01-2004, 02:06 PM   #1
LQ Newbie
Registered: May 2004
Location: Sweden
Distribution: Suse, Mandrake, Slackware
Posts: 2

Rep: Reputation: 0
Question Samba and ADS domain authentication

Hello all.

We have a Windows Domain and are looking for ways to migrate some servers to linux.

The current project is to convert our file servers.
What we like to do is:[list=1][*]Put the files on linux boxes[*]Make the transitions seemless for the users (who are all windows users)[*]Not have to change password on both domain and linux level. It is hard enough to enforce a password policy for users [*]Set up and maintain ACL for extended group and user permissions.[*]As a bonus, although it is not needed, enable DFS, to create the illusion of just one fileserver.[/list=1]

From what we have found out, this might be done with Samba 3.0.2 which has support for Active Directory (linux machine as a member server), LDAP, ACL and Kerberos.
The documentation states that account lookups and authentication can be passed on to a DC in an AD, as well as ACL permissions on files and directories, via LDAP and Kerberos, using winbind

The problem is that ACL is not enabled by default in the samba runtimes, which means that we have to compile the source manually (I'm guessing here, as I am what my name states, namely a newbie on linux, living i Sweden). And this we don't succed with. We have the source files.

./configure can't complete, and spits out:
ldap.h is needed for ldap support.

openldap and heimdall kerberos5 (both client and server is installed on the test box). I have located the ldap.h file and copied it to /usr/include to no avail.

Has anyone any tips or solutions.
Perhaps someone has this setup and can post a small HOWTO, as this configuration is woefully badly documented, and the only links I have found are of other people having the same problems, and no solutions to these problems.

Hopefully yours,
Henrik, Linux newbie

AMD Athlon 1000 MHz on Asus A7V133 mobo
256 MB
20 GB HDD (Reiserfs)
SuSe 9.0
nVidia GF 4 + Creative Audigy 2
(the test computer is my home box, in case you're wondering why these cards in a server box)

Last edited by Linux_Newbie_se; 05-01-2004 at 02:08 PM.
Old 05-19-2004, 07:34 PM   #2
LQ Newbie
Registered: May 2004
Location: Reno, NV
Distribution: Slackware
Posts: 1

Rep: Reputation: 0
I'm no expert, but I found this useful

I don't know what distro you're working with, but this Slackware Samba/ADS HOWTO was very helpful for me. I have a Samba server working that authenticates against my ADS server for access to shares. It's not much, but I hope it helps.

eta: I just re-read your post and see you're working with SUSE. I hope the HOWTO helps anyway. good luck.

Last edited by Yukka; 05-19-2004 at 08:32 PM.


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
Samba against ADS Daniboy Linux - Software 3 09-13-2005 05:49 AM
Fedora 2, samba and ADS pylagan Linux - Networking 3 10-26-2004 05:58 PM
Samba kinit and ads nullerbasse Linux - Networking 0 03-05-2004 04:56 AM
Domain Authentication SSENT12 Linux - Networking 1 07-24-2003 11:36 PM
Samba authentication in W2k Domain ixion Linux - Networking 7 02-18-2003 09:55 AM

All times are GMT -5. The time now is 01:02 AM.

Main Menu
Write for LQ is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration