LinuxQuestions.org
Register a domain and help support LQ
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices

Reply
 
Search this Thread
Old 05-05-2006, 02:33 PM   #1
jferrando
LQ Newbie
 
Registered: Dec 2004
Location: Vila-real (Spain)
Distribution: DEBIAN, MANDRAKE, SUSE
Posts: 11

Rep: Reputation: 0
Struggling to setup a Debian/etch desktop: LDAP users and LOCAL users


I work as IT manager for a small programming house.

Nearly 3 years ago, we switched to Linux for the server, I suffered and struggled a little to get it work fine, and went through several distributions: RH8, then SUSEPro9, SUSEES8 and finally Debian.Sarge and now Debian.etch.

The server now is great: Postfix + amavisd-new + spamassassin (Razor2, pyzor, DCC) + MYSQL + squirellmail, Samba + ldap-account-manager, firewall + bandwidth control, Mysql, firebird, web server, openvpn server, and some internal apps developed in Qt4 (security control, workers sign up).

Now the desktop is another story: I try to work with another Debian.etch with KDE machine as a desktop, and the problem comes with network access. Initially I configured a network CIFS connection to the server, mounted. But openoffice2 documents were not saving properly (some locking problems), it seems than Linux CIFS client (or maybe specs) is far from perfect (how could it be otherwise, being involved Microsoft).

NFS works better, but I have to enable libpam_ldap, libnss_ldap to get the directory from the server, and so be able to get access permissions properly to the server files.

But what happens: When I log in the desktop as an LDAP user, I loose access to the "desktop": My LDAP account does not belong anymore to audio, printer, ... groups. NFS (apart from possible security problems) works nice, but I can't print!

And when I log in as the local user, of course, I do not belong to the groups in the LDAP server directory and I can't browse the files in the NFS network share.

Too complicated, even being an obstinated linux administrator...
So what can I tell, must I try to install some linux desktops for other possible users in my company? Not yet.
 
Old 05-05-2006, 03:44 PM   #2
pljvaldez
Guru
 
Registered: Dec 2005
Location: Somewhere on the String
Distribution: Debian Squeeze (x86)
Posts: 6,092

Rep: Reputation: 269Reputation: 269Reputation: 269
I'm just a hobbyist and have begun playing around with LDAP and I keep coming across terms like NIS and Kerberos, which seem to be the way to merge a linux NFS system with a Windows LDAP system. Maybe something on google for either NIS or Kerberos or LDAP will help you out.

Sorry I couldn't be more help. I'll probably be fiddling around this weekend at home and will let you know if I get far enough along to try to mimic your setup...
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
How to setup FTP users only users on LInux Fedora Soujiro Linux - Newbie 8 09-13-2010 07:34 AM
sync virutal users and local users paul_mat Linux - Networking 0 04-23-2006 06:48 PM
Xandros is a great Debian distribution for desktop users masinick Linux - Distributions 22 03-25-2006 08:57 PM
how to authenticate external users but bypass prompt on local LAN users? taiwf Linux - Security 5 07-13-2005 09:01 AM
Any LDAP users out there? tarballed Linux - Networking 4 02-05-2003 08:14 PM


All times are GMT -5. The time now is 01:23 PM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration