LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 10-19-2005, 08:51 AM   #1
dumbsheep
Member
 
Registered: Jan 2005
Location: USA
Distribution: Red Hat, CentOS, Fedora, Suse
Posts: 54

Rep: Reputation: 15
Question Login against ADS


All,

Here's what I'm trying to do. I am trying to make it so that users on our W2K3 AD network can log into Linux machines with the exact same usernames and passwords. Is it possible to get Linux to TRULY authenticate against ADS for logins to the computer?

I have krb5.conf configured properly as well as Samba. The computers have successfully joined the ADS domain and kerberos kinit worked.

Can anyone point me in the right direction of how I can make it so I don't have to create new usernames and passwords for the Linux machines and make it so that users can sit down and log in to them the exact same way they do on the Windows machines (with the same usernames and passwords)?

Thanks in advance.

-dumbsheep
 
Old 10-20-2005, 01:28 AM   #2
paul_mat
Member
 
Registered: Nov 2004
Location: Townsville, Australia
Distribution: Fedora Core 5, CentOS 4, RHEL 4
Posts: 855

Rep: Reputation: 30
okay, the next thing your going to need to look at is pam (pluggable authentication module)

edit the/etc/pam.d/systm-auth to allow people to log into the linux machine.

there are maybe pam modules, pop, imap, sshd, etc so if you want them to be able to login via ssh then you'll need to edit the sshd pam module, etc

this is the pam module i have for my RHEL mail server, the users need a local account and an ADS account, it was a long time ago i did my pam work so i can't write you a module at the moment. but thats what you'll need to do

auth sufficient /lib/security/pam_winbind.so
auth requisite pam_pwdb.so shadow
account requisite pam_localuser.so

ps: webmin has a handy pam module if you can't figure it out via command line
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
IBM ads vs. the Intel ads on TV vharishankar General 1 03-16-2005 05:47 AM
Ads itsjustme LQ Suggestions & Feedback 3 09-07-2004 10:28 PM
ads synaptical LQ Suggestions & Feedback 4 10-05-2003 11:28 PM
9.2 to have ads?!?!? 65_289 Mandriva 11 09-13-2003 03:53 AM
ms ads? north49er Linux - General 3 06-21-2003 09:23 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 10:00 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration