LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 04-09-2007, 08:30 AM   #1
canzi
LQ Newbie
 
Registered: Jan 2004
Posts: 8

Rep: Reputation: 0
Question Linux Domain Controller


Hi Everyone,

a quick question about the possibilities of a linux domain controller.
the reason is simple i dont want to have to create accounts on local machines and on the server/s, sync passwords ect for windows clients.

am i right in thinking that pam will work for linux clients?

Novell use edirectory with a client and is very good.
micro$oft have a domain controller that that you have to login to,

but what options do Linux users have.

I have read that samba 2/3 has a PDC mode but isn't very scalable, i think 3 is better because it uses ldap.

is it possible to setup just ldap and have windows users connect to it like a domain controller, creating there account on the fly and keeping there password in sync?

what other options do we have?

and if your feeling extra generous what about group policies? again Novell uses zenworks micro$oft 2003 doming and linux??

many thanks

Canz
 
Old 04-09-2007, 09:29 AM   #2
kstan
Member
 
Registered: Sep 2004
Location: Malaysia, Johor
Distribution: Dual boot MacOS X/Ubuntu 9.10
Posts: 851

Rep: Reputation: 31
setup openldap server, install pgina in windows client pc. then install ldap plugin for pgina.

Anyway, it doesn't support group policy and you manage the entire domain limited.
 
Old 04-09-2007, 11:43 AM   #3
MoMule
Member
 
Registered: Jul 2006
Posts: 134

Rep: Reputation: 15
Check out winbind to see if that will accomplish what you need.

Deion "Mule" Christopher
 
Old 04-09-2007, 12:04 PM   #4
tmiles
LQ Newbie
 
Registered: Jul 2001
Location: MD
Distribution: NETMAX
Posts: 18

Rep: Reputation: 0
Pdc

Yes you can use Linux for this. If you are trying to scale like you can with Novell Edirectory or with MS Active Directory there are issues.

Depending on which version of Linux you are using, you can use Edirectory with Samba and make a scalable (Novell has a non production version of Edirectory you can download for free)

You can do PDC setups pretty simple using Clark Connect or SME server. (But these are not scalable as you can not add BDC's)

If you have money to spend you can look at the Xandros server. Their managed community set up is pretty scalable. You can set up groups of servers just like you do with Windows 2003 and Active Directory. Works very well once you get the hang of it.

Prob the most robust set up for free would be Open Suse with Edirectory (Since there is no out the box installer for Edirectory on non RPM versions of Linux.)

Or you can build it from scratch. You need PAM, Open Ldap and Samba and then the Samba connectors (Libraries) for Open Ldap.

Here are some examples of how to set this up:

http://www.howtoforge.com/samba_doma...up_ubuntu_6.10

http://gentoo-wiki.com/HOWTO_SAMBA-L...Time_antivirus)
 
Old 04-09-2007, 08:20 PM   #5
canzi
LQ Newbie
 
Registered: Jan 2004
Posts: 8

Original Poster
Rep: Reputation: 0
cheers, already you have posted some great suggestions, ill spend a day or two looking over them.

many thanks
canz
 
Old 04-25-2007, 10:23 AM   #6
justanotheruser
LQ Newbie
 
Registered: Apr 2007
Posts: 1

Rep: Reputation: 0
I googled this thread because I'm thinking of using pgina to authenticate to openLDAP. Currently our XP boxes authenticate to Active Directory, and my main concern is if by going with pgina whether or not group policy still works.

My guess is that it should - can anyone confirm that all is good, in a similar setup?
 
Old 04-25-2007, 07:12 PM   #7
kstan
Member
 
Registered: Sep 2004
Location: Malaysia, Johor
Distribution: Dual boot MacOS X/Ubuntu 9.10
Posts: 851

Rep: Reputation: 31
Hi,
Quote:
Originally Posted by justanotheruser
I googled this thread because I'm thinking of using pgina to authenticate to openLDAP. Currently our XP boxes authenticate to Active Directory, and my main concern is if by going with pgina whether or not group policy still works.

My guess is that it should - can anyone confirm that all is good, in a similar setup?
Not really perfect, it have some setting for you to enforce but not as good as group policy. And 1 thing to always remember pgina create a local user once they login through openldap/pop3/mysql. So, you cannot share your resources via openldap user directly.

Anyway if you just want to centralize the user/password pgina is good enough for you.
Regards,
Ks
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Domain Controller in Linux ??? saudoi Linux - Networking 4 10-27-2006 05:44 AM
Linux domain controller??? paddyjoy Linux - Newbie 2 09-16-2005 03:34 AM
Linux as a Domain Controller nedian123 Red Hat 11 03-24-2005 11:47 PM
Using Linux as a domain controller for a W2K3 domain. Passive Linux - Networking 3 01-28-2005 06:01 PM
Linux Domain Controller thesystem Linux - General 1 11-18-2004 06:25 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 11:16 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration