Portál AbcLinuxu, 5. května 2025 18:40
[global] netbios name = hostname workgroup = REALM security = ADS realm = REALM.OU.CORP.TLD dedicated keytab file = /etc/krb5.keytab kerberos method = secrets and keytab idmap config *:backend = tdb idmap config *:range = 2000-9999 idmap config AD:backend = ad idmap config AD:schema_mode = rfc2307 idmap config AD:range = 10000-999999 winbind nss info = rfc2307 winbind trusted domains only = no winbind use default domain = yes winbind enum users = yes winbind enum groups = yes winbind refresh tickets = Yes vfs objects = acl_xattr map acl inherit = Yes store dos attributes = Yes load printers = no printing = bsd printcap name = /dev/null disable spoolss = yes [home-external] path = /srv/home/external/%U read only = no admin users = "@AD\Domain Admins" valid users = %U [home-staff] path = /srv/home/staff/%U read only = no admin users = "@AD\Domain Admins" valid users = %U [home-student] path = /srv/home/student/%U read only = no admin users = "@AD\Domain Admins" valid users = %U [group1] path = /srv/group1 read only = no admin users = "@AD\Domain Admins" valid users = "@AD\Domain Users" [profiles] path = /srv/profiles read only = no admin users = "@AD\Domain Admins" create mask = 0600 directory mask = 0700 profile acls = yes csc policy = disable
#id prochazka uid=1000(prochazka) gid=1000(prochazka) groups=1000(prochazka),24(cdrom),25(floppy),29(audio),30(dip),44(video),46(plugdev),108(netdev),395600513(domain users),395601220(admins) root@vstor1:/home/prochazka# realm list lan.site.cz type: kerberos realm-name: LAN.SITE.CZ domain-name: lan.site.cz configured: kerberos-member server-software: active-directory client-software: winbind required-package: winbind required-package: libpam-winbind required-package: samba-common-bin login-formats: SITE\%U login-policy: allow-any-login lan.site.cz type: kerberos realm-name: LAN.SITE.CZ domain-name: lan.site.cz configured: kerberos-member server-software: active-directory client-software: sssd required-package: sssd-tools required-package: sssd required-package: libnss-sss required-package: libpam-sss required-package: adcli required-package: samba-common-bin login-formats: %U login-policy: allow-realm-logins
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.