Portál AbcLinuxu, 29. října 2025 07:55
[global]
netbios name = hostname
workgroup = REALM
security = ADS
realm = REALM.OU.CORP.TLD
dedicated keytab file = /etc/krb5.keytab
kerberos method = secrets and keytab
idmap config *:backend = tdb
idmap config *:range = 2000-9999
idmap config AD:backend = ad
idmap config AD:schema_mode = rfc2307
idmap config AD:range = 10000-999999
winbind nss info = rfc2307
winbind trusted domains only = no
winbind use default domain = yes
winbind enum users = yes
winbind enum groups = yes
winbind refresh tickets = Yes
vfs objects = acl_xattr
map acl inherit = Yes
store dos attributes = Yes
load printers = no
printing = bsd
printcap name = /dev/null
disable spoolss = yes
[home-external]
path = /srv/home/external/%U
read only = no
admin users = "@AD\Domain Admins"
valid users = %U
[home-staff]
path = /srv/home/staff/%U
read only = no
admin users = "@AD\Domain Admins"
valid users = %U
[home-student]
path = /srv/home/student/%U
read only = no
admin users = "@AD\Domain Admins"
valid users = %U
[group1]
path = /srv/group1
read only = no
admin users = "@AD\Domain Admins"
valid users = "@AD\Domain Users"
[profiles]
path = /srv/profiles
read only = no
admin users = "@AD\Domain Admins"
create mask = 0600
directory mask = 0700
profile acls = yes
csc policy = disable
#id prochazka uid=1000(prochazka) gid=1000(prochazka) groups=1000(prochazka),24(cdrom),25(floppy),29(audio),30(dip),44(video),46(plugdev),108(netdev),395600513(domain users),395601220(admins) root@vstor1:/home/prochazka# realm list lan.site.cz type: kerberos realm-name: LAN.SITE.CZ domain-name: lan.site.cz configured: kerberos-member server-software: active-directory client-software: winbind required-package: winbind required-package: libpam-winbind required-package: samba-common-bin login-formats: SITE\%U login-policy: allow-any-login lan.site.cz type: kerberos realm-name: LAN.SITE.CZ domain-name: lan.site.cz configured: kerberos-member server-software: active-directory client-software: sssd required-package: sssd-tools required-package: sssd required-package: libnss-sss required-package: libpam-sss required-package: adcli required-package: samba-common-bin login-formats: %U login-policy: allow-realm-logins
Tiskni
Sdílej:
ISSN 1214-1267, (c) 1999-2007 Stickfish s.r.o.