Can a router be a local master browser in a NT domain?

Bernhard Riegel (sdm) Bernhard.Riegel at sdm.de
Mon Jun 21 07:24:46 GMT 1999


Hi,

Thank You for your answer. Unfortunately my setup is somewhat different:

                            *******************************************
           ++++++++++++++   * +++++++++++++++++    +++++++++++++++++  *
           + a.b.c.d    +   * + Linux Router  +    + 192.168.1.x   +  *
Internet---+ NT Network +---*-+ ipchains      +----+ NT/95 Clients +  *
           + 4 subnets  +   * + and Samba     +    +               +  *
           + 1 domain   +   * +               +    +               +  *
           ++++++++++++++   * +++++++++++++++++    +++++++++++++++++  *
                            * Linux with VMware running NT/95 clients *
                            * real and virtual OSes share one IP of   *
                            * a.b.c.d                                 *
                            *******************************************

The NT network is administered by other people. My Linux box has to act
as a normal member of the NT domain a.b.c.d. Modifications on the setup
of the NT domain (PDC/BDC) are not possible. Additional SMB servers can
register in the domain, but must not influence the rest of the domain.

The ubove setup is already running, except for samba and domain access:
the NT/95 clients within the virtual machine can connect to the NT
network using netuse, ftp, telnet, DNS. But they cannot get members of
the domain, because the browselists of each others subnet are not known
(the netbios broadcasts are not routed). That's where Samba comes in:
I want to run samba on the Linux box acting as a local master browser
for the "192.186.1.x" subnet and exchanging browse lists with the domain
master browser to have the network services of the domain beeing visible
on the NT/95 clients (e.g. in NT explorer) and the services on the
clients beeing visible in a.b.c.d.

Regarding the restrictions of the admins of the NT domain (and their bad
experiences with samba) I am now looking for a samba configuration for
samba 2.0.4 (a smb.conf), which will run without causing troubles in the
existant domain (see the original message).

Bernhard



Johan Meiring wrote:
> 
> Hi,
> 
> It should not be neccesary to setup samba at all (which probably makes this
> the wrong list to publish the answer :-), but seing as the question was
> asked here (and the question is samba related))
> 
> I have a very similar setup:
> 
> +-------------+      +-------------------+   +-----------------+
> +   a.b.c.d   +      +                   +   +  192.168.1.x    +
> +             +      +    linux          +   +                 +
> + real world  +------+    router         +---+  private IP's   +
> +     I.P's   +      +                   +   +                 +
> +  PDC, BDC   +      +                   +   + 95 workstations +
> +-------------+      +--------+----------+   +-----------------+
>                               |
>                               |
>                           Internet
> 
> -  The a.b.c.d (Real IPs) as well as the 192.168.1.x (Private IPs) use the
> Linux router as default GW
> 
> -  The ipfwadm / ipchains rules are set up as follows:
> 
>    Rule 1:  192.168.1.x  --->  a.b.c.d  (forward WITHOUT masquerading)
>    Rule 2:  192.168.1.x  --->  0.0.0.0  (forward WITH masquerading)
> 
> Rule 1 needs to be BEFORE rule two two ensure that communication to NT
> severs are not masqueraded.  Because NT servers also use linux as default GW
> they can reach 192.168 private IPs.
> 
> On the local network, the networks can both see each other without
> masquerading.  i.e.  the 95's will select their own browse master and as
> long as you have a wins server on your PDC/BDC side, everyting works.
> 
> The 95's will only be masqueraded if they try to contact the internet.
> 
> If you need copies of routing table/ipchains script.  Please email me.
> 
> Johan
> 
> ------------------------
> 
> >Date: Fri, 18 Jun 1999 08:27:52 +0200
> >From: "Bernhard Riegel (sdm)" <Bernhard.Riegel at sdm.de>
> >To: samba at samba.org
> >Subject: Can a router be a local master browser in a NT domain?
> >Message-ID: <3769E6E8.68289055 at sdm.de>
> >
> >Can a router between two subnets (call it A and B) be the local master
> >browser of the one subnet (net A) in a NT domain, when the Domain Master
> >Browser (as well as PDC and BDC) are located in the other subnet (B)?
> >Will say, does the Domain Master Browser of a NT domain accept a Local
> >Master Browser in the same subnet (as the router is accessed from B via
> >the interface ethB)?
> >
> >The reason for my question is as follows:
> >I want to setup Samba on a router (linux), which connects two subnets A
> >and B, where B is an official subnet and A has IP addresses of the
> >private namespace. The router masquerades the private IP's.
> >The existing NT domain in B should be also accessible for NT clients in
> >subnet A. For this reason I want samba to act as a local master browser
> >for net A and to exchange browselists with the domain master browser in
> >net B. Netbios nameresolution will be done via WINS.
> >Domain Master Browser, PDC, WINS etc. are running on WinNT4.0 (SP3 or
> >higher).
> >
> >If anyone has already setup Samba (2.0) to be a local master browser
> >(without producing errors in the logfiles of the domain master browser),
> >an example for smb.conf would be nice.
> >
> >Thank You for any suggestion.
> >
> >Bernhard
> >
> >--

-- 

_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/
 Bernhard Riegel                mailto:bernhard.riegel at sdm.de
 sd&m   GmbH & Co. KG            http://www.sdm.de
 software design & management
 Thomas-Dehler-Str. 27, 81737 Muenchen, Germany
 Tel +49 89 63812-736  Fax -150
_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/_/


More information about the samba mailing list