Questions about freeRADIUS+samba+redundancy AD

Andrew Bartlett abartlet at samba.org
Thu Nov 8 03:06:06 GMT 2007


On Thu, 2007-11-08 at 10:21 +0800, Hangjun He wrote:
> 
> 
> I used samba3.0.1 and freeRADIUS1.1.6  to talk with Active-directory. It
> 
>  can work well. Followed by wiki:
> 
>  http://wiki.freeradius.org/FreeRADIUS_Active_Directory_Integration_HOWTO
> 
>  
> 
> Now I want to set up primary and backup domain controllers.
> 
> When primary DC goes down backup DC will take over authentication. 
> 
> But winbindd/net/ntlm_auth can not switch to backup DC.
> 
> I think it is because I set the primary DC's
> 
>  hostname/IP in smb.conf.
> 
> >           "password server = WIN2003-SERVER1 " .
> 
> Also set primary DC's hostname in krb5.conf  realms section.
> 
> >            " kdc = WIN2003-SERVER1:88"
> 
>  
> 
> So they cannot switch to win2003-server2.
> 
>  
> 
> Can samba support Redundancy DC? How to do?

By using current code (this is an area we are improving) and removing
these statements.  Samba finds DCs on it's own quite well.

Andrew Bartlett

-- 
Andrew Bartlett
http://samba.org/~abartlet/
Authentication Developer, Samba Team           http://samba.org
Samba Developer, Red Hat Inc.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.samba.org/archive/samba-technical/attachments/20071108/502224ed/attachment.bin


More information about the samba-technical mailing list