[Samba] Ideas how to use Samba 4 AD and still offer standard LDAP authentication?

Kurt Martinsen kurt at a-netti.com
Thu Apr 17 04:48:18 MDT 2014


Thanks I'll have a look. 

> On 17.4.2014, at 4.53, Bob Miller <bob at computerisms.ca> wrote:
> 
> just as an FYI;
> 
> my wiki at http://cocnm.computerisms.ca/ describes a samba4 set up for
> ldap authentication for several different services, from email to apache
> to freeradius.  You will find several examples of how to configure
> external services to authenticate against AD there...
> -- 
> Computerisms
> Bob Miller      
> 867-334-7117 / 867-633-3760
> http://computerisms.ca
> 
> 
>> On Wed, 2014-04-16 at 23:26 +0300, kurt at a-netti.com wrote:
>> Hi,
>> 
>> I have a working Samba 4 AD which is used by Windows clients. I also 
>> have an LDAP server for use with Linux servers and web applications.
>> 
>> What I really need is the Samba 4 AD to be the single maintained 
>> authentication database while providing an LDAP compatible server for 
>> web applications (and preferably Linux). I've looked at extending the 
>> Samba 4 schema, but that doesn't seem very easy (or even possible to 
>> maintain?).
>> 
>> Any ideas on how to do this? I don’t mind running an extra LDAP server 
>> as long as I have a way to sync the user accounts and groups from the 
>> Samba AD.
>> 
>> Help would be greatly appreciated.
>> 
>> As a side note, it would be awesome if Samba would provide a builtin 
>> parameter to add and maintain posix attributes in the schema that would 
>> have the values derived from their AD counter parts.
>> 
>> Regards,
>> 
>> Kurt
> 


More information about the samba mailing list