[Samba] samba 4 in AD 2008R2 without winbind

Daniele Bernazzi daniele at ao-siena.toscana.it
Fri May 26 12:17:21 UTC 2017



----- Messaggio originale -----
> Da: "L.P.H. van Belle via samba" <samba at lists.samba.org>
> A: samba at lists.samba.org
> Inviato: Mercoledì, 24 maggio 2017 14:46:50
> Oggetto: Re: [Samba] samba 4 in AD 2008R2 without winbind
> 
> Well, i can make squid plain text password auth work, against AD, without
> join then this is configurable.
> 
> I was thinking about something like this:
> 
> https://www.howtoforge.com/linux_ldap_authentication
> Start as of point Client configuration.
> Your server is already done ( your windows ad dc)
> 
> You may need to setup TLS/SSL first to connect to your server.
> 
> Greetz,
> 
> Louis
> 
> 

Hi Louis, I had a look at the doc, but looks like it does not fit my environment. If I am not wrong samba is active as a standalone server (not need to join to the domain) and for authentication it use pam which use ldap. But ldap is configured in a quite strict manner expecting to find username in specific OU, this is not possible in my environment because people change OU and new OU are created at needing.
>From yours and Rowland answers I guess is not possible to use samba in ADS mode without winbind! I am a bit disappointed from this conclusion and I hope to be wrong; anyway I did not find helps and docs pratically supporting an opposite conclusion!

Do you agree?

thank you

Daniele



More information about the samba mailing list