[Samba] How to configure samba domain member to use LDAPS instead of LDAP

Rowland penny rpenny at samba.org
Mon Nov 9 12:03:42 UTC 2020


On 09/11/2020 11:45, Andrea Cucciarre' via samba wrote:
>
> is there any documented procedure to configure a samba domain member 
> (AD windows domain) to use LDAPS instead of LDAP
The only documentation I know of is here:

https://wiki.samba.org/index.php/Configuring_LDAP_over_SSL_(LDAPS)_on_a_Samba_AD_DC

But it is meant for a DC.

Are you talking about using ldaps with ldap searches ? If so, then 
don't, use kerberos instead, it is even more secure.

Rowland





More information about the samba mailing list