LINUX.ORG.RU
ФорумAdmin

Samba + AD?


0

0

Всем привет!
Не вводится самба в домен помогите плиз:
[root@centos ~]# net ads join -U vlad
vlad's password:
Using short domain name -- TEST
Failed to set servicePrincipalNames. Please ensure that
the DNS domain of this server matches the AD domain,
Or rejoin with using Domain Admin credentials.
Deleted account for 'CENTOS' in realm 'TEST.LOCAL'
Failed to join domain: Type or value exists
[root@centos ~]#

Вот котфиги:
[logging]
default = FILE:/var/log/krb5libs.log
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmind.log
[libdefaults]
default_realm = TEST.LOCAL
dns_lookup_realm = false
dns_lookup_kdc = false
ticket_lifetime = 24h
forwardable = yes
[realms]
TEST.LOCAL = {
kdc = domen.test.local:88
admin_server = domen.test.local:749
default_domain = domen.local
}
[domain_realm]
.test.local = TEST.LOCAL
test.local = TEST.LOCAL
[kdc]
profile = /etc/kdc.conf
[appdefaults]
pam = {
debug = false
ticket_lifetime = 36000
renew_lifetime = 36000
forwardable = true
krb4_convert = false
}

KLIST:

[root@centos ~]# klist
Ticket cache: FILE:/tmp/krb5cc_0
Default principal: vlad@TEST.LOCAL

Valid starting Expires Service principal
12/04/08 17:12:59 12/05/08 03:14:00 krbtgt/TEST.LOCAL@TEST.LOCAL
renew until 12/05/08 17:12:59


Kerberos 4 ticket cache: /tmp/tkt0
klist: You have no tickets cached
[root@centos ~]#

SAMBA:

[global]
workgroup = TEST
netbios name = CENTOS
server string = CENTOS Samba Server
security = ads
encrypt passwords = yes
realm = TEST.LOCAL
password server = domen.test.local
idmap uid = 10000-20000
idmap gid = 10000-20000
winbind enum users = yes
winbind enum groups = yes
winbind separator = +
load printers = no
printcap name = /etc/printcap
printing =
log file = /var/log/samba/%m.log
max log size = 50


Ответ на: комментарий от chocholl

Насколько я понимаю - односторонний.

osipen
() автор топика
Вы не можете добавлять комментарии в эту тему. Тема перемещена в архив.