Mandriva

Return to the main archive index.

Custom Search

Mandrake Linux Archives: cooker-br@mandrivalinux.org

Mandrake Linux: cooker-br@mandrivalinux.org


[Date Prev] [Date Next] [Thread Prev] [Thread Next] [Date Index] [Thread Index]


Boa noite,

Estou instalando em uma máquina para teste, um Mandriva LE2005 e em outra, o cooker para rodar o samba + ldap.

Em ambas, consigo acrescentar máquinas win xp na rede normalmente, autentico usuário, gravo os profiles no server, executo netlogon, etc., porém, quando eu reinicio o servidor, sou obrigado a adicionar o win xp no domínio novamente, digitando o login/senha do root.

Para piorar a situação, algumas vezes simplesmente a base toda deu pau, onde nem sequer o samba ou clientes ldap conseguia se conectar ao servidor LDAP.

Alguém sabe de algum problema a respeito?

Estou usando o bdb como base. Alguma sugestão para outra base?

Segui a configuração do IDEALX.

[]s

Roger

Meus arquivo de configuração:

------------------------------------------------------------------------

slapd.conf:

include         /etc/openldap/schema/core.schema
include         /etc/openldap/schema/cosine.schema
include         /etc/openldap/schema/inetorgperson.schema
include         /etc/openldap/schema/misc.schema
include         /etc/openldap/schema/nis.schema
include         /etc/openldap/schema/openldap.schema
include         /etc/openldap/schema/samba.schema

pidfile         /var/run/slapd/slapd.pid
argsfile        /var/run/slapd/slapd.args

database        bdb
suffix          "dc=andelegal,dc=com,dc=br"
rootdn          "cn=Manager,dc=andelegal,dc=com,dc=br"
rootpw          minhasenha
directory       /var/lib/openldap-data

index   objectClass,uidNumber,gidNumber                 eq
index   cn,sn,uid,displayName                           pres,sub,eq
index   memberUid,mail,givenname                        eq,subinitial
index   sambaSID,sambaPrimaryGroupSID,sambaDomainName   eq

access to attrs=userPassword,sambaLMPassword,sambaNTPassword
       by self write
       by anonymous auth
       by * none
access to *
       by * read

------------------------------------------------------------------------

/etc/ldap.conf

ssl no
pam_password md5
host 127.0.0.1
base dc=andelegal,dc=com,dc=br

nss_base_passwd         dc=andelegal,dc=com,dc=br?sub
nss_base_shadow         dc=andelegal,dc=com,dc=br?sub
nss_base_group          ou=Groups,dc=andelegal,dc=com,dc=br?one

------------------------------------------------------------------------

/etc/openldap/ldap.conf

HOST 127.0.0.1
BASE dc=andelegal,dc=com,dc=br

------------------------------------------------------------------------

smb.conf:

[global]
       workgroup = ANDELEGAL
       netbios name = FILESERVER
       #username map = /etc/samba/smbusers
       server string = Samba
       security = user
       encrypt passwords = yes
       ldap passwd sync = yes
       log level = 0
       syslog = 0
       log file = /var/log/samba/%m.log
       max log size = 10000
       socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
       dos charset = 850
       unix charset = iso-8859-1

veto files = /*.mp3/*.wmv/*.wma/*.ogg/

       logon script = logon.bat
       #logon drive = H:
       #logon path = /home/samba/netlogon

       domain logons = yes
       os level = 65
       prefered master = yes
       domain master = yes
       wins support = yes
       passdb backend = ldapsam:ldap://127.0.0.1/
       ldap admin dn = cn=Manager,dc=andelegal,dc=com,dc=br
       ldap suffix = dc=andelegal,dc=com,dc=br
       ldap group suffix = ou=Groups
       ldap user suffix = ou=Users
       ldap machine suffix = ou=Computers
       ldap ssl = false

       add machine script = /usr/sbin/smbldap-useradd -w "%u"
       add user script = /usr/sbin/smbldap-useradd -m "%u"
       ldap delete dn = yes

add group script = /usr/sbin/smbldap-groupadd -p "%g"
add user to group script = /usr/sbin/smbldap-groupmod -m "%u" "%g"
delete user from group script = /usr/sbin/smbldap-groupmod -x "%u" "%g"
set primary group script = /usr/sbin/smbldap-usermod -g "%g" "%u"


       idmap uid = 16777216-33554431
       idmap gid = 16777216-33554431
       template shell = /bin/false
       winbind use default domain = no

[homes]
       comment = Home Directories
       valid users = %U
       read only = no
       create mask = 0664
       directory mask = 0775
       browseable = no

[netlogon]
       comment = Network Logon Service
       path = /home/samba/netlogon
       browseable = no
       read only = yes
       guest ok = yes
       share modes = no

[profiles]
       path = /home/samba/profiles
       read only = no
       create mask = 0600
       directory mask = 0700
       browseable = no
       guest ok = yes
       profile acls = yes
       csc policy = disable
       force user = %U
       valid users = %U




Date Index | Thread Index

Looking for a job?



Advertisement (via La Vignette)