Hispanitat nº 7 Local C

08225, Terrassa (Barcelona)

+34 600 676 872

Soporte Técnico

Lunes-Viernes: 9:30 a 13:30 - 16:30 a 20:00

Sábados a convenir

Forum breadcrumbs - You are here:ForoCategoría principal: Centos 8SAMBA AD-DC
Por favor, o Regístrate para crear mensajes y debates.

SAMBA AD-DC

dnf install epel-release

habilitar el repositorio powertools

dnf remove samba*

dnf update

dnf group install "Development tools"

 

dnf install docbook-style-xsl gcc gdb gnutls-devel gpgme-devel jansson-devel keyutils-libs-devel krb5-workstation libacl-devel libaio-devel libarchive-devel libattr-devel libblkid-devel libtasn1 libtasn1-tools libxml2-devel libxslt lmdb-devel openldap-devel pam-devel perl perl-ExtUtils-MakeMaker perl-Parse-Yapp popt-devel python3-cryptography python3-dns python3-gpg python36-devel readline-devel rpcgen systemd-devel tar zlib-devel
dnf install autoconf automake docbook-style-xsl gcc gdb jansson-devel krb5-devel krb5-workstation libacl-devel libarchive-devel libattr-devel libtasn1-tools libxslt lmdb-devel make openldap-devel pam-devel python36-devel rpcgen python2-devel cups-devel libtirpc-devel

 

 

nano /etc/bashrc  y al final:

export PATH=${PATH}:/usr/local/samba/bin:/usr/local/samba/sbin

nano /etc/sudoers

Defaults secure_path = /sbin:/bin:/usr/sbin:/usr/bin:/usr/local/samba/bin:/usr/local/samba/sbin

mv /etc/krb5.conf /etc/krb5.conf.org

samba-tool domain provision

cp /usr/local/samba/private/krb5.conf /etc/

nano /etc/systemd/system/samba.service

[Unit]
Description= Samba 4 Active Directory
After=syslog.target
After=network.target

[Service]
Type=forking
PIDFile=/usr/local/samba/var/run/samba.pid
ExecStart=/usr/local/samba/sbin/samba

[Install]
WantedBy=multi-user.target

firewall-cmd --add-service={dns,kerberos,kpasswd,ldap,ldaps,samba} --permanent

firewall-cmd --add-port={135/tcp,1357udp,137-138/udp,139/tcp,3268-3269/tcp,49152-65535/tcp} --permanent

firewall-cmd --add-port={53/tcp,53/udp,88/tcp,88/udp,123/udp,389/tcp,389/udp,445/tcp,464/tcp,464/udp,636/tcp} --permanent

firewall-cmd --reload

net rpc rights grant "infcanboada.lan\Domain Admins" SeDiskOperatorPrivilege -U "infcanboada.lan\administrator"

configurar winbind

ln -s /usr/local/samba/lib/libnss_winbind.so.2 /lib64/
 ln -s /lib64/libnss_winbind.so.2 /lib64/libnss_winbind.so
 ldconfig

/etc/nsswitch.conf

passwd: files winbind
group:  files winbind

WhatsApp chat