|
nss_base_group ou=Groups,dc=easy,dc=com?one
TLS_CACERTDIR /etc/openldap/cacerts 更改为: # TLS_CACERTDIR /etc/openldap/cacerts
重新启动OpenLDAP服务器项目,详细操作如下:
详细操作: # service ldap restart
停止 slapd: [ 确定 ] 检查 slapd 的配置文件:config file testing succeeded 启动 slapd: [ 确定 ]
查看OpenLDAP服务器端口是否被监听,详细操作如下:
详细操作: # netstat -an grep 389
tcp 0 0 0.0.0.0:389 0.0.0.0:* LISTEN tcp 0 0 :::389 :::* LISTEN
Samba的详细配置过程:
在配置smb.conf前,先备份原smb.conf文件:
详细操作: # cp /etc/samba/smb.conf /etc/samba/backup_smb.conf
Samba的主要配置文件/etc/samba/smb.conf,其实系统中存有一个实际的例子配置文件可提供参考,只要更换成例子文件和按照自己的实际情况做一定的修改就可供使用:
详细操作: # cp /usr/share/doc/smbldap-tools-0.9.1/smb.conf /etc/samba/
cp:是否覆盖‘/etc/samba/smb.conf’? y
修改/etc/samba/smb.conf文件,以下为完整文件的详细内容::
详细配置内容: ############################## Global parameters############################
[global] workgroup = easy-pdc netbios name = PDC server string = Samba Server %v log file = /var/log/samba/log.%m security = user encrypt passwords = Yes obey pam restrictions = No ldap passwd sync = Yes log level = 3 syslog = 0 max log size = 100000 time server = Yes socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192 mangling method = hash2 Dos charset = UTF-8 Unix charset = UTF-8 logon script = %U.bat logon drive = H: domain logons = Yes os level = 65 preferred master = Yes domain master = Yes
继续smb.conf文件内容:
详细配置内容: passdb backend = ldapsam:ldap://127.0.0.1/ ldap admin dn = cn=Manager,dc=easy,dc=com ldap suffix = dc=easy,dc=com ldap group suffix = ou=Groups ldap user suffix = ou=Users ldap machine suffix = ou=Computers ldap ssl = off ldap delete dn = Yes add user script = /sbin/smbldap-useradd -m "%u" add machine script = /sbin/smbldap-useradd -t 0 -w "%u" add group script = /sbin/smbldap-groupadd -p "%g" add user to group script = /sbin/smbldap-groupmod -m "%u" "%g" delete user from group script = /sbin/smbldap-groupmod -x "%u" "%g" set primary group script = /sbin/smbldap-usermod -g '%g' '%u'
############################## Homes parameters ############################
[homes] comment = repertoire de %U, %u browseable = no writeable = yes read only = no force create mode = 0700 create mode = 0700 force directory mode = 0700 directory mode = 700
############################# Netlogone parameters ##########################
[netlogon]
上一篇:GoogleMaps探秘
下一篇:CSDN blog 添加音乐和天气预报效果
|