https://bugs.koozali.org/show_bug.cgi?id=12798

            Bug ID: 12798
           Summary: Add samba Active Directory support
    Classification: Contribs
           Product: SME Contribs
           Version: 11.0
          Hardware: x86_64
                OS: ---
            Status: CONFIRMED
          Severity: normal
          Priority: P3
         Component: Unknown
          Assignee: [email protected]
          Reporter: [email protected]
                CC: [email protected],
                    [email protected], [email protected]
  Target Milestone: ---

+++ This bug was initially created as a clone of Bug #12607 +++
Adding DC enabled samba-dc packages to sme11 makes it possible
to start the provided samba.service and bind it to a secondary
local interface only. A separate /etc/samba/samba.conf file
specifies additional settings to ensure samba data directory separation
similar to https://wiki.samba.org/index.php/Multiple_Server_Instances

This ensures that samba-dc instance won't interfere with
normal filesharing smbd/nmbd services provided by sme core.

User accounts created in sme will need to be synchronized
with the ldap service provided by samba AD (via samba-tool).

Users logged in to domain joined Windows PCs will have access
to sme's samba shares via their namesake usernames and matching passwords.
https://wiki.koozali.org/Client_Authentication:Windows#Login_to_shared_resources

For now password changing via Ctrl-Alt-Del will not be supported and
will be disabled via password policies, password changing will
only be possible from user-password and useraccounts SM pages
preventing passwords from getting out of sync. Alternative could be:
https://dev.tranquil.it/wiki/SAMBA_-_Synchronisation_des_mots_de_passe_entre_un_Samba4_et_une_OpenLDAP

-- 
You are receiving this mail because:
You are the assignee for the bug.
_______________________________________________
Mail for each SME Contribs bug report
To unsubscribe, e-mail [email protected]
Searchable archive at https://lists.contribs.org/mailman/public/contribteam/

Reply via email to