The only way to have Windows clients use Samba in the way that you want > is to use Samba4, as an AD DC. With Samba 3.x, Windows clients will not > use kerberos. > > We have a migration script from Samba3, but not from Heimdal (but due to > recent requests, I'm going to see what I can do about that). If you > have sambaNTPassword fields in your OpenLDAP server, then these can be > migrated to AD, and will provide the arcfour-hmac-md5 Kerberos key > (which is the most important one anyway, as it is the most used). > > The Samba3 migration command is 'samba-tool domain samba3upgrade'. > > I hope this helps, > > Andrew Bartlett > > -- > Andrew Bartlett http://samba.org/~abartlet/ > Authentication Developer, Samba Team http://samba.org > >
Thanks for your reply. Does it mean i need to use samba4 and have to use inbuilt kerberos and ldap server because this link says ldap backend is not supported. http://wiki.samba.org/index.php/Samba4/LDAP_Backend#.28De.29motivation If yes how would i migrate all the user from openldap to samba4? Thanks Brijesh -- To unsubscribe from this list go to the following URL and read the instructions: https://lists.samba.org/mailman/options/samba
