Re: [Samba] samba with ldap+TLS

2011-11-11 Thread Willy Offermans
Dear Bruno, Steve and Samba Friends,

If I recall correctly, it is the username used to start smbd, which needs a 
ldaprc file with
apropriate settings. In my case this is root and the file looks like:

#
# User specific LDAP settings
#

# Override global directive (if set)
TLS_REQCERT demand

# client authentication
TLS_CERT /root/root.mydomain.com.pem
TLS_KEY /root/keys/root.mydomain.com.key

But you have to adapt it to your own needs.

I hope this helps.


On Mon, Nov 07, 2011 at 06:24:42PM +0100, Bruno MACADRE wrote:
 Hi,
 
 No, you don't need CA certificate on win clients 'cause they
 don't connect directly to the LDAP. Only your Samba server need CA
 certificate to connect to the LDAP using TLS.
 
 Regards,
 Bruno
 
 Le 07/11/2011 18:18, steve a écrit :
 Hi
 
 I know Linux clients need a CA certificate to authenticate via LDAP using 
 TLS.
 What about win 7 and XP clients using a Samba server?
 
 Thanks
 Steve
 
 -- 
 To unsubscribe from this list go to the following URL and read the
 instructions:  https://lists.samba.org/mailman/options/samba

-- 
Met vriendelijke groeten,
With kind regards,
Mit freundlichen Gruessen,

Willy

*
 W.K. Offermans
Home:   +31 45 544 49 44
Mobile: +31 681 15 87 68
e-mail: wi...@offermans.rompen.nl
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


[Samba] samba with ldap+TLS

2011-11-07 Thread steve
Hi

I know Linux clients need a CA certificate to authenticate via LDAP using TLS. 
What about win 7 and XP clients using a Samba server?

Thanks
Steve
-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba


Re: [Samba] samba with ldap+TLS

2011-11-07 Thread Bruno MACADRE

Hi,

No, you don't need CA certificate on win clients 'cause they don't 
connect directly to the LDAP. Only your Samba server need CA certificate 
to connect to the LDAP using TLS.


Regards,
Bruno

Le 07/11/2011 18:18, steve a écrit :

Hi

I know Linux clients need a CA certificate to authenticate via LDAP using TLS.
What about win 7 and XP clients using a Samba server?

Thanks
Steve


--
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba