Raymond,

Well, yes and no. Our initial setup would give us 2 (or 4) LDAP servers
on zlinux or perhaps even on zVM. All linux guests, including the SAMBA
guests, then should connect to one of these LDAP servers for
autentication. And to make things easier (single sign on) we should sync
these LDAP with the external world. We have discussed this setup with
the group responsible for the autentication part in the windows network.
It was then that we found some technical issues with this setup. I can't
remember the exact details but in the end we concluded that we couldn't
use this setup, at least not at this time.  

Regards, Berry.

-----Original Message-----
From: Linux on 390 Port [mailto:linux-...@vm.marist.edu] On Behalf Of
Stricklin, Raymond J
Sent: donderdag 20 mei 2010 21:37
To: LINUX-390@VM.MARIST.EDU
Subject: Re: Change SAMBA password

> No, it has to do with replicating LDAP. We would like to connect to 
> the central registration but first of all there is a limit to that 
> connections and replicating to a local LDAP would mean a 24 hour delay

> in replicating userid's and passwords. So it's more a technical 
> reason.

Barry;

We have SAMBA authenticating Windows clients directly into AD, using
winbind. Linux then participates in the AD just as if it were any other
arbitrary Windows server. There is no LDAP replication involved. There
are some ugly hairs (especially if you have a very large AD) but overall
it works quite well. Have you considered doing this, and avoiding the
need to sync passwords entirely?

ok
r.
----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions, send
email to lists...@vm.marist.edu with the message: INFO LINUX-390 or
visit http://www.marist.edu/htbin/wlvindex?LINUX-390


----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to lists...@vm.marist.edu with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390
ÿþDit bericht is vertrouwelijk en kan 
geheime informatie bevatten enkel

bestemd voor de geadresseerde. Indien 
dit bericht niet voor u is bestemd,

verzoeken wij u dit onmiddellijk aan 
ons te melden en het bericht te

vernietigen.

Aangezien de integriteit van het 
bericht niet veilig gesteld is middels

verzending via internet, kan Atos 
Origin niet aansprakelijk worden 
gehouden

voor de inhoud daarvan.

Hoewel wij ons inspannen een virusvrij 
netwerk te hanteren, geven

wij geen enkele garantie dat dit 
bericht virusvrij is, noch aanvaarden 
wij

enige aansprakelijkheid voor de 
mogelijke aanwezigheid van een virus in 
dit

bericht.

 

Op al onze rechtsverhoudingen, 
aanbiedingen en overeenkomsten 
waaronder

Atos Origin goederen en/of diensten 
levert zijn met uitsluiting van alle

andere voorwaarden de 
Leveringsvoorwaarden van Atos Origin 
van toepassing.

Deze worden u op aanvraag direct 
kosteloos toegezonden.

 

This e-mail and the documents attached 
are confidential and intended solely

for the addressee; it may also be 
privileged. If you receive this e-mail

in error, please notify the sender 
immediately and destroy it.

As its integrity cannot be secured on 
the Internet, the Atos Origin group

liability cannot be triggered for the 
message content. Although the

sender endeavours to maintain a 
computer virus-free network, the sender

does not warrant that this transmission 
is virus-free and will not be

liable for any damages resulting from 
any virus transmitted.

 

On all offers and agreements under 
which Atos Origin supplies goods and/or

services of whatever nature, the Terms 
of Delivery from Atos Origin

exclusively apply. 

The Terms of Delivery shall be promptly 
submitted to you on your request.

 

Atos Origin Nederland B.V. / Utrecht

KvK Utrecht 30132762

Reply via email to