RE: Adding a linux box to Active Directory

2009-03-06 Thread Brian Desmond
Yeah it is all about recycling the first one - I can definitely remember being 
in those shoes the first time I did this.

Thanks,
Brian Desmond
br...@briandesmond.com

c - 312.731.3132

Active Directory, 4th Ed - http://www.briandesmond.com/ad4/
Microsoft MVP - https://mvp.support.microsoft.com/profile/Brian

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com]
Sent: Friday, March 06, 2009 7:38 AM
To: NT System Admin Issues
Subject: RE: Adding a linux box to Active Directory

Thanks to Joseph Casale, I got it working. It was a PEBKC (Problem Exists 
Between Keyboard and Chair) issue.  I didn't understand that "domain" and 
"domain.com" were asking for different things in krb5.conf. :) Once Joseph 
straightened that out for me, I got the rest of it. :) I'm keeping a copy of my 
config files and the how-to that Joseph sent me for future reference :)

[John-Aldrich][Tile-Tools]

From: Brian Desmond [mailto:br...@briandesmond.com]
Sent: Thursday, March 05, 2009 9:44 PM
To: NT System Admin Issues
Subject: RE: Adding a linux box to Active Directory

I've typically done this with Kerberos - not too hard to do.

What all are you trying to accomplish, specifically?

Thanks,
Brian Desmond
br...@briandesmond.com

c - 312.731.3132

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com]
Sent: Wednesday, March 04, 2009 8:40 AM
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

Anyone here have any experience adding a linux box to a Win2k3 Active 
Directory? Having some issues getting them to talk. I'm trying on some other 
groups to tackle things from the linux side. Thought I'd give it a shot here to 
see if anyone here has had any practical experience connecting the two.

[Tile-Tools][John-Aldrich]












No virus found in this incoming message.
Checked by AVG - www.avg.com
Version: 8.0.237 / Virus Database: 270.11.8/1987 - Release Date: 03/06/09 
07:20:00






~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~<><>

RE: Adding a linux box to Active Directory

2009-03-06 Thread John Aldrich
Thanks to Joseph Casale, I got it working. It was a PEBKC (Problem Exists
Between Keyboard and Chair) issue.  I didn't understand that "domain" and
"domain.com" were asking for different things in krb5.conf. J Once Joseph
straightened that out for me, I got the rest of it. J I'm keeping a copy of
my config files and the how-to that Joseph sent me for future reference.. J

 

John-AldrichTile-Tools

 

From: Brian Desmond [mailto:br...@briandesmond.com] 
Sent: Thursday, March 05, 2009 9:44 PM
To: NT System Admin Issues
Subject: RE: Adding a linux box to Active Directory

 

I've typically done this with Kerberos - not too hard to do.

 

What all are you trying to accomplish, specifically? 

 

Thanks,

Brian Desmond

br...@briandesmond.com

 

c - 312.731.3132

 

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] 
Sent: Wednesday, March 04, 2009 8:40 AM
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

 

Anyone here have any experience adding a linux box to a Win2k3 Active
Directory? Having some issues getting them to talk. I'm trying on some other
groups to tackle things from the linux side. Thought I'd give it a shot here
to see if anyone here has had any practical experience connecting the two.

 

Tile-ToolsJohn-Aldrich

 

 

 

 

 

 

 

No virus found in this incoming message.
Checked by AVG - www.avg.com
Version: 8.0.237 / Virus Database: 270.11.8/1987 - Release Date: 03/06/09
07:20:00


~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~<><>

RE: Adding a linux box to Active Directory

2009-03-05 Thread Brian Desmond
I've typically done this with Kerberos - not too hard to do.

What all are you trying to accomplish, specifically?

Thanks,
Brian Desmond
br...@briandesmond.com

c - 312.731.3132

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com]
Sent: Wednesday, March 04, 2009 8:40 AM
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

Anyone here have any experience adding a linux box to a Win2k3 Active 
Directory? Having some issues getting them to talk. I'm trying on some other 
groups to tackle things from the linux side. Thought I'd give it a shot here to 
see if anyone here has had any practical experience connecting the two.

[Tile-Tools][John-Aldrich]







~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~   ~<><>

Re: Adding a linux box to Active Directory

2009-03-04 Thread Ben Scott
On Wed, Mar 4, 2009 at 9:40 AM, John Aldrich
 wrote:
> Anyone here have any experience adding a linux box to a Win2k3 Active
> Directory?

  I've done it with CentOS 5.x and Win 2000 Active Directory.  I don't
think Win 2003 is any different.

  Make sure the "smb" and "winbind" services are configured to start
at boot, and are currently running.

  One can, in theory, configure it all using the
"system-config-authentication" GUI tool.  You want to enable Winbind,
with Security Model of "ads".  The "Winbind Domain" should be the
NetBIOS domain name (FOO); the "Winbind ADS Realm" should be the
Active Directory domain name (foo.example.com).  You don't need to
specify a domain controller.

  Samba logs copious amounts of information under the /var/log/samba/
directory.  Check there for errors.

  I already had an extensive set of tweaked config files, so I did it
manually.  I can post the series of steps and commands from my notes
if the automatic stuff above doesn't get you anywhere.  Doing it
step-by-step manually has the advantage of making it easy to isolate
the trouble.  It's not hard if you're used to Unix command lines and
config files.  If you're not used to that, it might look a little
intimidating, but it's still not really that hard -- akin to editing
the registry in NT.

  FWIW, I followed the Samba documentation, which I thought was pretty good:

http://www.samba.org/samba/docs/man/Samba-HOWTO-Collection/domain-member.html#ads-member

-- Ben

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~   ~


RE: Adding a linux box to Active Directory

2009-03-04 Thread Joseph L. Casale
Ok, that's pretty simple then.

Are you doing it from the GUI? If so, goto Redhats Doc site, all my Linux 
Servers are CentOS, none have a gui :)

If by the CLI, I do it by configuring Samba, NTPd, Kerberos, join the domain 
and edit your nsswitch.conf etc. For these details, see me off list or join 
CentOS Users mailing list. Many bright people there...

jlc

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com]
Sent: Wednesday, March 04, 2009 8:31 AM
To: NT System Admin Issues
Subject: RE: Adding a linux box to Active Directory

Cent OS 5.3. I may have overlooked something, but every time I try to join the 
domain it says  "No logon servers." *shrug*

[cid:image001.jpg@01C99CAD.AB1C6590][cid:image002@01c99cad.ab1c6590]

From: Joseph L. Casale [mailto:jcas...@activenetwerx.com]
Sent: Wednesday, March 04, 2009 10:09 AM
To: NT System Admin Issues
Subject: RE: Adding a linux box to Active Directory

What distro?
Most mainstream ones make it very easy now...

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com]
Sent: Wednesday, March 04, 2009 7:40 AM
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

Anyone here have any experience adding a linux box to a Win2k3 Active 
Directory? Having some issues getting them to talk. I'm trying on some other 
groups to tackle things from the linux side. Thought I'd give it a shot here to 
see if anyone here has had any practical experience connecting the two.

[cid:image001.jpg@01C99CAD.AB1C6590][cid:image002@01c99cad.ab1c6590]












No virus found in this incoming message.
Checked by AVG - www.avg.com
Version: 8.0.237 / Virus Database: 270.11.7/1983 - Release Date: 03/04/09 
07:41:00






~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~<><>

RE: Adding a linux box to Active Directory

2009-03-04 Thread John Aldrich
Cent OS 5.3. I may have overlooked something, but every time I try to join
the domain it says  "No logon servers." *shrug*

 

Tile-ToolsJohn-Aldrich

 

From: Joseph L. Casale [mailto:jcas...@activenetwerx.com] 
Sent: Wednesday, March 04, 2009 10:09 AM
To: NT System Admin Issues
Subject: RE: Adding a linux box to Active Directory

 

What distro?
Most mainstream ones make it very easy now.

 

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] 
Sent: Wednesday, March 04, 2009 7:40 AM
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

 

Anyone here have any experience adding a linux box to a Win2k3 Active
Directory? Having some issues getting them to talk. I'm trying on some other
groups to tackle things from the linux side. Thought I'd give it a shot here
to see if anyone here has had any practical experience connecting the two.

 

Tile-ToolsJohn-Aldrich

 

 

 

 

 

 

 

No virus found in this incoming message.
Checked by AVG - www.avg.com
Version: 8.0.237 / Virus Database: 270.11.7/1983 - Release Date: 03/04/09
07:41:00


~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~ <http://www.sunbeltsoftware.com/Business/VIPRE-Enterprise/>  ~<><>

RE: Adding a linux box to Active Directory

2009-03-04 Thread Joseph L. Casale
What distro?
Most mainstream ones make it very easy now...

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com]
Sent: Wednesday, March 04, 2009 7:40 AM
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

Anyone here have any experience adding a linux box to a Win2k3 Active 
Directory? Having some issues getting them to talk. I'm trying on some other 
groups to tackle things from the linux side. Thought I'd give it a shot here to 
see if anyone here has had any practical experience connecting the two.

[cid:image001.jpg@01C99CA0.78AC54B0][cid:image002@01c99ca0.78ac54b0]







~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~   ~<><>

RE: Adding a linux box to Active Directory

2009-03-04 Thread Kelsay, Mark
Found this.  Never tried it but looks promising.

 

http://www.wlug.org.nz/ActiveDirectorySamba

 

 

Mark

 

 

 

From: John Aldrich [mailto:jaldr...@blueridgecarpet.com] 
Sent: 04 March 2009 14:40
To: NT System Admin Issues
Subject: Adding a linux box to Active Directory

 

Anyone here have any experience adding a linux box to a Win2k3 Active
Directory? Having some issues getting them to talk. I'm trying on some
other groups to tackle things from the linux side. Thought I'd give it a
shot here to see if anyone here has had any practical experience
connecting the two.

 

  

 

 

 

 


__
This email has been scanned by the MessageLabs Email Security System.
For more information please visit http://www.messagelabs.com/email 
__


** This email is sent for and on behalf of Inspop.com Limited ** 
Authorised and regulated by the Financial Services Authority.  Registration no. 
310635.
Inspop.com Limited [also trading as "Confused.com"] is registered in England 
and Wales at 2nd Floor, Friary House, Greyfriars Road, Cardiff, CF10 3AE [Reg. 
No. 03857130].  Any opinions expressed in this email are those of the 
individual and not necessarily the  company. This email and any files 
transmitted with it, including replies and forwarded copies  [which may contain 
alterations] subsequently transmitted from the Company, are confidential  and 
solely for the use of the intended recipient. It may contain material protected 
by  attorney-client privilege. If you are not the intended recipient or the 
person responsible for  delivering to the intended recipient, be advised that 
you have received this email in error  and that any use is strictly prohibited. 
If you have received this email in error please notify the Information Security 
Officer by  telephone on +44 [0] 29 2043 4252. Please then delete this email 
and destroy any copies of it.   This email has been swept for viruses before 
leaving our system.
Security Warning: Please note that this email has been created in the knowledge 
that Internet  email is not a 100% secure communications medium.  We advise 
that you understand and accept  this lack of security when emailing us.
Viruses: Although we have taken steps to ensure that this email and any 
attachments are free  from any virus, we advise that in keeping with good 
computing practice the recipient should  ensure they are actually virus free.
We may monitor the content of E-mails sent and received via our network for 
viruses or  unauthorised use and for other lawful business purposes.


This e-mail has been scanned for all viruses by Messagelabs. The
service is powered by MessageLabs. 

~ Finally, powerful endpoint security that ISN'T a resource hog! ~
~   ~<><>