欢迎来到天天文库
浏览记录
ID:12703801
大小:605.94 KB
页数:20页
时间:2018-07-18
《centos加入windos域》由会员上传分享,免费在线阅读,更多相关内容在行业资料-天天文库。
1、在加入域之前:检查本地连接和DNS修改关键性质的3个文件修改/etc/samba/smb.conf[root@centos~]#vi/etc/samba/smb.conf内容如下;#=======================GlobalSettings=====================#workgroup=XUANBO#域名realm=XUANBO.COM#域名security=ADSpasswordserver=192.168.68.99#DC地址interfaces=127.0.0.1eth0#网卡接口bindinterfacesonly=trueprinting=
2、cpusprintcapname=cpusloadprinters=yesserverstring=SambaServerVersion%v………………………………………………………………#============================ShareDefinitions=============idmapuid=16777216-33554431idmapgid=16777216-33554431templateshell=/sbin/nologintemplatehomedir=/homes/%D/%Uwinbindusedefaultdomain=yespassword
3、server=192.168.68.99realm=XUANBO.COMwinbindseparator=%winbindenumusers=yeswinbindenumgroups=yesencryptpasswords=yes[homes]comment=HomeDirectoriespath=/homes/%D/%Uvalidusers=/%D/%Ubrowseable=nowritable=yes修改/etc/nsswitch.conf[root@centos~]#vi/etc/nsswitch.conf内容如下:passwd:fileswinbindshadow:file
4、swinbindgroup:fileswinbind修改/etc/krb5.conf[root@centos~]#vi/etc/krb5.conf内容如下:[logging]default=FILE:/var/log/krb5libs.logkdc=FILE:/var/log/krb5kdc.logadmin_server=FILE:/var/log/kadmind.log[libdefaults]default_realm=XUANBO.COMdns_lookup_realm=falsedns_lookup_kdc=falseticket_lifetime=24hforwarda
5、ble=yes[realms]EXAMPLE.COM={kdc=192.168.68.99:88admin_server=192.168.68.99:749default_domain=xuanbo.comkdc=192.168.68.99}[domain_realm].example.com=XUANBO.COMexample.com=XUANBO.COM[kdc]profile=/var/kerberos/krb5kdc/kdc.conf[appdefaults]pam={debug=falseticket_lifetime=36000renew_lifetime=36000f
6、orwardable=truekrb4_convert=false}加入域:[root@centos~]#netrpcjoin-Sdc.xuanbo.com-UadministratorPassword:JoineddomainXUANBO.[root@centos~]#wbinfo-uadministratorguestkrbtgtvpn[root@centos~]#wbinfo-gBUILTIN%administratorsBUILTIN%usersdomaincomputersdomaincontrollersschemaadminsenterpriseadminscertp
7、ublishersdomainadminsdomainusersdomainguestsgrouppolicycreatorownersrasandiasserversallowedrodcpasswordreplicationgroupdeniedrodcpasswordreplicationgroupread-onlydomaincontrollersenterpriseread-onlydomaincontrollersdnsadminsdnsupdatepro
此文档下载收益归作者所有