Working AD configuration.
This commit is contained in:
parent
8045bbff6a
commit
b1fdd653dd
5 changed files with 19 additions and 12 deletions
|
|
@ -1,4 +1,5 @@
|
|||
5.101.171.215 core core.slackware.uk.net
|
||||
5.101.171.215 core.slackware.uk.net
|
||||
10.254.0.215 directory.slackware.uk.internal directory
|
||||
127.0.0.1 localhost localhost.localdomain
|
||||
::1 localhost ip6-localhost ip6-loopback localhost.localdomain
|
||||
ff02::1 ip6-allnodes
|
||||
|
|
|
|||
|
|
@ -15,12 +15,13 @@ renew_lifetime = 7d
|
|||
udp_preference_limit = 0
|
||||
|
||||
[realms]
|
||||
DIR0.SLACKWARE.UK.INTERNAL = {
|
||||
default_domain = dir0.slackware.uk.internal
|
||||
admin_server = dir0.slackware.uk.internal
|
||||
kdc = dir0.slackware.uk.internal
|
||||
DIRECTORY.SLACKWARE.UK.INTERNAL = {
|
||||
default_domain = directory.slackware.uk.internal
|
||||
admin_server = directory.slackware.uk.internal
|
||||
kdc = directory.slackware.uk.internal
|
||||
}
|
||||
|
||||
[domain_realm]
|
||||
#.slackware.uk.internal = DIR0.SLACKWARE.UK.INTERNAL
|
||||
core = DIR0.SLACKWARE.UK.INTERNAL
|
||||
.slackware.uk.internal = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||
slackware.uk.internal = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||
directory = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||
|
|
|
|||
|
|
@ -1,7 +1,7 @@
|
|||
# LDAP Defaults
|
||||
|
||||
URI ldap://dir0.slackware.uk.internal
|
||||
BASE dc=dir0,dc=slackware,dc=uk,dc=internal
|
||||
URI ldap://directory.slackware.uk.internal
|
||||
BASE dc=directory,dc=slackware,dc=uk,dc=internal
|
||||
VERSION 3
|
||||
|
||||
TLS_CACERT /etc/ssl/certs/ca-certificates.crt
|
||||
|
|
|
|||
|
|
@ -1,4 +1,5 @@
|
|||
options timeout:2
|
||||
options edns0
|
||||
search slackware.uk.internal slackware.uk.net
|
||||
nameserver 5.101.171.215
|
||||
nameserver 10.254.0.215
|
||||
#nameserver 5.101.171.215
|
||||
|
|
|
|||
|
|
@ -1,12 +1,14 @@
|
|||
[global]
|
||||
realm = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||
netbios name = CORE
|
||||
netbios name = DIRECTORY
|
||||
workgroup = SLACKWAREUKINT
|
||||
server string = "directory.slackware.uk.internal Domain Controller"
|
||||
bind interfaces only = yes
|
||||
interfaces = lo eth1
|
||||
# FIXME:
|
||||
# dns forwarder = 5.101.171.216 5.101.171.217 185.176.90.169
|
||||
dns forwarder = 216.119.155.58 185.176.90.169
|
||||
allow dns updates = no
|
||||
allow dns updates = secure
|
||||
tls cafile = /etc/ssl/certs/ca-certificates.crt
|
||||
tls certfile = /etc/certificates/core.slackware.uk.internal_cert.pem
|
||||
tls keyfile = /etc/certificates/core.slackware.uk.internal_key.pem
|
||||
|
|
@ -31,6 +33,8 @@ nfs4acl_xattr:xattr_name = user.nfs4_acl
|
|||
nfs4acl_xattr:default acl style = windows
|
||||
acl_xattr:security_acl_name = user.NTACL
|
||||
acl_xattr:default acl style = windows
|
||||
add machine script = /usr/sbin/useradd -c "%u machine account" -d /dev/null -g machines -M -N -s /bin/false %u
|
||||
add user script = /usr/sbin/useradd -c "%u domain user" -d /dev/null -g users -M -N -s /bin/false %u
|
||||
|
||||
# [homes]
|
||||
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue