Working AD configuration.

This commit is contained in:
Darren 'Tadgy' Austin 2026-04-10 18:22:17 +00:00
commit b1fdd653dd
5 changed files with 19 additions and 12 deletions

View file

@ -1,4 +1,5 @@
5.101.171.215 core core.slackware.uk.net 5.101.171.215 core.slackware.uk.net
10.254.0.215 directory.slackware.uk.internal directory
127.0.0.1 localhost localhost.localdomain 127.0.0.1 localhost localhost.localdomain
::1 localhost ip6-localhost ip6-loopback localhost.localdomain ::1 localhost ip6-localhost ip6-loopback localhost.localdomain
ff02::1 ip6-allnodes ff02::1 ip6-allnodes

View file

@ -15,12 +15,13 @@ renew_lifetime = 7d
udp_preference_limit = 0 udp_preference_limit = 0
[realms] [realms]
DIR0.SLACKWARE.UK.INTERNAL = { DIRECTORY.SLACKWARE.UK.INTERNAL = {
default_domain = dir0.slackware.uk.internal default_domain = directory.slackware.uk.internal
admin_server = dir0.slackware.uk.internal admin_server = directory.slackware.uk.internal
kdc = dir0.slackware.uk.internal kdc = directory.slackware.uk.internal
} }
[domain_realm] [domain_realm]
#.slackware.uk.internal = DIR0.SLACKWARE.UK.INTERNAL .slackware.uk.internal = DIRECTORY.SLACKWARE.UK.INTERNAL
core = DIR0.SLACKWARE.UK.INTERNAL slackware.uk.internal = DIRECTORY.SLACKWARE.UK.INTERNAL
directory = DIRECTORY.SLACKWARE.UK.INTERNAL

View file

@ -1,7 +1,7 @@
# LDAP Defaults # LDAP Defaults
URI ldap://dir0.slackware.uk.internal URI ldap://directory.slackware.uk.internal
BASE dc=dir0,dc=slackware,dc=uk,dc=internal BASE dc=directory,dc=slackware,dc=uk,dc=internal
VERSION 3 VERSION 3
TLS_CACERT /etc/ssl/certs/ca-certificates.crt TLS_CACERT /etc/ssl/certs/ca-certificates.crt

View file

@ -1,4 +1,5 @@
options timeout:2 options timeout:2
options edns0 options edns0
search slackware.uk.internal slackware.uk.net search slackware.uk.internal slackware.uk.net
nameserver 5.101.171.215 nameserver 10.254.0.215
#nameserver 5.101.171.215

View file

@ -1,12 +1,14 @@
[global] [global]
realm = DIRECTORY.SLACKWARE.UK.INTERNAL realm = DIRECTORY.SLACKWARE.UK.INTERNAL
netbios name = CORE netbios name = DIRECTORY
workgroup = SLACKWAREUKINT workgroup = SLACKWAREUKINT
server string = "directory.slackware.uk.internal Domain Controller" server string = "directory.slackware.uk.internal Domain Controller"
bind interfaces only = yes
interfaces = lo eth1
# FIXME: # FIXME:
# dns forwarder = 5.101.171.216 5.101.171.217 185.176.90.169 # dns forwarder = 5.101.171.216 5.101.171.217 185.176.90.169
dns forwarder = 216.119.155.58 185.176.90.169 dns forwarder = 216.119.155.58 185.176.90.169
allow dns updates = no allow dns updates = secure
tls cafile = /etc/ssl/certs/ca-certificates.crt tls cafile = /etc/ssl/certs/ca-certificates.crt
tls certfile = /etc/certificates/core.slackware.uk.internal_cert.pem tls certfile = /etc/certificates/core.slackware.uk.internal_cert.pem
tls keyfile = /etc/certificates/core.slackware.uk.internal_key.pem tls keyfile = /etc/certificates/core.slackware.uk.internal_key.pem
@ -31,6 +33,8 @@ nfs4acl_xattr:xattr_name = user.nfs4_acl
nfs4acl_xattr:default acl style = windows nfs4acl_xattr:default acl style = windows
acl_xattr:security_acl_name = user.NTACL acl_xattr:security_acl_name = user.NTACL
acl_xattr:default acl style = windows acl_xattr:default acl style = windows
add machine script = /usr/sbin/useradd -c "%u machine account" -d /dev/null -g machines -M -N -s /bin/false %u
add user script = /usr/sbin/useradd -c "%u domain user" -d /dev/null -g users -M -N -s /bin/false %u
# [homes] # [homes]