Working AD configuration.
This commit is contained in:
parent
8045bbff6a
commit
b1fdd653dd
5 changed files with 19 additions and 12 deletions
|
|
@ -1,4 +1,5 @@
|
||||||
5.101.171.215 core core.slackware.uk.net
|
5.101.171.215 core.slackware.uk.net
|
||||||
|
10.254.0.215 directory.slackware.uk.internal directory
|
||||||
127.0.0.1 localhost localhost.localdomain
|
127.0.0.1 localhost localhost.localdomain
|
||||||
::1 localhost ip6-localhost ip6-loopback localhost.localdomain
|
::1 localhost ip6-localhost ip6-loopback localhost.localdomain
|
||||||
ff02::1 ip6-allnodes
|
ff02::1 ip6-allnodes
|
||||||
|
|
|
||||||
|
|
@ -15,12 +15,13 @@ renew_lifetime = 7d
|
||||||
udp_preference_limit = 0
|
udp_preference_limit = 0
|
||||||
|
|
||||||
[realms]
|
[realms]
|
||||||
DIR0.SLACKWARE.UK.INTERNAL = {
|
DIRECTORY.SLACKWARE.UK.INTERNAL = {
|
||||||
default_domain = dir0.slackware.uk.internal
|
default_domain = directory.slackware.uk.internal
|
||||||
admin_server = dir0.slackware.uk.internal
|
admin_server = directory.slackware.uk.internal
|
||||||
kdc = dir0.slackware.uk.internal
|
kdc = directory.slackware.uk.internal
|
||||||
}
|
}
|
||||||
|
|
||||||
[domain_realm]
|
[domain_realm]
|
||||||
#.slackware.uk.internal = DIR0.SLACKWARE.UK.INTERNAL
|
.slackware.uk.internal = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||||
core = DIR0.SLACKWARE.UK.INTERNAL
|
slackware.uk.internal = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||||
|
directory = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||||
|
|
|
||||||
|
|
@ -1,7 +1,7 @@
|
||||||
# LDAP Defaults
|
# LDAP Defaults
|
||||||
|
|
||||||
URI ldap://dir0.slackware.uk.internal
|
URI ldap://directory.slackware.uk.internal
|
||||||
BASE dc=dir0,dc=slackware,dc=uk,dc=internal
|
BASE dc=directory,dc=slackware,dc=uk,dc=internal
|
||||||
VERSION 3
|
VERSION 3
|
||||||
|
|
||||||
TLS_CACERT /etc/ssl/certs/ca-certificates.crt
|
TLS_CACERT /etc/ssl/certs/ca-certificates.crt
|
||||||
|
|
|
||||||
|
|
@ -1,4 +1,5 @@
|
||||||
options timeout:2
|
options timeout:2
|
||||||
options edns0
|
options edns0
|
||||||
search slackware.uk.internal slackware.uk.net
|
search slackware.uk.internal slackware.uk.net
|
||||||
nameserver 5.101.171.215
|
nameserver 10.254.0.215
|
||||||
|
#nameserver 5.101.171.215
|
||||||
|
|
|
||||||
|
|
@ -1,12 +1,14 @@
|
||||||
[global]
|
[global]
|
||||||
realm = DIRECTORY.SLACKWARE.UK.INTERNAL
|
realm = DIRECTORY.SLACKWARE.UK.INTERNAL
|
||||||
netbios name = CORE
|
netbios name = DIRECTORY
|
||||||
workgroup = SLACKWAREUKINT
|
workgroup = SLACKWAREUKINT
|
||||||
server string = "directory.slackware.uk.internal Domain Controller"
|
server string = "directory.slackware.uk.internal Domain Controller"
|
||||||
|
bind interfaces only = yes
|
||||||
|
interfaces = lo eth1
|
||||||
# FIXME:
|
# FIXME:
|
||||||
# dns forwarder = 5.101.171.216 5.101.171.217 185.176.90.169
|
# dns forwarder = 5.101.171.216 5.101.171.217 185.176.90.169
|
||||||
dns forwarder = 216.119.155.58 185.176.90.169
|
dns forwarder = 216.119.155.58 185.176.90.169
|
||||||
allow dns updates = no
|
allow dns updates = secure
|
||||||
tls cafile = /etc/ssl/certs/ca-certificates.crt
|
tls cafile = /etc/ssl/certs/ca-certificates.crt
|
||||||
tls certfile = /etc/certificates/core.slackware.uk.internal_cert.pem
|
tls certfile = /etc/certificates/core.slackware.uk.internal_cert.pem
|
||||||
tls keyfile = /etc/certificates/core.slackware.uk.internal_key.pem
|
tls keyfile = /etc/certificates/core.slackware.uk.internal_key.pem
|
||||||
|
|
@ -31,6 +33,8 @@ nfs4acl_xattr:xattr_name = user.nfs4_acl
|
||||||
nfs4acl_xattr:default acl style = windows
|
nfs4acl_xattr:default acl style = windows
|
||||||
acl_xattr:security_acl_name = user.NTACL
|
acl_xattr:security_acl_name = user.NTACL
|
||||||
acl_xattr:default acl style = windows
|
acl_xattr:default acl style = windows
|
||||||
|
add machine script = /usr/sbin/useradd -c "%u machine account" -d /dev/null -g machines -M -N -s /bin/false %u
|
||||||
|
add user script = /usr/sbin/useradd -c "%u domain user" -d /dev/null -g users -M -N -s /bin/false %u
|
||||||
|
|
||||||
# [homes]
|
# [homes]
|
||||||
|
|
||||||
|
|
|
||||||
Loading…
Add table
Add a link
Reference in a new issue