Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Linux in an Active directory domain

Status
Not open for further replies.

ScottishFencer

Technical User
Sep 27, 2005
74
GB
Hi there,

As a pet project I am experimenting with using a linux box as a client on my Active Directory domain. I have found a few reources on the web that talk about this but they all involve hacking files. I am currently playing with SADMS to see if I can get it to authenticate with my Windows DC to no avail. I keep getting Kerberos errors. Has anyone out there had any success getting this to work? As I said this is a test project and I don't much care if I hose the box. I'll quite happily reinstall Linux. The distro I have to hand is Ubuntu (as I've heard good things about it).

Oh, and I am pretty new to Linux.
 
Thanks for that comment. I have samba installed and I can access shares and the like. What I would like to investigate is using the Linux box as a client in the domain - not as a server. So Mr User is presented with a log on and has to enter his password and then the box is on the network.
 
You should be able to configure ldap authentication. I thought it works with active directory.

My suggestion would always be trash the M$ and replace with Linux...I usually get blank stares at my work also.

Mark

There are 10 types of people in this world, those who understand binary and those who don't.
 
I know MS Actice Directory does work with LDAP, but don't ask me how... LDAP makes life eaiser. Otherwise, you could look into making the Server push a new passwd and shadow file anytime a user is added or changes their password (then make sure users can't execute the passwd command on the Linux boxes).

[plug=shameless]
[/plug]
 
Check this Link, it may answer part of your query


I might add this took a bit of hard yakka to do, and yes it would be wise to test off the domain first before real implementation.

But do take note of the intro. I am patiently waiting on how samba to get that AD thing working(well without the hack), coz this solution still involves a M$ server
 
the only way to do this is to turn off the kerberos authentication for the linux box in the domain security.

One of the samba books describes this issue.

But enuff already - go the whole 9 yards and get a samba DC with LDAP backend working. That is a rewarding project for you to try!!!!!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top