# Vi/etc/nsswitch. conf
Passwd: compat winbind
GROUP: compat winbind
Shadow: compat
Hosts: Files DNS wins
Networks: Files DNS
Protocols: DB files
Services: DB files
Ethers: DB files
RPC: DB files
# Vi/etc/krb5.conf
[Logging]
Default = file:/var/log/krb5libs. Log
KDC = file:/var/log/krb5kdc. Log
Admin_server = file:/var/log/kadmind. Log
[Libdefaults]
Ticket_lifetime = 24000
Clock_sknewer = 300
Default_realm = ubuntu. com
[Realms]
Ubuntu. com = {
KDC = ubuntu.com
Default_domain = ubuntu. com
}
[Domain_realm]
. Kerberos. Server = ubuntu. com
Ubuntu.com = ubuntu. com
# Kinit [email protected]
Password:
# Klist
# Vi/etc/samba/smb. conf
[Global]
Workgroup = Ubuntu
Realm = ubuntu. com
Password Server = 10.10.xx.xxx
Server String = Linux Web Server
Security = ads
Encrypt passwords = Yes
Log Level = 3
Log File =/var/log/samba/% m
Max log size = 50
Preferred master = No
Idmap uid = 10000-20000
Idmap gid = 10000-20000
Winbind Enum users = Yes
Winbind Enum groups = Yes
Template homedir =/home/% d/% u
Template shell =/bin/bash
Client use SPNEGO = Yes
Client NTLMv2 auth = Yes
Winbind separator = +
Winbind refresh tickets = Yes
Winbind use default domain = Yes
Restrict Anonymous = 2
Guest account = nobody
Socket Options = tcp_nodelay
# Net ads join-U [email protected]
Password:
#/Etc/init. d/winbind stop
#/Etc/init. d/samba restart
#/Etc/init. d/winbind start
# Wbinfo-u
# Wbinfo-G
Samba domain control profile nsswitch-krb5-smb.conf