create_domain_member
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| create_domain_member [2020/04/22 15:55] – chris | create_domain_member [2020/04/22 16:17] (current) – chris | ||
|---|---|---|---|
| Line 4: | Line 4: | ||
| - | * //Nano / | + | * //nano / |
| + | |||
| + | Permitrootlogin = yes | ||
| * //service ssh restart// | * //service ssh restart// | ||
| * //apt update && apt upgrade && apt autoremove// | * //apt update && apt upgrade && apt autoremove// | ||
| - | * apt install net-tools dnsutils snmpd ntp | + | * //apt install net-tools dnsutils snmpd ntp// |
| - | * nano /// | + | * //nano etc/ |
| iface eth0 inet static | iface eth0 inet static | ||
| Line 18: | Line 21: | ||
| dns-nameservers 192.168.10.1 192.168.10.11 192.168.10.13 | dns-nameservers 192.168.10.1 192.168.10.11 192.168.10.13 | ||
| dns-search domain.artit.nl" | dns-search domain.artit.nl" | ||
| + | |||
| + | * //nano / | ||
| - | |||
| - | | ||
| - | "nano / | ||
| | | ||
| rocommunity public | rocommunity public | ||
| Line 39: | Line 41: | ||
| master agentx " | master agentx " | ||
| - | - | ||
| - | 7 "nano / | + | * //nano / |
| - | SNMPDOPTS=' | + | |
| - | 8 " | + | |
| - | #mibs :" | + | |
| - | 9 " | + | |
| - | pool 0.europe.pool.ntp.org iburst | + | |
| - | pool 1.europe.pool.ntp.org iburst | + | |
| - | pool 2.europe.pool.ntp.org iburst | + | |
| - | pool 3.europe.pool.ntp.org iburst | + | |
| - | pool 0.debian.pool.ntp.org iburst | + | |
| - | pool 1.debian.pool.ntp.org iburst | + | |
| - | pool 2.debian.pool.ntp.org iburst | + | |
| - | pool 3.debian.pool.ntp.org iburst | + | |
| - | # restrict -6 default kod notrap nomodify nopeer noquery limited | ||
| - | broadcast 192.168.10.255 | + | |
| - | # restrict ::" | ||
| - | 10 service ntp restart | ||
| - | 11 show status with ntpq -p | ||
| - | 12 apt -y install realmd sssd sssd-tools adcli krb5-user packagekit samba-common samba-common-bin samba-libs | ||
| - | 13 " | ||
| - | domain domain.artit.nl | ||
| - | search domain.artit.nl. | ||
| - | nameserver 192.168.10.11 | ||
| - | nameserver 192.168.10.1 | ||
| - | nameserver 192.168.10.100" | ||
| - | 14 realm discover DOMAIN.ARTIT.NL | ||
| - | 15 realm join DOMAIN.ARTIT.NL | ||
| - | 16 id administrator@DOMAIN.ARTIT.NL | ||
| - | 17 apt -y install winbind libpam-winbind libnss-winbind krb5-config samba-dsdb-modules samba-vfs-modules | ||
| - | 18 " | ||
| - | # ArtIT Domain Integration of SAMBA | ||
| - | [global] | ||
| + | * //nano / | ||
| + | |||
| + | # | ||
| + | |||
| + | * //nano / | ||
| + | |||
| + | |||
| + | pool 0.europe.pool.ntp.org iburst | ||
| + | pool 1.europe.pool.ntp.org iburst | ||
| + | pool 2.europe.pool.ntp.org iburst | ||
| + | pool 3.europe.pool.ntp.org iburst | ||
| + | pool 0.debian.pool.ntp.org iburst | ||
| + | pool 1.debian.pool.ntp.org iburst | ||
| + | pool 2.debian.pool.ntp.org iburst | ||
| + | pool 3.debian.pool.ntp.org iburst | ||
| + | |||
| + | # restrict -6 default kod notrap nomodify nopeer noquery limited | ||
| + | |||
| + | | ||
| + | |||
| + | # restrict :: | ||
| + | |||
| + | |||
| + | * //service ntp restart// | ||
| + | * show status with //ntpq -p// | ||
| + | * //apt -y install realmd sssd sssd-tools adcli krb5-user packagekit samba-common samba-common-bin samba-libs// | ||
| + | //Italic Text//nano / | ||
| + | |||
| + | domain domain.artit.nl | ||
| + | search domain.artit.nl. | ||
| + | nameserver 192.168.10.11 | ||
| + | nameserver 192.168.10.1 | ||
| + | nameserver 192.168.10.100 | ||
| + | |||
| + | * //realm discover DOMAIN.ARTIT.NL// | ||
| + | * //realm join DOMAIN.ARTIT.NL// | ||
| + | * //id administrator@DOMAIN.ARTIT.NL// | ||
| + | * //apt -y install winbind libpam-winbind libnss-winbind krb5-config samba-dsdb-modules samba-vfs-modules// | ||
| + | * //nano / | ||
| + | |||
| + | # ArtIT Domain Integration of SAMBA | ||
| + | | ||
| + | [global] | ||
| + | passwd chat = *Enter\snew\s*\spassword: | ||
| workgroup = VERIFY | workgroup = VERIFY | ||
| - | realm = DOMAIN.ARTIT.NL | ||
| - | security = ads | ||
| - | idmap config * : backend = tdb | ||
| - | idmap config * : range = 3000-7999 | ||
| - | idmap config DOMAIN.ARTIT.NL : backend = rid | ||
| - | idmap config DOMAIN.ARTIT.NL : range = 10000-999999 | ||
| - | template homedir = /home/%U | ||
| - | template shell = /bin/bash | ||
| - | winbind use default domain = true | ||
| - | winbind offline logon = false | ||
| winbind rpc only = yes | winbind rpc only = yes | ||
| - | + | passwd program | |
| - | log file = /var/log/samba/log.%m | + | |
| max log size = 1000 | max log size = 1000 | ||
| + | security = ads | ||
| + | template homedir = /home/%U | ||
| + | os level = 20 | ||
| + | idmap config * : backend = tdb | ||
| syslog = 0 | syslog = 0 | ||
| + | panic action = / | ||
| + | unix password sync = yes | ||
| + | realm = DOMAIN.ARTIT.NL | ||
| usershare allow guests = Yes | usershare allow guests = Yes | ||
| - | map to guest = Bad User | ||
| obey pam restrictions = Yes | obey pam restrictions = Yes | ||
| + | idmap config domain.artit.nl : range = 10000-999999 | ||
| + | wins support = true | ||
| + | winbind offline logon = false | ||
| pam password change = Yes | pam password change = Yes | ||
| - | | + | |
| - | *password\supdated\ssuccessfully* | + | |
| - | | + | |
| - | | + | idmap config * : range = 3000-7999 |
| map to guest = bad user | map to guest = bad user | ||
| - | + | winbind use default domain = true | |
| - | # Printer Section ------------------------------------------------------------------------- | + | |
| - | + | ||
| - | [printers] | + | |
| + | |||
| + | [printers] | ||
| comment = All Printers | comment = All Printers | ||
| browseable = yes | browseable = yes | ||
| Line 113: | Line 128: | ||
| read only = yes | read only = yes | ||
| create mask = 0700 | create mask = 0700 | ||
| - | + | | |
| - | [print$] | + | [print$] |
| - | | + | |
| comment = Printer Drivers | comment = Printer Drivers | ||
| path = / | path = / | ||
| Line 121: | Line 136: | ||
| read only = yes | read only = yes | ||
| guest ok = yes | guest ok = yes | ||
| - | write list = root, administrators@DOMANIN.ARTIT.NL | + | write list = root chris @" |
| - | + | ||
| - | # NETWORK SHARES -------------------------------------------------------------------------- | + | # NETWORK SHARES -------------------------------------------------------------------------- |
| - | + | ||
| - | + | ||
| - | [c$] | + | [c$] |
| comment = Root Share | comment = Root Share | ||
| path = / | path = / | ||
| guest ok = no | guest ok = no | ||
| - | browseable = no | + | browseable = yes |
| read only = no | read only = no | ||
| - | # NETWORK SHARES -------------------------------------------------------------------------- | + | create mask = 0775 |
| + | directory mask = 0775 | ||
| + | valid users = root chris @" | ||
| + | |||
| + | |||
| + | ... | ||
| + | |||
| + | | ||
| + | | ||
| + | * //nano / | ||
| - | [c$] | + | passwd: |
| + | group: | ||
| - | comment = Root Share | + | |
| - | path = / | + | * //systemctl restart winbind// |
| - | guest ok = no | + | * //Unordered List Itemwbinfo |
| - | browseable = no | + | |
| - | read only = no" | + | |
| - | 19 " | + | You now have a running domain member in your network. |
| - | passwd: | + | |
| - | group: | + | |
| - | 20 net ads join -U Administrator | + | |
| - | 21 systemctl restart winbind | + | |
| - | 22 wbinfo | + | |
create_domain_member.1587563756.txt.gz · Last modified: 2020/04/22 15:55 by chris
