Цитата: комп в домен загнал, после перезагрузки, залогинится не могу, пишу того пользователя под которым в домен загонял. в ответ- проверте правильность ввода имени и пароля. всё ввожу правильно. странно то что это сообщение вываливается сразу как только нажимаешь ентер, и секунды не проходит, тоесть он даже домен не опрашивает на наличие учётки, как так я не врублюсь.
это тебе так кажется :)
Цитата: и... может это тупой вопрос, но я спрошу- когда логинишся, авторизация через самбу или через лдап происходит?
авторизация на самбе. А самба уже сама к лдап-у обращается. Это конечно при условии стандартных настроек. При желании можно накрутить много-го.
ЗАчем мне твои конфиги - сам разбирайся :)
Код: [16:24] dozer:~ ]#testparm -s
Load smb config files from /usr/local/etc/smb.conf
Processing section "[netlogon]"
Processing section "[Home]"
Processing section "[Profile]"
Processing section "[Public]"
Processing section "[_install]"
Processing section "[Kievbudcom]"
Processing section "[Accounting]"
Processing section "[Project]"
Processing section "[Pto]"
Processing section "[It]"
Server's Role (logon server) NOT ADVISED with domain-level security
Loaded services file OK.
Server role: ROLE_DOMAIN_BDC
[global]
dos charset = cp866
unix charset = koi8-u
display charset = koi8-r
workgroup = KIEVBUD
server string = PDC
security = DOMAIN
passdb backend = ldapsam:ldap://localhost/
log file = /var/log/samba/log.%m
max log size = 500
time server = Yes
load printers = No
logon path =
domain logons = Yes
os level = 33
preferred master = Yes
domain master = Yes
dns proxy = No
wins support = Yes
ldap admin dn = "cn=sysadmin,dc=kievbud"
ldap group suffix = ou=smbGroups
ldap machine suffix = ou=smbHosts
ldap suffix = dc=kievbud
ldap user suffix = ou=smbUsers
admin users = basilnt, olegnt, bayornt
hosts allow = 10.0.0., 127.0.0
hide files = /*.ini/Thumbs.db/WINDOWS/
include = /usr/local/etc/smb.conf.shares
[netlogon]
comment = Network Logon Service
path = /usr/local/samba/netlogon
guest ok = Yes
browseable = No
share modes = No
[Home]
comment = %U's private folder
path = /usr/local/samba/home/%u
read only = No
create mask = 0600
directory mask = 0700
browseable = No
root preexec = /usr/local/samba/smb-preexec.sh %u %g
[Profile]
comment = Users Profile Folder
path = /usr/local/samba/profile/%U
read only = No
create mask = 0600
directory mask = 0700
guest ok = Yes
profile acls = Yes
browseable = No
csc policy = disable
[Public]
comment = Public Folder
path = /usr/local/samba/public
read only = No
create mask = 0660
directory mask = 0770
guest ok = Yes
[_install]
comment = _install Folder
path = /usr/local/samba/_install
valid users = @smbAdmins
force group = smbUsers
read only = No
create mask = 0660
directory mask = 0770
delete readonly = Yes
[Kievbudcom]
comment = Kievbudcom Folder
path = /usr/local/samba/kievbudcom
valid users = @smbUsers
force group = smbUsers
read only = No
create mask = 0660
directory mask = 0770
delete readonly = Yes
[Accounting]
comment = Accounting Folder
path = /usr/local/samba/accounting
valid users = @smbAccounting
force group = smbUsers
read only = No
create mask = 0660
directory mask = 0770
delete readonly = Yes
[Project]
comment = Project Folder
path = /usr/local/samba/project
valid users = @smbProject
force group = smbUsers
read only = No
create mask = 0660
directory mask = 0770
delete readonly = Yes
[Pto]
comment = Pto Folder
path = /usr/local/samba/pto
valid users = @smbPto
force group = smbUsers
read only = No
create mask = 0660
directory mask = 0770
delete readonly = Yes
[It]
comment = It Folder
path = /usr/local/samba/it
valid users = @smbAdmins
force group = smbUsers
read only = No
create mask = 0660
directory mask = 0770
delete readonly = Yes