Bernard Fay
2016-Sep-30 14:04 UTC
[Samba] Failed to find sambaDomain object to get sambaAlgorithmicRidBase
The users are not part of an existing AD domain. The setup is rather simple, I have to migrate all the users in a new environment. We need to centralized authentication, the reason of LDAP, and access shares from our Windows workstation. I hope I am clear enough regarding our setup. On Fri, Sep 30, 2016 at 9:26 AM, Rowland Penny via samba < samba at lists.samba.org> wrote:> On Fri, 30 Sep 2016 08:50:20 -0400 > Bernard Fay via samba <samba at lists.samba.org> wrote: > > > I didn't use smbldap-populate. I used ldif files to add groups to > > LDAP with ldapadd. > > > > You have rather good questions, NT4 or AD style, I don't know. I am > > a Unix guy with very few knowledge in Windows stuff and I try to stay > > away from it as much as I can. I have been asked to setup a new LDAP > > directory with Samba passwords stored in this LDAP directory. > > > > I base my work on an actual LDAP and Samba server that is working in > > our environment. This server as role ROLE_STANDALONE. I also use > > recipe found on Internet. > > > > If you can point me to a recipe for an AD DC, I will try it. But what > > is the actual difference between both? > > > > I also seriously think about splitting LDAP and samba, no integration > > at all between both. > > > > Thanks, > > > > > > OK, brief history of windows and sharing data: > > First there was dos, virtually standalone computers, then came windows. > This had better file sharing capabilities, but you needed to create the > same users and groups on all computers, so didn't scale well if you had > a large amount of computers, this was know a workgroup. > > This lead to the NT4-style domains, where authentication was > centralised on a PDC, you could also have a BDC in case of PDC failure. > This was better, but still had problems. > > Finally Active Directory was created, with this, all DCs are equal, you > can have SSO and is what microsoft now expects windows machines to > connect to. > > As to which Samba setup to use, it would help to know if your users > are already members of an AD domain, if not, what is your basic setup ? > > Rowland > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >
Rowland Penny
2016-Sep-30 14:27 UTC
[Samba] Failed to find sambaDomain object to get sambaAlgorithmicRidBase
On Fri, 30 Sep 2016 10:04:59 -0400 Bernard Fay via samba <samba at lists.samba.org> wrote:> The users are not part of an existing AD domain. The setup is rather > simple, I have to migrate all the users in a new environment. We > need to centralized authentication, the reason of LDAP, and access > shares from our Windows workstation. I hope I am clear enough > regarding our setup. > >OK, it sounds like you should set up an Active Directory domain, anything else will be using old technology. It seems that Microsoft is trying to make the use of NT4-style domains unusable with Windows 10. I would not recommend setting up a new NT4-style domain, if you do decide to go for a domain, then go for a an AD domain. Out of interest, how many users and how many windows workstations ? Rowland
Bernard Fay
2016-Sep-30 14:53 UTC
[Samba] Failed to find sambaDomain object to get sambaAlgorithmicRidBase
Ok, then I have to find up about how to build an AD domain. About 60 users with one workstations per user. On Fri, Sep 30, 2016 at 10:27 AM, Rowland Penny via samba < samba at lists.samba.org> wrote:> On Fri, 30 Sep 2016 10:04:59 -0400 > Bernard Fay via samba <samba at lists.samba.org> wrote: > > > The users are not part of an existing AD domain. The setup is rather > > simple, I have to migrate all the users in a new environment. We > > need to centralized authentication, the reason of LDAP, and access > > shares from our Windows workstation. I hope I am clear enough > > regarding our setup. > > > > > > OK, it sounds like you should set up an Active Directory domain, > anything else will be using old technology. It seems that Microsoft is > trying to make the use of NT4-style domains unusable with Windows 10. > > I would not recommend setting up a new NT4-style domain, if you do > decide to go for a domain, then go for a an AD domain. > > Out of interest, how many users and how many windows workstations ? > > Rowland > > > -- > To unsubscribe from this list go to the following URL and read the > instructions: https://lists.samba.org/mailman/options/samba >