Displaying 2 results from an estimated 2 matches for "the_service_its_used_for".
2019 Apr 09
2
Possible incorrect file permissions in documentation for setting up Samba with LDAP(S)?
Hi All,
This Samba release changelog
(https://wiki.samba.org/index.php/Updating_Samba#Incorrect_TLS_File_Permissions)
specifically mentions a security issue and that that the multiple *.pem
files needed for LDAP via TLS all need "special permissions" - and
mentions to delete old files without the required permissions to force
file renewal.
Yet in the official Samba documentation
2019 Apr 09
0
Possible incorrect file permissions in documentation for setting up Samba with LDAP(S)?
...crt.
# for the bundle file, see :
Adding LDAP (client support) ldap.conf
BASE dc=your,dc=domain,dc=tld
URI ldaps://dc1.your.domain.tld ldaps://dc2.your.domain.tld
# note, i have a separeted OU for my service-accounts. ( OU=Srv-Acc )
# su-service stands for 'ServiceUser'-'the_service_its_used_for' so its easy to identify.
BIND_DN = CN=su-ldap,OU=Srv-Acc,CN=your,DC=domain,DC=tld
BIND_PW = yourpass
TLS_CACERT /etc/ssl/certs/ca-certificates.crt
TLS_REQCERT allow
And now you can deploy your root CA.
Open the Group Policy Management Console.
1 Select a GPO to edit, or create a new G...