terça-feira, 19 de janeiro de 2010

Opensolaris 2009.06 acessando Active Directory

Passando um pouco de trabalho com o Linux no Active Directory, e sinceramente achando mais fácil colocar um Opensolaris no AD, resolvi fazer este tutorial, baseado em não achar nada parecido em pt_BR.

Supondo que:

Servidor Windows:
Hostname dc.windows.local
IP 10.1.1.200

Servidor Opensolaris 2008.11
Hostname arquivos.windows.local
IP 10.1.1.201

Sincronizando os horarios:
#ntpdate dc.windows.local


Adicione os Servidores em /etc/hosts
# cat /etc/hosts
127.0.0.1 arquivos.local localhost loghost
10.1.1.201 arquivos.windows.local arquivos loghost
10.1.1.200 dc.windows.local dc


# cat /etc/resolv.conf
domain windows.local
search windows.local
nameserver 10.1.1.200

# rm -f /etc/nsswitch.conf
# cp /etc/nsswitch.dns /etc/nsswitch.conf

# ping dc.windows.local
dc is alive

Editando o arquvivo /etc/krb5/krb5.conf

#############################
[libdefaults]
default_realm = WINDOWS.LOCAL

[realms]
WINDOWS.LOCAL = {
kdc = dc.windows.local
admin_server = dc.windows.local
kpasswd_server = dc.windows.local
kpasswd_protocol = SET_CHANGE
}

[domain_realm]
.windows.local = WINDOWS.LOCAL
#############################

O Pulo do gato está aqui:

No seu Windows Server 2008:
Group Policy Management tool and changed the following:

Computer Configuration\Policies\Administrative Templates\System\Net
Logon\Allow Cryptography Algorithms Compatible with Windows NT 4.0 -> Enabled

iniciar -> executar -> gpupdate /force.

Voltando ao Opensolaris:
# sharectl set -p lmauth_level=2 smb

# svcadm enable -r smb/server

Colocando o Opensolaris no Domínio "windows.local"

# smbadm join -u administrador windows.local
After joining windows.local the smb service will be restarted automatically.
Would you like to continue? [no]: yes
Enter domain password: [SENHA DO ADMINISTRADOR]
Joining windows.local ... this may take a minute ...
Successfully joined windows.local

Boa Sorte, dá pra implementar um fileserver.

Baseado em:
http://livingonthecloud.blogspot.com/2009/02/joining-opensolaris-cifs-server-to-ad.html
http://blogs.sun.com/timthomas/entry/configuring_the_opensolaris_cifs_server
http://joaocep.blogspot.com/2009/07/instalando-samba-3-no-opensolaris.html