IWETHEY v. 0.3.0 | TODO
1,095 registered users | 0 active users | 0 LpH | Statistics
Login | Create New User
IWETHEY Banner

Welcome to IWETHEY!

New Syncing linux with ADS?
Here's the plan:

The PHBs are pushing W2K and ADS to 'manage' our campus network and give all of the students logins that work regardless of where they sign in. However, we also have *NIX and Mac machines to support so I'm trying to figure out how to sync them up with our ADS.

Here's my thought: We've got a Sun E250 with OpenLDAP. The *NIX boxes can talk to LDAP. The Macs (once we upgrade to OS X) can sync up Netinfo with LDAP. I'm assuming that ADS can talk to LDAP.

The only data we need to replicate is the ADS user/password info. Is this doable?

New my understanding is that ADS is ldap with a couple of the
reserved bits being used by ms to make it proprietary to them. Havnt tried it but AD should be able to see ldap but not the other way round.
thanx,
bill
Our bureaucracy and our laws have turned the world into a clean, safe work camp. We are raising a nation of slaves.
Chuck Palahniuk
New Not necessary
Install Samba on the machines. Make them part of the AD domain (there are instructions that come on the SWAT screen). Use PAM_SMB in the login stuff on linux.

The only manual bit is when you make the Linux box part of the AD domain; they have to be added manually through Server Manager to get the encrypted system password.
Regards,

-scott anderson
New So in other words
The *NIX machines pretend to be Windows clients?
New Yep.
There's a [link|http://us4.samba.org/samba/docs/Samba-HOWTO-Collection.html|FAQ] at samba.org about it.
Regards,

-scott anderson
New So there's no way to get a non-MS LDAP service to sync
with ADS?

New Dunno; never tried.
Regards,

-scott anderson
New I'll let you know
My thought was for the different platforms to authenticate to their respective directory services and for the services to sync up login/password stuff.

But you don't know until you try. In any case, I can certainly fall back on your suggestion. Thanks for the quick response and the link!

     Syncing linux with ADS? - (tjsinclair) - (7)
         my understanding is that ADS is ldap with a couple of the - (boxley)
         Not necessary - (admin) - (5)
             So in other words - (tjsinclair) - (4)
                 Yep. - (admin) - (3)
                     So there's no way to get a non-MS LDAP service to sync - (tjsinclair) - (2)
                         Dunno; never tried. -NT - (admin) - (1)
                             I'll let you know - (tjsinclair)

Sheer, unadultered, industrial-strength tinfoil-helmet alien-lizard-people drivel of the first degree.
50 ms