On 9/2/19 11:14 AM, Dario Lesca wrote:
In Fedora Server there is a suit of package named samba and samba-dc* These package, with some other, are useful to make Fedora an Active Directory Domain Controller. I have decide tu use it into a little lan and convert old samba NT 4 Style into AD-DC (classicupdate). After few minutes almost everything work well, except for a thing ... all windows PC cannot access to others windows PC. I have ask on Samba ML some suggest, but in essence this was the answer: "...Using MIT with a Samba AD DC is still experimental, you should not run it in production..." https://lists.samba.org/archive/samba/2019-September/225714.html Then My questions now are: a) For what purpose it's released Fedora Samba MIT-KERBEROS DC?
I think it is only for testing, I think Red Hat team isn't working too much on bringing full DC support to Samba, only what is needed for IPA / Windows Domains compatibility, but this is my guess.
Testing and helping upstream with the MIT Kerberos is the only option, unless enabling Heimdal is possible.
b) Someone can help me to debug my issue?
That was one of the issues I got when testing the Fedora Samba DC build, another one was https://bugzilla.samba.org/show_bug.cgi?id=13516 and https://bugzilla.samba.org/show_bug.cgi?id=11362
I switched to run Samba DCs on a container with non Fedora / RHEL / CentOS provided RPMs. It is the only current option if you want to use it on production.
Many thanks
_______________________________________________ devel mailing list -- devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to devel-leave@xxxxxxxxxxxxxxxxxxxxxxx Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/devel@xxxxxxxxxxxxxxxxxxxxxxx