Dans Proxmox
apt install samba winbind krb5-user libnss-winbind libpam-winbind libpam-krb5
(winbindd sous bullseye)
nano /etc/krb5.conf
et ajouter les lignes suivantes
[libdefaults] default_realm = SAMDOM.EXAMPLE.COM dns_lookup_realm = false dns_lookup_kdc = true
kinit administrator
service smbd stop service nmbd stop rm /etc/samba/smb.conf
nano /etc/samba/smb.conf
avec le contenu suivant:
[global] workgroup = MAKEITSIMPLE security = ADS realm = MAKEITSIMPLE.LAN idmap config *:backend = tdb idmap config *:range = 700001-800000 idmap config MYDOMAIN:backend = ad idmap config MYDOMAIN:schema_mode = rfc2307 idmap config MYDOMAIN:range = 500-700000 winbind nss info = rfc2307 vfs objects = acl_xattr map acl inherit = Yes winbind use default domain = yes winbind enum users = yes winbind enum groups = yes template homedir = /homes/%U printcap name = /dev/null load printers = no disable spoolss = yes printing = bsd [dossier] path = /srv/dossier read only = no
net ads join -U administrator
nano /etc/nsswitch.conf
Et rajouter winbind:
passwd: files systemd winbind group: files systemd winbind <code> - Faire quelques tests: <code bash> wbinfo -u wbinfo -g wbinfo -i administrator
chown administrator:"domain users" /srv/dossier chmod 770 /srv/dossier
[volume] path = /volume force group = superuser create mask = 0775 directory mask = 0775 veto oplock files = /*.dbf/*.DBF/*.ndx/*.NDX/*.dbx/*.DBX/*.dbt/*.DBT/*.cdx/*.CDX/