[Freeipa-users] samba & IPA

Steven Jones Steven.Jones at vuw.ac.nz
Thu Feb 23 20:12:39 UTC 2012


Hi,

Control samba with IPA, aka IPA controlling say ssh, so hbacl control between a samba user group and a samba host group per samba share.

So redhat linux clients to redhat linux samba server (rhel6.2's) 

I need to automount smb shares for linux users who are in IPA.

So far I have kerberos going, but I cant control a samba share based on IPA groups....or even users...so far it seems to be valid users = guest1 in the smb.conf, which is close to useless.

I need the control of the share(s) valid users = ipaserver/sambagroup/user1,2,3 etc type of thing, can this be done?

A useable alternative would be a IPA kerberos ticket to login and use AD for group control, clunky but centralised...I know in ipav3? domain trusts will be possible to look up AD groups......but really I want to use IPA s groups as I have linux users who do not want to be / are not in AD....

regards

Steven Jones

Technical Specialist - Linux RHCE

Victoria University, Wellington, NZ

0064 4 463 6272

________________________________________
From: Rob Crittenden [rcritten at redhat.com]
Sent: Thursday, 23 February 2012 5:26 p.m.
To: Steven Jones
Cc: freeipa-users at redhat.com
Subject: Re: [Freeipa-users] samba & IPA

Steven Jones wrote:
> Hi,
>
> Any good docs on making samba / smbclient / clients work with ipa?  not having much luck with google....

What is it you're looking to do? The more details the better.

regards

rob




More information about the Freeipa-users mailing list