<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Authenticating SLES9 vs. Windows AD in Operating System - Linux</title>
    <link>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766314#M68069</link>
    <description>&lt;BR /&gt;Hmm, the SLES9 machine itself appears in AD, and I can get to it from my windows desktop with \\machinename.&lt;BR /&gt;&lt;BR /&gt;Do you think that is sufficient?  I have not run any net join command manually, although perhaps something I configured through YaST did this for me...?</description>
    <pubDate>Wed, 05 Apr 2006 09:19:45 GMT</pubDate>
    <dc:creator>Eric Meiring</dc:creator>
    <dc:date>2006-04-05T09:19:45Z</dc:date>
    <item>
      <title>Authenticating SLES9 vs. Windows AD</title>
      <link>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766312#M68067</link>
      <description>Hello,&lt;BR /&gt;I've tried this in suseforums.net, so far with very little success in responses and searches there, so I'll try here too.&lt;BR /&gt;&lt;BR /&gt;I have SUSE Linux Enterprise 9 on an HP DL360 G3.  This is a lone linux server amongst many HP/Windows ones.  What I'd like to do is have the ability to log onto this SLES9 box with local (linux) credentials I've created (done already), or with AD creds from a given domain.&lt;BR /&gt;&lt;BR /&gt;I don't want the SLES sever to be an authenticating source, I don't want it to run AD, etc.  I already have a test environment with AD/Win2003.  I simply want to use an account there to log onto this server.  (I stress this point, because almost all of my searches thus far for this have yielded results for running SLES 9 as the AD type server, or doing much much more than my humble goal).&lt;BR /&gt;&lt;BR /&gt;So far I have installed though YaST:&lt;BR /&gt;pam_krb5&lt;BR /&gt;samba&lt;BR /&gt;samba-doc&lt;BR /&gt;samba-pdb&lt;BR /&gt;samba-winbind&lt;BR /&gt;&lt;BR /&gt;I have also configured through YaST:&lt;BR /&gt;LDAP Client&lt;BR /&gt;Samba Client&lt;BR /&gt;Samba Server (however, I cannot seem to add my AD domain in the Trusted Domains section!)&lt;BR /&gt;&lt;BR /&gt;As it stands now, I think it's partially working.  When I try to login as DOMAIN\testuser, I get a "critical error" however.  (As opposed to a login failed, if I attempt a bogus login).&lt;BR /&gt;&lt;BR /&gt;In looking at /var/log/messages, I see:&lt;BR /&gt;"pam_winbind: user DOMAIN\testuser granted access&lt;BR /&gt;kdm: getpwnam(DOMAIN\testuser failed".&lt;BR /&gt;&lt;BR /&gt;That last piece seems to be the key, but I'm stuck in my troubleshooting so far.&lt;BR /&gt;&lt;BR /&gt;Any help?  Thanks!&lt;BR /&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 05 Apr 2006 08:16:03 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766312#M68067</guid>
      <dc:creator>Eric Meiring</dc:creator>
      <dc:date>2006-04-05T08:16:03Z</dc:date>
    </item>
    <item>
      <title>Re: Authenticating SLES9 vs. Windows AD</title>
      <link>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766313#M68068</link>
      <description>Shalom eric,&lt;BR /&gt;&lt;BR /&gt;Suggestion:&lt;BR /&gt;&lt;BR /&gt;Has the machine done a samba command called:&lt;BR /&gt;&lt;BR /&gt;net join&lt;BR /&gt;&lt;BR /&gt;This needs to be done to get integration. &lt;BR /&gt;&lt;BR /&gt;The machine may also need a "machine account" on the ADS system so that its allowed to talk and play well with other machines.&lt;BR /&gt;&lt;BR /&gt;SEP</description>
      <pubDate>Wed, 05 Apr 2006 09:13:34 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766313#M68068</guid>
      <dc:creator>Steven E. Protter</dc:creator>
      <dc:date>2006-04-05T09:13:34Z</dc:date>
    </item>
    <item>
      <title>Re: Authenticating SLES9 vs. Windows AD</title>
      <link>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766314#M68069</link>
      <description>&lt;BR /&gt;Hmm, the SLES9 machine itself appears in AD, and I can get to it from my windows desktop with \\machinename.&lt;BR /&gt;&lt;BR /&gt;Do you think that is sufficient?  I have not run any net join command manually, although perhaps something I configured through YaST did this for me...?</description>
      <pubDate>Wed, 05 Apr 2006 09:19:45 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766314#M68069</guid>
      <dc:creator>Eric Meiring</dc:creator>
      <dc:date>2006-04-05T09:19:45Z</dc:date>
    </item>
    <item>
      <title>Re: Authenticating SLES9 vs. Windows AD</title>
      <link>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766315#M68070</link>
      <description>I should clarify that I can "see" the SLES machine via Windows Explorer, but I get challenged for credentials when I try to access one of the folders shown.  &lt;BR /&gt;&lt;BR /&gt;(Not sure what to use as creds, I'm goofing with that now).</description>
      <pubDate>Wed, 05 Apr 2006 09:21:41 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766315#M68070</guid>
      <dc:creator>Eric Meiring</dc:creator>
      <dc:date>2006-04-05T09:21:41Z</dc:date>
    </item>
    <item>
      <title>Re: Authenticating SLES9 vs. Windows AD</title>
      <link>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766316#M68071</link>
      <description>I see through YaST in the Samba Client config tool, that I had set the "Samba Workgroup or Domain" to my AD domain, and checked the "also use SMB Information for Linux Authentication" box.  &lt;BR /&gt;&lt;BR /&gt;The "help" on the side of this GUI says that if this is an NT domain, YaST will allow this host to join the domain.&lt;BR /&gt;&lt;BR /&gt;So I THINK I'm on the domain already, but something sure isn't correct.</description>
      <pubDate>Wed, 05 Apr 2006 10:01:55 GMT</pubDate>
      <guid>https://community.hpe.com/t5/operating-system-linux/authenticating-sles9-vs-windows-ad/m-p/3766316#M68071</guid>
      <dc:creator>Eric Meiring</dc:creator>
      <dc:date>2006-04-05T10:01:55Z</dc:date>
    </item>
  </channel>
</rss>

