How to I get Samba working on CentOS with AD authenticated users?

General support questions
Post Reply
jdhumpf
Posts: 3
Joined: 2019/06/13 20:10:26

How to I get Samba working on CentOS with AD authenticated users?

Post by jdhumpf » 2019/06/13 20:17:51

I have tried multiple different ways to get Samba working with CentOS and there is not a single guide out there that actually works fully.

Here are the requirements:

1. Ability to login to CentOS with Active Directory credentials

(which I have figured out but I am willing to take other suggestions: https://www.linuxtechi.com/integrate-rh ... directory/)

2. The ability to seamlessly/somewhat easily have users access the CentOS home directories from windows machines. (example: \\192.168.1.77\username or something like that)

Note, I have tried SSSD and winbind and am a real fan of sssd as far as the authentication goes, but I am really stuck as far as making samba work with it.

I have spent several days on this and am looking to the spiceworks community for help.

hunter86_bg
Posts: 1789
Joined: 2015/02/17 15:14:33
Location: Bulgaria
Contact:

Re: How to I get Samba working on CentOS with AD authenticated users?

Post by hunter86_bg » 2019/06/14 14:07:23

You need to setup a kerberized Samba, as windows clients will not connect to non-kerberized share.

jdhumpf
Posts: 3
Joined: 2019/06/13 20:10:26

Re: How to I get Samba working on CentOS with AD authenticated users?

Post by jdhumpf » 2019/06/14 15:41:26

Do you have a config and steps that work? I have tried everything.

hunter86_bg
Posts: 1789
Joined: 2015/02/17 15:14:33
Location: Bulgaria
Contact:

Re: How to I get Samba working on CentOS with AD authenticated users?

Post by hunter86_bg » 2019/06/16 13:02:50

First,
Have you tried in the windows client to access the share via: \\my.centos.my.domain\samba\share instead of using the IP?

jdhumpf
Posts: 3
Joined: 2019/06/13 20:10:26

Re: How to I get Samba working on CentOS with AD authenticated users?

Post by jdhumpf » 2019/06/17 15:59:03

Yes I have. So now I have a different problem.

I have got the thing to work but I can not use SSSD with samba. I can only use Winbind.

With winbind I can only get users in the primary domain to be able to login without "@Domain.com"

username@domain.com
username@subdomian.domian.com

SHOULD BE JUST:

username

Post Reply