Samba

From UVOO Tech Wiki
Revision as of 19:24, 10 May 2020 by Busk (talk | contribs)
Jump to navigation Jump to search

Setting Up

NOTE THIS ONE

This seems to work

Other

Client

gvfs-mount smb://stay@nas/stay

mount sucks as must be root use above or gui tools

sudo mount -t cifs -o username=myuser //nas/myuser /mnt/smbmount

https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/windows_integration_guide/smb-sssd

New-SmbMapping -UserName jtest -password 123123 -LocalPath 'M:' -RemotePath '\10.250.24.12\jtest'

alternatives --display cifs-idmap-plugin
alternatives --set cifs-idmap-plugin /usr/lib64/cifs-utils/cifs_idmap_sss.so  # was  alternatives --set cifs-idmap-plugin /usr/lib/cifs-utils/idmapwb.so
alternatives --set cifs-idmap-plugin /usr/lib64/cifs-utils/idmapwb.so
systemctl is-active winbind.service
systemctl is-active sssd.service

smbpasswd -a jebusk

New-SmbMapping -LocalPath 'O:' -RemotePath '\10.250.24.12\jtest3'

/var/lib/samba/private/passdb.tdb

Ubuntu 18.04

vim /etc/pam.d/common-session # at bottom of file

session optional pam_mkhomedir.so skel=/etc/skel umask=077

Access

```realm permit statements handle ACLs with sssd but with windbind let's use pam to restrict auth connections.
/etc/pam.d/sshd
account required pam_access.so
to enforce
/etc/security/access.conf
+ : usertoallow : ALL
ALL : ALL https://ubuntuforums.org/showthread.php?t=1385235
<br />Checks

getent passwd myuser id user@domain.com ```

http://koo.fi/blog/2015/06/16/ubuntu-14-04-active-directory-authentication/