Вообщем переделал все по куче мануалов. Не моуг ввести машину в домен:
делаю
net ads join -U admin
получаю зависание на строке
[2005/12/12 22:23:09, 5] libads/ldap_utils.c:ads_do_search_retry(56)
Search for (objectclass=*) gave 1 replies
Можно ждать часами +(
Билеты получаются все видится... Такое ощущение что ошибка где-то в AD?
/etc/krb5.conf
[libdefaults]
default_realm = DOMAIN.RU
permitted_enctypes = des-cbc-md5 des-cbc-crc des-cbc-sha1
clockskew = 300
default_keytab_name = FILE:/etc/krb5.keytab
[realms]
DC.DOMAIN.RU = {
kdc = dc.DOMAIN.RU
admin_server = dc.DOMAIN.RU
default_domain = DOMAIN.RU
}
[domain_realms]
.domain.ru = DOMAIN.RU
domain.ru = DOMAIN.RU
[logging]
kdc = FILE:/var/log/krb5kdc.log
admin_server = FILE:/var/log/kadmin.log
default = FILE:/var/log/krb5lib.log
[appdefaults]
pam = {
ticket_lifetime = 1d
renew_lifetime = 1d
forwardable = true
proxiable = false
retain_after_close = true
}
smb.conf
[global]
log file = /var/log/samba/log.%m
socket options = TCP_NODELAY SO_SNDBUF=8192 SO_RCVBUF=8192
null passwords = yes
interfaces = XX.XX.XX.XX/255.255.255.0
hosts allow = XX.XX.XX. 127.0.0.1
encrypt passwords = yes
idmap uid = 10000-20000
idmap gid = 10000-20000
auth methods = winbind
winbind enum groups = yes
winbind enum users = yes
winbind use default domain = yes
name resolve order = hosts wins bcast lmhosts
case sensitive = no
dns proxy = no
netbios name = psi
server string = Proxy Server
password server = dc.domain.ru
realm = DOMAIN.RU
client use spnego = yes
client signing = yes
local master = no
domain master = no
preferred master = no
workgroup = DOMAIN
debug level = 10
security = ads
dos charset = 866
unix charset = UTF-8
max log size = 50
os level = 0
[upload]
comment = Upload
path = /srv/smb/upload
browseable = yes
writeable = yes
directory mask = 0777
create mask = 0666