2. Подготовка Samba 4 к роли контроллера домена AD.

2. Подготовка Samba 4 к роли контроллера домена AD.

Теперь можно приступать к подготовке домена.

# /usr/local/samba/bin/samba-tool domain provision --dns-backend=BIND9_DLZ --domain=SAMDOM --realm=SAMDOM.EXAMPLE.COM
Looking up IPv4 addresses 
Looking up IPv6 addresses 
No IPv6 address will be assigned 
Setting up share.ldb 
Setting up secrets.ldb 
Setting up the registry 
Setting up the privileges database 
Setting up idmap db 
Setting up SAM db 
Setting up sam.ldb partitions and settings 
Setting up sam.ldb rootDSE 
Pre-loading the Samba 4 and AD schema 
Adding DomainDN: DC=samdom,DC=example,DC=com 
Adding configuration container 
Setting up sam.ldb schema 
Setting up sam.ldb configuration data 
Setting up display specifiers 
Modifying display specifiers 
Adding users container 
Modifying users container 
Adding computers container 
Modifying computers container 
Setting up sam.ldb data 
Setting up well known security principals 
Setting up sam.ldb users and groups 
Setting up self join 
Adding DNS accounts 
Creating CN=MicrosoftDNS,CN=System,DC=samdom,DC=example,DC=com 
Creating DomainDnsZones and ForestDnsZones partitions 
Populating DomainDnsZones and ForestDnsZones partitions 
See /usr/local/samba/private/named.conf for an example configuration include file for BIND 
and /usr/local/samba/private/named.txt for further documentation required for secure DNS updates 
Setting up sam.ldb rootDSE marking as synchronized 
Fixing provision GUIDs 
A Kerberos configuration suitable for Samba 4 has been generated at /usr/local/samba/private/krb5.conf 
Once the above files are installed, your Samba4 server will be ready to use 
Server Role:           active directory domain controller 
Hostname:              samba 
NetBIOS Domain:        SAMDOM 
DNS Domain:            samdom.example.com 
DOMAIN SID:            S-1-5-21-1303498663-1180413870-568144912

Вернемся к файлу /etc/network/interfaces и исправим строку на

dns-nameservers 192.168.1.2

Перегрузим сеть

/etc/init.d/networking restart