Linux Windows Inter-operablity
|
|
|
- Beverly Riley
- 10 years ago
- Views:
Transcription
1 Linux Windows Inter-operablity Joseph Guarino Owner/Sr. Consultant Evolutionary IT CISSP, Healthcare IT+, LPIC, MCSE 2000/2003, PMP
2 Who is this dude? Joseph Guarino Working in IT for last 15+ years CEO/Sr. IT consultant with my own firm Evolutionary IT CISSP, Healthcare IT+, LPIC, MCSE, PMP, Toastmaster CL, ACS social.evolutionaryit.com
3 Place Nice!
4 Objectives State of the union for everyone Why is this relevant? FOSS Options Commercial Options
5 Inter-operablity Imperative Windows is 65%-90% of enterprise desktop market Linux and Unix are growing presence Very few environments are homogeneous Inter-operablity isn't a nice to have option
6 Homogeneity A myth in the real world!
7
8 Source: HitsLink (desktop, May 2012), IDC (server, Q1 2012), Gartner (mobile, May 2012), and IDC (March 2012).
9 Linux Owns HPC (High Performance Computing) Virtualization Cloud Embedded Many other key markets
10 Enterprise LAN Windows is often there
11 Open Source Interop
12 Defining Some Basics
13 UID/GID & SID User Identifier (UID) unique on any machine Group Identifier (GID) Users default group as defined /etc/group Windows SID Unique identifier correlates with UID/GID
14 NIS/NIS+ NIS Centralized authentication based on RPC. Security isn't the best. Trusted host security model NIS+ - Sun's (Oracle) evolutionary step from NIS Never really took off
15 Kerberos Network authentication via symmetric key cryptography NOT a directory service Widely available and supported on Linux Key element in AD (bastardized a bit)
16 LDAP Central store of information Protocol for accessing directory information over a network Central store for many other types of info Devices, Name, Address, Computer Account Info, Office number, Phone Number, etc,
17 Active Directory Centralized database of everything replicated to other domain controllers Centrally administer a windows network at a very granular basis via Group Policy Manages users, computer, printers, other devices Manage users, security, authentication, resources
18 AD Around since W2K Windows 2000 LDAP Authentication Kerberos (encrypts usernames/passwords on wire) AD relies on DNS Tied into DNS (DDNS) Slightly Microsoftized versions of Kerberos, DNS, LDAP
19 Some Want to Leverage AD Simplification Consolidation Cost Savings
20 Name Resolution
21 DNS Thankfully replace NIS and WINS Maps IP to machine and vice versa Bind, Samba DNS, etc. Alternatives to BIND are MaraDNS and PowerDNS
22 Windows DNS Integral to AD Most use it for AD and integrated resources But you can use 3rd party DNS in a number of ways
23 BIND Widely deployed DNS Server Can integrate into Windows AD DNS as primary (requires more work and gets little benefit) or delegated subdomain or even split brain configuration Supports DNSSEC for AD integrated zone adds sec to dynamic client updates
24 Assumptions For Sake Of Scope
25 No Dead Tech
26 There are supernumerary ways to integrate... No one right way for everyone
27
28 Samba 3.x Suite of daemons Since 1992 Name originates from SMB (Server Message Block) protocol used by MS Windows network file system Implementation of SMB/CIFS protocols File and print services
29 Samba 3.x Daemons smbd (file/print) nmbd (netbios name resolution) Windbind authentication to AD accounts (connects DC with Linux native authentication system PAM) no AD changes required SWAT (Web based GUI Administration)
30 Samba 3.x Integration into Windows Domain Not Active Directory! PDC (Primary Domain Controller) BDC to Samba PDC AD domain controller
31 Samba Print CUPS Samba printer share Linux has support for LPD/LPR, IPP Most printers have embedded print servers
32 Samba 4
33 Samba 4.x Version 4.x (12/11/12) brings AD compatible Domain Controller or join to existing DC Samba Active Directory Domain LDAP Server, Heimdal Kerberos Authentication, Dynamic DNS Group policy, Roaming profiles SMB2.1/3
34 Administering SAMBA
35 Administering Samba CLI Webmin (Samba Module) Gadmin Samba SWAT/SWAT2 System-config-samba
36 SWAT Samba Web Administration Tool for 3.x Official Part of Samba Suite Will remove any parameters (no longer supported) or comments are lost Supports SSL/TLS SWAT Website
37 SWAT 2 Specifically written for Samba 4.x SWAT 2 Python SWAT 2 Website
38 Windows RAT & GPMC Remote Administration Tools and Group Policy Management Console Window Vista RAT Windows 7 RAT Windows 8 RAT Windows GPMC
39 Baking Samba Solutions - Variables
40 Variables Authentication NIS, LDAP, Winbind, Kerberos, etc. Directory Services Many LDAP solutions, Windows AD, etc. NTP (Time) Ntp daemon, Windows, etc. Name Resolution (DNS) Bind, Windows DNS, etc. File/Print SAMBA, Windows SFU, Commercial variations of SAMBA
41 Samba Integration Choices NIS with SFU Winbind (authenticating directly via AD) LDAP for Linux client Samba auth for Windows LDAP sync to AD or meta directory pgina integrated with NIS, OpenLDAP, Kerberos Samba 4.x alone Commercial 3rd Party Applications Centrify, Beyond Trust, etc.
42 Few Examples
43 Windbind Windbind ties together DC with Linux authentication mechanism of Pluggable Authenication Modules (PAM) and NSS Name Service Switch ID Tracking & Name Resolution via NSS Mapping of ID's via idmap Effectively plugging into AD
44 389 Directory + Samba 389 Directory for authentication & directory services Two way sync to AD Samba for File/Print
45 Centrify Centrify Suite and Centrify-Enabled Samba
46 Pure Samba 4 No licensing headaches No closed No headaches
47 SAMBA Support Community IT Consulting Organizations Commercial Linux Vendors
48 LDAP Options
49 OpenLDAP Full featured open LDAP server Libraries implementing LDAP protocol, utils, tools, client Support for SSL/TLS and Kerberos SASL middle man for applications and authentication systems Strong cross platform support
50 OpenLDAP GUI's PhpLDAP Admin Webmin LDAP Admin (Windows) LDAP Administrator (commercial)
51 389 Directory Server 389 Directory Server (formerly Fedora Directory Server) Redhat community sponsored project Multi-master replication AD sync (user/group) Graphical interface
52 Red Hat Directory Server Red Hat's supported version of 389 Directory Server Runs on HP, Sun as well as RHEL AD Sync
53 Sun Java System Directory Server AKA Sun ONE Directory Server, iplanet Directory Server, Netscape Directory Server Supports Two way AD Sync Part of Oracle Directory Server Enterprise Edition Written in?
54 Microsoft SFU Services For Unix & Subsystem for UNIX-based Applications (SUA)
55 Microsoft SFU Services for Unix Unix subsystem and network services to Windows Uses Interix (POSIX-conformant UNIX subsystem for Windows Migration toolkit 3.5 EOL (End of Life)
56 Microsoft SFU Includes ~400 Unix utlities such as vi, ksh, csh, cat, awk, etc GCC,CDB X11 tools and libraries W2K3 Only (Not W2K3 R2 or >)
57 Microsoft SFU Base Utilities for Interix (BaseUtils; including X11R6 and X11R5 utilities) UNIX Perl for Interix (UNIXPerl) Interix SDK (InterixSDK; including headers and libraries for development and a wrapper for Visual Studio compiler) GNU Utilities for Interix (GNUUtils, again about 9 utilities) NIS Server for Windows (NIS) Password synchronization (PasswdSync) Windows Remote Shell Service (RshSvc) Telnet Server for Windows (TelnetServer) NFS User Name Mapping (Mapsvc) NFS Authentication Server (NFSServerAuth) PCNFS server (Pcnfsd) GNU SDK for Interix (GNUSDK; including gcc and g++) ActiveState Perl (Perl) NFS Client for Windows (NFSClient) NFS Gateway for Windows (NFSGateway) NFS Server for Windows (NFSServer)
58 Subsystem for UNIX-based Applications (SUA) Most of SFU components NFS, SUA/Interix, Identity Management for Unix Removed NFS, Username Mapping, NIS Server, Passwd Sync) W2K3 R2 - W2012, Client side Vista/Win7/Win8
59 Identity Management for Unix Integrates Windows into Unix/Linux Authentication via NIS Server Password synchronization W2K3 R2 W2012 >RFC Extends LDAP to contain other info like UID/GID
60 Formerly Likewise Focus on Privilege and Identity Management & Vulnerability Management
61 Likewise Open Now Beyond Trust PowerBroker Open
62 PowerBroker Open Allows Linux, Unix, Mac systems to join AD, password policies, cached credentials PBIS Agent No AD schema or attribute changes required (schema=set of rules that control the types of information or objects that the server can hold) GUI Domain Join Tool PAM, NSS, Kerberos, NTLM, etc. Integrates with Samba
63 Beyond Trust PowerBroker Identity Services for Active Directory Bridging
64 Beyond Trust PBIS for AD Bridging PowerBroker Identity Services for Active Brings Linux, Unix into AD Directory Bridging & Group Policy Maps UIDs and GIDs to AD No change to AD Schema (schema=set of rules that control the types of information or objects that the server can hold) Integrates with Samba
65 Beyond Trust PBIS for AD Bridging SSO with Kerberos, LDAP for Samba, SSH, Jboss, MySQL Oracle, etc. Graphical web based management console Reporting features for managing and viewing privileges Helps w/ compliance w PCI, DSS, SOX, HIPPA
66 Centralized Management & User Administration SSO, Auditing, etc.
67 Centrify SSO AD Integration and extension of group policies Brings AD services to Linux/Unix (OSX) Cloud Aware
68 Centrify Express Suite Core component of AD integration suite Base level product other commercial versions have more features/integration options Direct Control Express, Direct Manage Express, some Open Source Tools Free as in price with some FOSS components
69 Centrify Open Source Tools Aid in integration into Centrify Suite and AD Centrify-Enabled Samba Centrify-Enabled OpenSSH Centrify-Enabled PuTTY Centrify-Enabled Kerberos Tools
70 Centrify Suite Editions
71 Other Awesome Inter-op Related Misc
72 pgina Open Source Let's you plug windows directly into alternative authentication options NIS, OpenLDAP and others
73 Exchange Alternatives OpenXChange Citadel Zimbra Kolab
74 Cygwin Complete set of Unix tools on Windows Linux-like environment for Windows Red Hat sponsored
75 Running Local Windows Apps Wine Codeweavers Crossover Wine 3rd Party Apps
76 Virtualization KVM Xen Virtual Box VMWare Hyper-V
77 Thank You!
78 Let's Connect Joseph Guarino Hope to see you at SCALE 12X!
Authentication in a Heterogeneous Environment
Authentication in a Heterogeneous Environment Integrating Linux (and UNIX and Mac) Identity Management in Microsoft Active Directory Mike Patnode VP of Technology Centrify Corporation [email protected]
Integrating UNIX and Linux with Active Directory. John H Terpstra
Integrating UNIX and Linux with Active Directory John H Terpstra CTO, PrimaStasys Inc. [email protected] Slide 1 Agenda Definition of the Integration Problem Technical Background Review of Solution Choices
Integration with Active Directory. Jeremy Allison Samba Team
Integration with Active Directory Jeremy Allison Samba Team Benefits of using Active Directory Unlike the earlier Microsoft Windows NT 4.x Domain directory service which used proprietary DCE/RPC calls,
Integrating Red Hat Enterprise Linux 6 with Microsoft Active Directory Presentation
Integrating Red Hat Enterprise Linux 6 with Microsoft Active Directory Presentation Agenda Overview Components Considerations Configurations Futures Summary What is needed? Thorough understanding components,
Interoperability Update: Red Hat Enterprise Linux 7 beta and Microsoft Windows
Interoperability Update: Red Hat Enterprise 7 beta and Microsoft Windows Mark Heslin Principal Systems Engineer Red Hat Systems Engineering Dmitri Pal Senior Engineering Manager Red Hat Software Engineering
Red Hat Enterprise ipa
Red Hat Enterprise ipa Introduction Red Hat Enterprise IPA enables your organization to comply with regulations, reduce risk, and become more efficient. Simply and centrally manage your Linux/Unix users
IPA Identity, Policy, Audit Karl Wirth, Red Hat Kevin Unthank, Red Hat
IPA Identity, Policy, Audit Karl Wirth, Red Hat Kevin Unthank, Red Hat What is IPA? A) India Pale Ale B) Identity, Policy, and Audit C) An open source project D) A Red Hat solution offering E) All of the
Integrating Linux systems with Active Directory
Integrating Linux systems with Active Directory Dmitri Pal Engineering Director, Red Hat, Inc. Security Camp at BU Agenda Problem statement Aspects of integration Integration options Recommendations Security
Univention Corporate Server. Operation of a Samba domain based on Windows NT domain services
Univention Corporate Server Operation of a Samba domain based on Windows NT domain services 2 Table of Contents 1. Components of a Samba domain... 4 2. Installation... 5 3. Services of a Samba domain...
Windows Security and Directory Services for UNIX using Centrify DirectControl
SOLUTION GUIDE CENTRIFY CORP. SEPTEMBER 2005 Windows Security and Directory Services for UNIX using Centrify DirectControl With Centrify, you can now fully leverage your investment in Active Directory
Integrating Lustre with User Security Administration. LAD 15 // Chris Gouge // 2015 Sep
Integrating Lustre with User Security Administration LAD 15 // Chris Gouge // 2015 Sep Topics User Security in Linux POSIX Permissions The Requirement for Upcall in Lustre Upcall Utilities Overview Upcall
Mac OS X. Playing nice in a heterogeneous world PRESENTED BY:Charles Edge 318.COM
Mac OS X Playing nice in a heterogeneous world PRESENTED BY:Charles Edge 318.COM Whoami Charles Edge, MCSE, CCNA, ACSA, Network+ Partner, Three18 - Consulting firm in Santa Monica, California Author, Mac
FreeIPA Cross Forest Trusts
Alexander Bokovoy Andreas Schneider May 10th, 2012 1 FreeIPA What is FreeIPA? Cross Forest Trusts 2 Samba 3 Demo Talloc Tutorial Pavel Brezina wrote Talloc tutorial! http://talloc.samba.org/
CSE 265: System and Network Administration
CSE 265: System and Network Administration Making mixed environments work Sharing Resources Common authentication Network name resolution Printers Files Making Windows look like Linux and vice versa Add
FreeIPA 3.3 Trust features
FreeIPA 3.3 features Sumit Bose, Alexander Bokovoy March 2014 FreeIPA and Active Directory FreeIPA and Active Directory both provide identity management solutions on top of the Kerberos infrastructure
Samba's AD DC: Samba 4.2 and Beyond. Presented by Andrew Bartlett of Catalyst // 2014-09
Samba's AD DC: Samba 4.2 and Beyond Presented by Andrew Bartlett of Catalyst // 2014-09 About me Andrew Bartlett Samba Team member since 2001 Working on the AD DC since 2006 These views are my own, but
Mac OS X Directory Services
Mac OS X Directory Services Agenda Open Directory Mac OS X client access Directory services in Mac OS X Server Redundancy and replication Mac OS X access to other directory services Active Directory support
Centralized Management for UNIX, Linux, Mac and Java with Active Directory and DirectControl
WHITE PAPER CENTRIFY CORP. APRIL 2006 Centralized Management for UNIX, Linux, Mac and Java with Active Directory and DirectControl Centrify DirectControl delivers secure access control and centralized
Centralized Identity and Access Management of Cross-Platform Systems and Applications with Active Directory and the Centrify Suite
WHITE PAPER CENTRIFY CORP. OCTOBER 2008 Centralized Identity and Access Management of Cross-Platform Systems and Applications with Active Directory and the Centrify Suite The Centrify Suite is an integrated
Setting up a DNS MX Record for mail.corp.com p. 327 Installing Fedora on the Front-End Mail Server with the Postfix and SpamAssassin Packages
Introduction Installation and Getting Around p. 1 The Story and the Roadmap p. 2 Installing Windows p. 5 p. xvi Windows Server 2003 + SP1 and Windows XP + SP2: The Right Windows (at Least for This p. 6Book)
Using SUSE Linux Enterprise Desktop with Microsoft * Active Directory Infrastructure
Technical White Paper DESKTOP www.novell.com Using SUSE Linux Enterprise Desktop with Microsoft * Active Directory Infrastructure * Using SUSE Linux Enterprise Desktop with Microsoft Active Directory Infrastructure
LinuxCon North America
LinuxCon North America Enterprise Identity Management with Open Source Tools Dmitri Pal Sr. Engineering Manager Red Hat, Inc. 09.16.2013 Context What is identity management? 2 LinuxCon North America Context
Handling POSIX attributes for trusted Active Directory users and groups in FreeIPA
Handling POSIX attributes for trusted Active Directory users and groups in FreeIPA Alexander Bokovoy May 21th, 2015 Samba Team / Red Hat 0 A crisis of identity (solved?) FreeIPA What is
Identity Management based on FreeIPA
Identity Management based on FreeIPA SLAC 2014 Thorsten Scherf Red Hat EMEA What is an Identity Management System (IdM) An IdM system is a set of services and rules to manage the users of an organization
Building Open Source Identity Management with FreeIPA. Martin Kosek [email protected] http://www.oss4b.it/
Building Open Source Identity Management with FreeIPA Martin Kosek [email protected] http:/// OSS4B 2013 - Open Source Software for Business 19-20 September 2013, Monash University Prato Centre Prato,
Integrated Approach to User Account Management
Mission Critical Enterprise Systems Symposium 2006 Integrated Approach to User Account Management Kesselman, Glenn and Smith, William Lockheed Martin Mission Services Quest Software Public Sector October
Red Hat Identity Management
Red Hat Identity Management Overview Thorsten Scherf Senior Consultant Red Hat Global Professional Services Agenda What is Red Hat Identity Management? Main values Architecture Features Active Directory
Open Directory. Apple s standards-based directory and network authentication services architecture. Features
Open Directory Apple s standards-based directory and network authentication services architecture. Features Scalable LDAP directory server OpenLDAP for providing standards-based access to centralized data
Red Hat Enterprise IPA Identity & Access Management for Linux and Unix Environments. Dragos Manac 01.10.2008
Red Hat Enterprise IPA Identity & Access Management for Linux and Unix Environments Dragos Manac 01.10.2008 Agenda The Need for Identity & Access Management Enterprise IPA Overview Pricing Questions to
identity management in Linux and UNIX environments
Whitepaper identity management in Linux and UNIX environments EXECUTIVE SUMMARY In today s IT environments everything is growing, especially the number of users, systems, services, applications, and virtual
Identity Management: The authentic & authoritative guide for the modern enterprise
Identity Management: The authentic & authoritative guide for the modern enterprise Ellen Newlands, Product Manager Dmitri Pal, Director, Engineering 06-26-15 Goals of the Presentation Introduce Identity
AD Integration options for Linux Systems
AD Integration options for Linux Systems Overview Dmitri Pal Developer Conference. Brno. 2013 Agenda Problem statement Aspects of integration Options Questions Problem Statement For most companies AD is
CONFIGURING ACTIVE DIRECTORY IN LIFELINE
White Paper CONFIGURING ACTIVE DIRECTORY IN LIFELINE CONTENTS Introduction 1 Audience 1 Terminology 1 Test Environment 2 Joining a Lenovo network storage device to an AD domain 3 Importing Domain Users
Cross-Realm Trust Interoperability, MIT Kerberos and AD
Cross-Realm Trust Interoperability, MIT Kerberos and AD Dmitri Pal Sr. Engineering Manager Red Hat Inc. 10/27/2010 1 INTERNAL ONLY PRESENTER NAME What is our focus? Traditional view on Kerberos interoperability
Red Hat Enterprise Identity (IPA) Centralized Management of Identities & Authentication
Red Hat Enterprise Identity (IPA) Centralized of Identities & Authentication Dmitri Pal Sr. Engineering Manager, Red Hat Inc. Robert Crittenden Sr. Engineer, Red Hat Inc. 05/06/11 Agenda What is IPA? Main
Bring Linux into Microsoft s ADS
Bring Linux into Microsoft s ADS A lecture by Jens Kühnel Jens Kühnel Konsult und Training Bad Vilbel Germany About the speaker Jens Kühnel computer freak since age 8 Linux user since 1995 freelancer since
FreeIPA - Open Source Identity Management in Linux
FreeIPA - Open Source Identity Management in Linux Martin Košek Supervisor, Software Engineering, Red Hat ORS 2013, Karviná 1 Identity Management What is identity management? Identity
Active Directory and Linux Identity Management
Active Directory and Linux Identity Management Published by the Open Source Software Lab at Microsoft. December 2007. Special thanks to Chris Travers, Contributing Author to the Open Source Software Lab.
Security with LDAP. Andrew Findlay. February 2002. Skills 1st Ltd www.skills-1st.co.uk. [email protected]
Security with LDAP Andrew Findlay Skills 1st Ltd www.skills-1st.co.uk February 2002 Security with LDAP Applications of LDAP White Pages NIS (Network Information System) Authentication Lots of hype How
Centrify-Enabled Samba
CENTRIFY CORP. Centrify-Enabled Samba DECEMBER 2009 The easy-to-manage enterprise solution for Active Directory-enabled Samba file sharing ABSTRACT Samba is one of the most popular open source technologies
Communication ports used by Citrix Technologies. July 2011 Version 1.5
Communication ports used by Citrix Technologies July 2011 Version 1.5 Overview Introduction This document provides an overview of ports that are used by Citrix components and must be considered as part
Using Single Sign-on with Samba. Appendices. Glossary. Using Single Sign-on with Samba. SonicOS Enhanced
SonicOS Enhanced Using Single Sign-on with Samba Using Single Sign-on with Samba Introduction Recommended Versions Caveats SonicWALL Single Sign-on in Windows SonicWALL Single Sign-on with Samba Checking
ONEFS MULTIPROTOCOL SECURITY UNTANGLED
White Paper ONEFS MULTIPROTOCOL SECURITY UNTANGLED Abstract This paper describes the role that identity management, authentication, and access control play in the security system of the EMC Isilon OneFS
Managing Identity & Access in On-premise and Cloud Environments. Ellen Newlands Identity Management Product Manager Red Hat, Inc. 06.27.
Managing Identity & Access in On-premise and Cloud Environments Ellen Newlands Identity Management Product Manager Red Hat, Inc. 06.27.12 Agenda What is identity and access management Why should you care
What s New in Centrify Server Suite 2013 Update 2
CENTRIFY SERVER SUITE 2013.2 DATA SHEET What s New in Centrify Server Suite 2013 Update 2 The new Centrify Server Suite 2013 Update 2 (2013.2) builds on the core enhancements Centrify introduced in Server
ICANWK504A Design and implement an integrated server solution
ICANWK504A Design and implement an integrated server solution Release: 1 ICANWK504A Design and implement an integrated server solution Modification History Release Release 1 Comments This Unit first released
Active Directory and DirectControl
WHITE PAPER CENTRIFY CORP. Active Directory and DirectControl APRIL 2005 The Right Choice for Enterprise Identity Management and Infrastructure Consolidation ABSTRACT Microsoft s Active Directory is now
Migration of Windows Intranet domain to Linux Domain Moving Linux to a Wider World
Journal of Basic and Applied Engineering Research pp. 55-59 Krishi Sanskriti Publications http://www.krishisanskriti.org/jbaer.html Migration of Windows Intranet domain to Linux Domain Moving Linux to
Windows Services. Support Windows and mixed-platform workgroups with high-performance, affordable network services. Features
Windows Services Support Windows and mixed-platform workgroups with high-performance, affordable network services. Features File and print services Integrated Samba 3 for native SMB/CIFS protocol support
Samba on HP StorageWorks Enterprise File Services (EFS) Clustered File System Software
Samba on HP StorageWorks Enterprise File Services (EFS) Clustered File System Software Installation and integration guide Abstract... 2 Introduction... 2 Application overview... 2 Application configuration...
Integrating Red Hat Enterprise Linux 6 with Active Directory. Mark Heslin Principal Software Engineer
Integrating Red Hat Enterprise Linux 6 with Active Directory Mark Heslin Principal Software Engineer Version 1.5 March 2014 1801 Varsity Drive Raleigh NC 27606-2072 USA Phone: +1 919 754 3700 Phone: 888
Using Samba to play nice with Windows. Bill Moran Potential Technologies
Using Samba to play nice with Windows Bill Moran Potential Technologies SMB (Server Messenger Block) Now called CIFS (Common Internet File System) Historically one of Microsoft's core network protocls,
CAC AND KERBEROS FROM VISION TO REALITY
CAC AND KERBEROS FROM VISION TO REALITY Mil OSS Conference 2011 Dmitri Pal Sr. Engineering Manager Red Hat Inc. Aug 31, 2011 Outline Setting up context... Card authentication now Open issues Pieces of
Samba. Samba. Samba 2.2.x. Limitations of Samba 2.2.x 1. Interoperating with Windows. Implements Microsoft s SMB protocol
Samba Samba Interoperating with Windows Nick Urbanik Copyright Conditions: GNU FDL (seehttp://www.gnu.org/licenses/fdl.html) A computing department Implements Microsoft s SMB protocol
Storage / SAN / NAS. Jarle Bjørgeengen University of Oslo / USIT. October 18, 2011
Storage / SAN / NAS Jarle Bjørgeengen University of Oslo / USIT October 18, 2011 I m available in room PS223 on Fridays... except those weeks I have lectures other weekdays... like this week. Discuss topics
USING USER ACCESS CONTROL LISTS (ACLS) TO MANAGE FILE PERMISSIONS WITH A LENOVO NETWORK STORAGE DEVICE
White Paper USING USER ACCESS CONTROL LISTS (ACLS) TO MANAGE FILE PERMISSIONS WITH A LENOVO NETWORK STORAGE DEVICE CONTENTS Executive Summary 1 Introduction 1 Audience 2 Terminology 2 Windows Concepts
Advancements in Linux Authentication and Authorisation using SSSD
Managing an Enterprise Series and Authorisation using SSSD Lawrence Kearney Enterprise Workgroup and Service Analyst e. [email protected] w. www.lawrencekearney.com How SSSD came to our infrastructure
Allowing Linux to Authenticate to a Windows 2003 AD Domain. Prepared by. Thomas J. Munn, CISSP 11-May-06
Allowing Linux to Authenticate to a Windows 2003 AD Domain Prepared by Thomas J. Munn, CISSP 11-May-06 Table of Contents: Table of Contents:... 2 Introduction... 3 Requirements... 4 Installing the Necessary
Instructions for Adding a MacOS 10.4.x Client to ASURITE
Instructions for Adding a MacOS 10.4.x Client to ASURITE Before beginning, it would be prudent not to have an account with the same username and password as your Active Directory account. For DHCP Workstations:
Identity and Access Management Integration with PowerBroker. Providing Complete Visibility and Auditing of Identities
Identity and Access Management Integration with PowerBroker Providing Complete Visibility and Auditing of Identities Table of Contents Executive Summary... 3 Identity and Access Management... 4 BeyondTrust
Enabling Active Directory Authentication with ESX Server 1
1 Enabling Active Directory Authentication with ESX Server 1 This document provides information about how to configure ESX Server to use Active Directory for authentication. ESX Server system includes
How To Manage A Network On A Linux Computer (Vnx) On A Windows 7 Computer (Windows) On An Ipod Or Ipod (Windows 7) On Your Ipod Computer (For Windows) On The Network (For Linux)
EMC VNX Series Configuring VNX Naming Services P/N 300-011-855 REV A01 EMC Corporation Corporate Headquarters: Hopkinton, MA 01748-9103 1-508-435-1000 www.emc.com 2 of 80 Contents Introduction..................................................5
IDENTITIES, ACCESS TOKENS, AND THE ISILON ONEFS USER MAPPING SERVICE
White Paper IDENTITIES, ACCESS TOKENS, AND THE ISILON ONEFS USER MAPPING SERVICE Abstract The OneFS user mapping service combines a user s identities from different directory services into a single access
SSSD. Client side identity management. LinuxAlt 2012 Jakub Hrozek 3. listopadu 2012
Client side identity management LinuxAlt 2012 Jakub Hrozek 3. listopadu 2012 Section 1 Centralized user databases Centralized user databases User accounts in a large environment it is not practical to
How to build an Identity Management System on Linux. Simo Sorce Principal Software Engineer Red Hat, Inc.
How to build an Identity Management System on Linux Simo Sorce Principal Software Engineer Red Hat, Inc. What is an Identity Management System and why should I care? In a nutshell: an IdM system is a set
Unifying Authorization Models
Unifying Authorization Models Merging /etc/group and 'Domain Users' Gerald Carter Centeris [email protected] http://www.samba.org/ Slide 1 Copyright G. Carter, 2006 Outline http://samba.org/~jerry/slides/lwny07_2up.pdf
Communication Ports Used by Citrix Technologies. April 2011 Version 1.5
Communication Ports Used by Citrix Technologies April 2011 Version 1.5 Overview Introduction This document provides an overview of ports that are used by Citrix components and must be considered as part
Securing VMware Virtual Infrastructure with Centrify's Identity and Access Management Suite
WHITE PAPER CENTRIFY CORP. MARCH 2009 Securing VMware Virtual Infrastructure with Centrify's Identity and Access Management Suite Securing and auditing administrative access to the Virtual Infrastructure
SerNet. Samba Status Update. Linuxkongress Hamburg October 10, 2008. Volker Lendecke SerNet Samba Team. Network Service in a Service Network
Samba Status Update Linuxkongress Hamburg October 10, 2008 Volker Lendecke SerNet Samba Team 10/2008, Volker Lendecke, SerNet Service Network GmbH, Seite 1 Volker Lendecke Co-founder SerNet - Service Network
Going in production Winbind in large AD domains today. Günther Deschner [email protected]. (Red Hat / Samba Team)
Going in production Winbind in large AD domains today Günther Deschner [email protected] (Red Hat / Samba Team) Agenda To go where no one has gone before Winbind scalability Find Domain Controllers Active Directory
LDAP-UX Client Services B.04.10 with Microsoft Windows Active Directory Administrator's Guide
LDAP-UX Client Services B.04.10 with Microsoft Windows Active Directory Administrator's Guide HP-UX 11i v1, v2 and v3 HP Part Number: J4269-90074 Published: E0407 Edition: Edition 6 Copyright 2007 Hewlett-Packard
How To Configure Vnx 7.1.1 (Vnx) On A Windows-Only Computer (Windows) With A Windows 2.5 (Windows 2.2) (Windows 3.5) (Vnet) (Win
EMC é VNX dm Series Release 7.1 Configuring VNX dm User Mapping P/N 300-013-811 Rev 01 EMC Corporation Corporate Headquarters: Hopkinton, MA 01748-9103 1-508-435-1000 www.emc.com Copyright â 2009-2012
OnCommand Performance Manager 1.1
OnCommand Performance Manager 1.1 Installation and Setup Guide For Red Hat Enterprise Linux NetApp, Inc. 495 East Java Drive Sunnyvale, CA 94089 U.S. Telephone: +1 (408) 822-6000 Fax: +1 (408) 822-4501
Testing New Applications In The DMZ Using VMware ESX. Ivan Dell Era Software Engineer IBM
Testing New Applications In The DMZ Using VMware ESX Ivan Dell Era Software Engineer IBM Agenda Problem definition Traditional solution The solution with VMware VI Remote control through the firewall Problem
GL-275: Red Hat Linux Network Services. Course Outline. Course Length: 5 days
GL-275: Red Hat Linux Network Services Course Length: 5 days Course Description: The GL275 is an expansive course that covers a wide range of network services useful to every organization. Special attention
How To Use Directcontrol With Netapp Filers And Directcontrol Together
Application Note Using DirectControl with Network Appliance Filers Published: June 2006 Abstract This Application Note describes the integration between Network Appliance servers and Centrify DirectControl
What we are going to cover...
Introduction to WolfTech Active Directory 6 October 2011 10am-12pm Daniels 201 http://activedirectory.ncsu.edu What we are going to cover... What AD is and isn't The WolfTech implementation of AD Management
ENTERPRISE LINUX NETWORKING SERVICES
ENTERPRISE LINUX NETWORKING SERVICES The is an expansive course that covers a wide range of network services useful to every organization. Special attention is paid to the concepts needed to implement
Centrify Server Suite, Standard Edition
CENTRIFY SERVER SUITE SUPPORTED PLATFORMS Centrify Server Suite, Standard Edition Centrify Server Suite, Standard Edition, centralizes authentication and privileged user access across disparate systems
Distributed File System
Petru Maior University, Târgu-Mureș Science Department Information Technolgy Master Course Distributed File System Students: Bardosi Florin Cifor Crina Danciu Ioana Hintea Dan Alexandru Table of Contents
OVERVIEW OF TYPICAL WINDOWS SERVER ROLES
OVERVIEW OF TYPICAL WINDOWS SERVER ROLES Before you start Objectives: learn about common server roles which can be used in Windows environment. Prerequisites: no prerequisites. Key terms: network, server,
Vintela Authentication from SCO Release 2.2. System Administration Guide
Vintela Authentication from SCO Release 2.2 System Administration Guide November 19, 2003 COPYRIGHT (c) Copyright 2003 Vintela, Inc. All Rights Reserved. (c) Copyright 2003 The SCO Group, Inc. Vintela
MobaXTerm: A good gnome-terminal like tabbed SSH client for Windows / Windows Putty Tabs Alternative
MobaXTerm: A good gnome-terminal like tabbed SSH client for Windows / Windows Putty Tabs Alternative Author : admin Last 10+ years I worked on GNU / Linux as Desktop. Last 7 years most of my SSH connections
Charles Firth [email protected]. Managing Macs in a Windows World
Charles Firth [email protected] Managing Macs in a Windows World Prerequisites Familiarity with Windows Active Directory networks Interest in Macintosh OSX integration and support Basic understanding
Active Directory Integration
SwiftStack Gateway Active Directory Integration Summary There are two main ways of integrating the SwiftStack Gateway with Microsoft Active Directory authentication: RID, using winbind LDAP For most implementations
Samba and Vista with IPv6
Samba and Vista with IPv6 Dr David Holder CEng MIET MIEEE [email protected] - All rights reserved Quick Poll Who is using IPv6? Who is using IPv6 in a production environment? Who wants to use IPv6
YubiRADIUS Deployment Guide for corporate remote access. How to Guide
YubiRADIUS Deployment Guide for corporate remote access How to Guide May 15, 2012 Introduction Disclaimer Yubico is the leading provider of simple, open online identity protection. The company s flagship
Fedora 18 FreeIPA: Identity/ Policy Management
Fedora 18 FreeIPA: Identity/ Policy Management Managing Identity and Authorization Policies for Linux-Based Infrastructures Ella Deon Lackey FreeIPA: Identity/Policy Management Fedora 18 FreeIPA: Identity/Policy
Centrify Server Suite 2014
Centrify Server Suite 2014 Administrator s Guide for Linux and UNIX June 2014 Centrify Corporation Legal notice This document and the software described in this document are furnished under and are subject
NETASQ SSO Agent Installation and deployment
NETASQ SSO Agent Installation and deployment Document version: 1.3 Reference: naentno_sso_agent Page 1 / 20 Copyright NETASQ 2013 General information 3 Principle 3 Requirements 3 Active Directory user
Integrating Ubuntu 8.04 LTS into Microsoft Active Directory using Likewise Open
Technical White Paper Integrating Ubuntu 8.04 LTS into Microsoft Active Directory using Likewise Open By Etienne Goyer August 2009 Copyright Canonical 2009 Overview Microsoft Active Directory is a widely-deployed
FreeIPA v3: Trust Basic trust setup
FreeIPA Training Series FreeIPA v3: Trust Basic trust setup Sumit Bose January 2013 How to set up trust between FreeIPA and AD Enable FreeIPA for Trust # ipa-adtrust-install Add Trust to AD # ipa trust-add...
Collax Active Directory
Collax Active Directory Howto This howto describes the configuration of a Collax server for joining a Windows Active Directory Service (ADS) domain. Furthermore, this howto focuses on how to set up the
