|
UNIX USER 2003ǯ12·î¹æ·ÇºÜ
Part 1 2.2·Ï¤È3.0·Ï¤Î¥Ð¡¼¥¸¥ç¥óÁªÂò´ð½à
Windows¥Í¥Ã¥È¥ï¡¼¥¯¤Ø¤Î»²²Ã
Samba¤ÏUNIX/Linux¥Þ¥·¥ó¤ÈWindows¥Í¥Ã¥È¥ï¡¼¥¯¤È¤ÎÀܳÀ¤ò¼Â¸½¤¹¤ë¤¿¤á¡¢Windows¤Î¥Õ¥¡¥¤¥ë¥µ¡¼¥Ð¡¼/¥×¥ê¥ó¥È¥µ¡¼¥Ð¡¼µ¡Ç½¤ò¼ÂÁõ¤·¤¿¥ª¡¼¥×¥ó¥½¡¼¥¹¥½¥Õ¥È¥¦¥§¥¢¤À¡£
Samba3.0 ¤ÏɬÍפ«¡©
Ť¤Ç¯·î¤ò¤«¤±¤ÆÂÔ¤Á¤ËÂԤä¿Samba 3.0¤À¤¬¡¢¤¹¤Ù¤Æ¤Î¥æ¡¼¥¶¡¼¤Ë¤È¤Ã¤ÆºÇŬ¤ÊÁªÂò¤Ç¤¢¤ë¤È¤Ï¸Â¤é¤Ê¤¤¡£¤½¤³¤Ç¿·µ¡Ç½¤Î¾ÜºÙ¤Ë¤Ä¤¤¤Æ¿¨¤ì¤ëÁ°¤Ë¡¢Samba 3.0¤ÎɬÍ×À¤Ë¤Ä¤¤¤Æ³Îǧ¤·¤Æ¤ª¤¯¡£
Samba3.0 ¤Î¿·µ¡Ç½
¤½¤ì¤Ç¤Ï¡¢Samba 3.0¤Î¿·µ¡Ç½¤Î¾ÜºÙ¤Ë¤Ä¤¤¤Æ¾Ò²ð¤·¤è¤¦¡£
Samba 2.2¤Ç¥µ¥Ý¡¼¥È¤¹¤ë¥É¥á¥¤¥ó»²²Ãµ¡Ç½¤Ï¡Ê¥×¥í¥È¥³¥ëŪ¤Ë¤Ï¡ËWindows NT 4.0ÁêÅö¤Î¤â¤Î¤Ç¤¢¤ê¡¢Active Directory¡Ê°Ê²¼AD¡Ë¥É¥á¥¤¥ó¤Ë¤â»²²Ã¤Ç¤¤ë¤¬¡¢¤½¤ÎºÝ¤ÏNTLM¡Ê¥Ï¥Ã¥·¥å¥Ñ¥¹¥ï¡¼¥É¤Ë¤è¤ë¡Ëǧ¾Ú¤È¤Ê¤ë¡£º£²ó¤ÎSamba 3.0¤Ç¤Ï¡¢Windows 2000ÁêÅö¤ÎKerberos¡Ê¥Á¥±¥Ã¥ÈÊý¼°¡Ëǧ¾Ú¤¬ÍøÍѲÄǽ¤È¤Ê¤ë¡£¥»¥¥å¥ê¥Æ¥£¤ò½Å»ë¤¹¤ë¥æ¡¼¥¶¡¼¤Ë¤È¤Ã¤Æ¤ÏÍÍѤʵ¡Ç½¤À¡£
Samba 2.2¤Î¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥éµ¡Ç½¤ÏWindows NT 4.0¤ò¥Ù¡¼¥¹¤Ë³«È¯¤µ¤ì¤Æ¤¤¤ë¤â¤Î¤Î¡¢Windows¥¯¥é¥¤¥¢¥ó¥È¤È¤ÎÄÌ¿®¤Ç»ÈÍѤµ¤ì¤ëʸ»ú¥³¡¼¥É¤ÏWindows 9x¤ÈƱ¤¸¥·¥Õ¥ÈJIS¤Ç¤¢¤ë¡£¤³¤Î¤¿¤á¡¢°ìÉô¤ÎWindows¥¢¥×¥ê¥±¡¼¥·¥ç¥ó¤Ç¤Ï¸ß´¹À¤ÎÌäÂ꤬ȯÀ¸¤·¤Æ¤¤¤¿¡£
¡Ú¼Â¹ÔÎã1¡Û
C:\> net use n: \\¥µ¡¼¥Ð¡¼Ì¾\¶¦Í̾
C:\> n:
N:\> mkdir 123456789
N:\> cd 123456789
N:\123456789> mkdir ´Á»úʸ»ú
N:\123456789> cd ´Á»úʸ»ú
N:\123456789\´Á»úʸ»ú5687> l
¢¬Í¾Ê¬¤Ê¿ô»ú¤¬Æþ¤ë
Samba 2.2¤Ç¤Ï¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤È¤·¤Æsmbpasswd¡¢TDB¡¢LDAP¤Ê¤É¤¬ÍøÍѤǤ¤¿¤¬¡¢LDAPµ¡Ç½¤ò͸ú¤Ë¤·¤Æ¥³¥ó¥Ñ¥¤¥ë¤¹¤ë¤È¡¢LDAP°Ê³°¤Î¥æ¡¼¥¶¡¼´ÉÍýµ¡¹½¤¬»ÈÍѤǤ¤Ê¤¯¤Ê¤Ã¤¿¡£¤½¤Î¤¿¤á¡¢¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤òÀÚ¤êʬ¤±¤ë¤Ë¤Ï¡¢¤½¤ì¤¾¤ì¤Î´Ä¶¤ò¹½ÃÛ¤·¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£¤·¤«¤·Samba 3.0¤Ç¤Ï¡¢¤³¤Î¤è¤¦¤Êºî¶È¤ÏÉÔÍפȤʤꡢsmb.conf¤Îpassdb backend¥Ñ¥é¥á¡¼¥¿¤À¤±¤ÇÀÚ¤êÂØ¤¨¤é¤ì¤ë ¡Úɽ2¡Û¡£¤Ê¤ª¡¢2.2¤Î¥Ç¥Õ¥©¥ë¥ÈÀßÄê¤ÈƱ¤¸¾õÂ֤ˤ¹¤ë¤Ë¤Ï¡¢ passdb backend = smbpasswd
¤È¤·¤Æ¤ª¤±¤ÐÎɤ¤¡£¤³¤ì¤Ë¤è¤Ã¤Æ¡¢½¾Íè¤É¤ª¤ê/etc/samba/smbpasswd¡Ê¤È/etc/passswd¡Ë¤ò»²¾È¤¹¤ë¡£
Windows¤Î¥Õ¥¡¥¤¥ë̾¤Ë¤Ï¡¢DOS»þÂ夫¤é¤Î̾»Ä¤Ç¤¢¤ë8 . 3·Á¼°¤Î¥·¥Õ¥ÈJ I S¥³¡¼¥É¤Çɽ¸½¤µ¤ì¤ëS F N¡ÊShort File Name¡Ë¤ÈWindows NT¤«¤é¥µ¥Ý¡¼¥È¤µ¤ì¤¿Unicode¤Çɽ¸½¤µ¤ì¤ëLFN¡ÊLong File Name¡Ë¤Î2¼ïÎब¸ºß¤¹¤ë¡£¤³¤ì¤ËÂн褹¤ë¤¿¤á¡¢Samba¤Ë¤ÏUNIX/Linux¾å¤Î¥Õ¥¡¥¤¥ë̾¤«¤éSFN¤ª¤è¤ÓLFN¤òÀ¸À®¤¹¤ë̾Á°¥Þ¥ó¥°¥ê¥ó¥°µ¡Ç½¡ÊName Mangling¡Ë¤¬¼ÂÁõ¤µ¤ì¤Æ¤¤¤ë¡£½¾Íè¤ÎSamba 2.2¤Ç¤ÏÊÑ´¹¥¢¥ë¥´¥ê¥º¥à¤¬Ã±½ã¡¢¤«¤ÄɬÍפʤȤ¤ËÀ¸À®¤µ¤ì¤ë¤¿¤á¡¢SFN¤¬±Ê³Ū¤Ç¤Ê¤¯¡¢°ìÉô¤Î¥×¥í¥°¥é¥à¤ÇÌäÂ꤬ȯÀ¸¤·¤¿¡£
Windows¤ËÉÕ°¤¹¤ë´ÉÍýÍѤÎnet¥³¥Þ¥ó¥É¤¬¡¢Samba¤Ç¤âɸ½à¥µ¥Ý¡¼¥È¤µ¤ì¤¿¡£¤³¤Î¥³¥Þ¥ó¥É¤Ë¤è¤Ã¤Æ¡¢Samba¥µ¡¼¥Ð¡¼¤ÈWindows¥µ¡¼¥Ð¡¼¡¢¤¤¤º¤ì¤ËÂФ·¤Æ¤â
¡Úɽ3¡Û
¤Î¤è¤¦¤ÊÁàºî¤¬²Äǽ¤È¤Ê¤Ã¤¿¡£ Samba 2.2¤ÇWinbind¤òÍøÍѤ·¤ÆWindows¥É¥á¥¤¥ó¤Ë¥æ¡¼¥¶¡¼´ÉÍýµ¡¹½¤òǤ¤»¤¿¾ì¹ç¡¢Windows¤ÎRID¡ÊRelative ID¡§ÁêÂм±Ê̻ҡˤÈLinux¤ÎUID/GID¤Î¥Þ¥Ã¥Ô¥ó¥°¤Ï¥µ¡¼¥Ð¡¼¤´¤È¤Ë¹Ô¤ï¤ì¤ë¤¿¤á¡¢Á´¥Þ¥·¥ó¤Ë¤ª¤¤¤ÆÆ±°ì¥æ¡¼¥¶¡¼¤¬Æ±¤¸ID¤Ë¤Ê¤ë¤È¤Ï¸Â¤é¤Ê¤«¤Ã¤¿¡£¤·¤«¤·Samba 3.0¤Ç¤Ï¡¢UID¤Î¥Þ¥Ã¥Ô¥ó¥°¤òLDAP¤ËÊݸ¤·¡¢¤¹¤Ù¤Æ¤Î¥Þ¥·¥ó¤ÇƱ°ì¤ÎID¤¬¿¶¤é¤ì¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¡£ÅöÁ³¡¢¤³¤Îµ¡Ç½¤ò»È¤¦¾ì¹ç¤Ï¡¢LDAP¥µ¡¼¥Ð¡¼¤¬É¬ÍפȤʤ롣
Samba¤Î¶¦Í¤ËÂФ·¤Æ¤Ï¡¢½¾Í褫¤ésmb.conf¤ÎÃæ¤Ëread list¥Ñ¥é¥á¡¼¥¿¤äwrite list¥Ñ¥é¥á¡¼¥¿¤ò»ØÄꤷ¤Æ¥æ¡¼¥¶¡¼¤ä¥°¥ë¡¼¥×¤Ø¤Î¥¢¥¯¥»¥¹À©¸æ¤¬²Äǽ¤À¤Ã¤¿¡£Samba3.0¤Ç¤Ï¡¢¤³¤ì¤Ë²Ã¤¨¤ÆWindows¤Î¥µ¡¼¥Ð¡¼¥Þ¥Í¡¼¥¸¥ã¤ª¤è¤Ó¥³¥ó¥Ô¥å¡¼¥¿¤Î´ÉÍýMMC¡ÊMicrosoft Management Console¡Ë¤«¤éACL¡ÊAccess Control List¡Ë¤òÀßÄê¤Ç¤¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¡£¤³¤ì¤é¤ÎÀßÄê¤ÏLinux¤«¤é¼Â¹Ô¤Ç¤¤Ê¤¤¤¬¡¢¾ðÊó¤Ïsmb.conf¤Ç¤Ï¤Ê¤¯¡¢TDB¤ÎÃæ¤ËÊݸ¤µ¤ì¤ë¡£
½¾Íè¤ÎSamba 2.2¤Ç¤âsmb.confnÃæ¤ÇDomain Admins¥°¥ë¡¼¥×¤ò»ØÄê¤Ç¤¤¿¤¬¡¢Samba 3.0¤Ç¤Ïnet¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤¹¤ë¤³¤È¤ÇWindows¤ÈƱÅù¤Î¥°¥í¡¼¥Ð¥ë¥°¥ë¡¼¥×¤¬ÍøÍѤǤ¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¡£¤Þ¤¿¡¢¥°¥ë¡¼¥×¥Þ¥Ã¥Ô¥ó¥°µ¡Ç½¤â¥µ¥Ý¡¼¥È¤µ¤ì¤¿¤¿¤á¡¢UNIX/Linux¤Î¥°¥ë¡¼¥×¤òWindows¤Î¥°¥ë¡¼¥×¤ËÂбþ²Äǽ¤À¡£¥Þ¥Ã¥Ô¥ó¥°¤Î¥µ¥ó¥×¥ë¤È¤·¤Æ¡¢
¡Ú¥ê¥¹¥È1¡Û
¤Î¤è¤¦¤Ê¤â¤Î¤¬ÍѰդµ¤ì¤Æ¤¤¤ë¡£
Á°½Ò¤Î¤È¤ª¤ê¡¢¥¯¥é¥¤¥¢¥ó¥È¤È¤ÎÄÌ¿®»þ¤Îʸ»ú¥³¡¼¥É¤¬¥·¥Õ¥ÈJIS¤«¤éUCS-2¤ØÊѹ¹¤µ¤ì¤¿¤¬¡¢Samba 3.0¤Ç¤Ïʸ»ú¥³¡¼¥É¤ÎÊÑ´¹Êý¼°¤Ë¤Ä¤¤¤Æ¤âÊѹ¹¤µ¤ì¤Æ¤¤¤ë¡£½¾Íè¤Ïcoding system¥Ñ¥é¥á¡¼¥¿¡¢client code page¥Ñ¥é¥á¡¼¥¿¤Çʸ»ú¥³¡¼¥É¤ò»ØÄꤷ¡¢¥³¡¼¥ÉÊÑ´¹¥í¥¸¥Ã¥¯¤ÏSamba¤ÎÆâÉô¤Ë»ý¤Ã¤Æ¤¤¤¿¤¬¡¢Samba 3.0¤Ç¤Ï
¡Úɽ4¡Û
¤Î¥Ñ¥é¥á¡¼¥¿¤Çʸ»ú¥³¡¼¥É¤ò»ØÄꤷ¡¢¥³¡¼¥ÉÊÑ´¹¤Ï³°Éô¤Îiconv¥é¥¤¥Ö¥é¥ê¤ò»ÈÍѤ¹¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¡Ú¿Þ¡Û¡£
¡Ú¿Þ¡ÛSamba 3.0 ¤Ë¤ª¤±¤ëʸ»ú¥³¡¼¥É
´Ä¶¤Ë±þ¤¸¤¿¥Ð¡¼¥¸¥ç¥ó¤òÁªÂò¤·¤è¤¦
¿¤¯¤Î¿·µ¡Ç½¤¬Äɲ䵤줿Samba 3.0¤À¤¬¡¢ÆüËÜ¸ì¤Ø¤ÎÂбþ¤È¤¤¤¦Ì̤Ǥϼ㴳¼ê´Ö¤¬Áý¤¨¤Æ¤¤¤ë¡£¤Þ¤¿¡¢Â絬Ìϸþ¤±¤Î¿·µ¡Ç½¤¬¥á¥¤¥ó¤Ç¤¢¤ë¤¿¤á¡¢¸Ä¿Í¥æ¡¼¥¶¡¼¤¬Æ³Æþ¤ª¤è¤Ó°Ü¹Ô¤¹¤ë¤Ë¤ÏǺ¤à¤È¤³¤í¤À¤í¤¦¡£Part 2°Ê¹ß¤Î¶ñÂÎŪ¤ÊƳÆþ¤ª¤è¤ÓÀßÄêºî¶È¤ò»²¹Í¤Ë¤·¤Æ¡¢´Ä¶¤Ë±þ¤¸¤¿¥·¥¹¥Æ¥à¤ò¹½ÃÛ¤·¤Æ¤Û¤·¤¤¡£
Part 2 ¥¤¥ó¥¹¥È¡¼¥ë¤Î¾ÜºÙ¤ÈÆüËܸìÂкö
Samba3.0¤ÎƳÆþ
Part 1¤Ç²òÀ⤷¤¿¤È¤ª¤ê¡¢Samba 3.0¤ÇÆüËܸì¤òÍøÍѤ¹¤ë¤Ë¤Ï¡¢iconv¥é¥¤¥Ö¥é¥ê¤¬É¬ÍפȤʤ롣¤·¤¿¤¬¤Ã¤Æ¡¢»öÁ°¤Ëiconv¥é¥¤¥Ö¥é¥ê¤òƳÆþ¤·¤Æ¤ª¤«¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£
RPM¥Ñ¥Ã¥±¡¼¥¸¤òÍøÍѤ·¤¿Æ³Æþºî¶È
Samba 3.0.0¤Ç¤ÏÆâÉô¹½Â¤¤¬ÂçÉý¤ËÊѹ¹¤µ¤ì¤¿¤¿¤á¡¢Æ³Æþ»þ¤ËÃí°Õ¤¹¤Ù¤ÅÀ¤¬Â¸ºß¤¹¤ë¡£ DOS¤äWindows¡Ê95/98/Me·Ï¡Ë¤Ç»È¤ï¤ì¤ëʸ»ú¥³¡¼¥É¤Ï°ìÈ̤˥·¥Õ¥ÈJIS¤È¤¤¤ï¤ì¤ë¤¬¡¢Àµ³Î¤Ë¤ÏCP932¡ÊÃí1¡Ë¤È¤¤¤¦¥Þ¥¤¥¯¥í¥½¥Õ¥ÈÆÈ¼«¤Î¤â¤Î¤Ç¤¢¤ë¡£Linux¥Ç¥£¥¹¥È¥ê¥Ó¥å¡¼¥·¥ç¥ó¤Çɸ½àŪ¤Ë»ÈÍѤµ¤ì¤ëglibc¤ÏCP932¤ËÂбþ¤·¤Æ¤¤¤Ê¤¤¤¿¤á¡¢ÆüËܸì¤ÎÊÑ´¹¤Ë¤ª¤¤¤Æ°ìÉôÌäÂ꤬ȯÀ¸¤¹¤ë¡£Æ±Íͤˡ¢FreeBSD¤ä¾¦ÍÑUNIX¤Ê¤É¤Ç¤â¡¢CP932¤ÎÊÑ´¹¤ËÂбþ¤·¤¿¥é¥¤¥Ö¥é¥ê¤ò»ý¤Ã¤Æ¤¤¤Ê¤¤¡£¤Ä¤Þ¤ê¡¢°ìÈÌŪ¤Ê´Ä¶¤Ç¤Ï¡¢Samba 3.0¤ÇÀµ¤·¤¯ÆüËܸì¤ò°·¤¨¤Ê¤¤¤ï¤±¤À¡ÊÃí2¡Ë¡£¤³¤ì¤ò²ò·è¤¹¤ë¤Ë¤Ï¡¢¼¡¤Î2¤Ä¤ÎÊýË¡¤¬¹Í¤¨¤é¤ì¤ë¡£
¤³¤ì¤é¤ò¹Íθ¤¹¤ë¤È¡¢ºÇ¶á¤ÎLinux¥Ç¥£¥¹¥È¥ê¥Ó¥å¡¼¥·¥ç¥ó¤ª¤è¤ÓUNIX·Ï¤Ç¤¢¤ì¤Ð¡¢CP932Âбþ¥Ñ¥Ã¥Á¤òŬÍѤ·¤¿libiconv¤òƳÆþ¤¹¤ë¤ÈÎɤ¤¤À¤í¤¦¡£¤¿¤À¤·¡¢glibc¤ËCP932Âбþ¥Ñ¥Ã¥Á¤òŬÍѤ¹¤ë¾ì¹ç¤ÏSamba¤Î¸ø¼°¥µ¥¤¥È¤Ë¤¢¤ëRPM¥Ñ¥Ã¥±¡¼¥¸¤¬ÍøÍѤǤ¤ë¤¬¡¢libiconv¤Ë¥Ñ¥Ã¥Á¤òÅö¤Æ¤ëºÝ¤Ïconfigure¥¹¥¯¥ê¥×¥È¼Â¹Ô»þ¤Ëlibiconv¤Î»ØÄ꤬ɬÍפȤʤ뤿¤á¡¢¤³¤Î½èÍý¤ò¹Ô¤Ã¤¿RPM¥Ñ¥Ã¥±¡¼¥¸¤òÍøÍѤ·¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£
ÆüËÜSamba¥æ¡¼¥¶²ñ¤Î¥µ¥¤¥È¤Ë¤Ï¡¢Red Hat Linux 9ÍѤª¤è¤ÓMIRACLE LINUX 2.1ÍѤÎCP932Âбþglibc¥Ñ¥Ã¥±¡¼¥¸¤ÈCP932Âбþlibiconv¥Ñ¥Ã¥±¡¼¥¸¤¬ÍѰդµ¤ì¤Æ¤¤¤ë¡£¤Ê¤ª¡¢¤³¤ì¤é¤Î¥½¥Õ¥È¥¦¥§¥¢¤ÏUNIX USER 2003ǯ12·î¹æÉÕÏ¿CD-ROM¤Ë¤â¼ýÏ¿¤·¤Æ¤¤¤ë¤Î¤ÇŬµ¹ÍøÍѤ·¤Æ¤Û¤·¤¤¡£ ¾åµ¤ÎLinux¥Ç¥£¥¹¥È¥ê¥Ó¥å¡¼¥·¥ç¥ó°Ê³°¤ò»ÈÍѤ·¤Æ¤¤¤ë¾ì¹ç¤Ï¡¢¡Ú¼Â¹ÔÎã1¡Û¤Î¤è¤¦¤Ë¤·¤ÆSRPM¤«¤éRPM¥Ñ¥Ã¥±¡¼¥¸¤òºîÀ®¤·¤Æ¤Û¤·¤¤¡£¤³¤ì¤Ë¤è¤Ã¤Æ¡¢¥Ç¥Õ¥©¥ë¥È¤Ç¤Ï/usr/src/redhat/RPMS/i386°Ê²¼¤ËRPM¥Ñ¥Ã¥±¡¼¥¸¤¬À¸À®¤µ¤ì¤ë¤Î¤Ç¡¢¤½¤ì¤ò¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¡£ # cd /usr/src/redhat/RPMS/i386/ # rpm --Uvh libiconv-1.8-1.i386.rpm¡Ú¼Â¹ÔÎã1¡ÛSRPM¤Ë¤è¤ëlibiconv¤ÎºÆ¥Ó¥ë¥É ¡¦Red Hat Linux 7.x¤Î¾ì¹ç # rpm --rebuild libiconv-1.8-1.src.rpm ¡¦Red Hat Linux 8.0°Ê¹ß¤Î¾ì¹ç # rpmbuild --rebuild libiconv-1.8-1.src.rpm Á°½Ò¤Î¤È¤ª¤ê¡¢CP932Âбþlibiconv¥Ñ¥Ã¥±¡¼¥¸¤òƳÆþ¤·¤¿¾ì¹ç¤Ï¡¢libiconvÂбþ¤ÎRPM¥Ñ¥Ã¥±¡¼¥¸¤òÍøÍѤ¹¤ëɬÍפ¬¤¢¤ë¡£³ºÅö¤¹¤ëLinux¥Ç¥£¥¹¥È¥ê¥Ó¥å¡¼¥·¥ç¥óÍѤÎRPM¥Ñ¥Ã¥±¡¼¥¸¤¬¤Ê¤¤¤È¤¤Ï¡¢Àè¤Û¤É¤ÈƱ¤¸¤è¤¦¤ËSRPM¤«¤éºîÀ®¤·¤Æ¤Û¤·¤¤¡Ú¼Â¹ÔÎã2¡Û¡£¤¢¤È¤Ï¡¢¤³¤ì¤òÍøÍѤ·¤Æ¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¤À¤±¤Ç¤¢¤ë¡£ # cd /usr/src/redhat/RPMS/i386/ # rpm --Uvh samba-3.0.0-3iconv.i386.rpm¡Ú¼Â¹ÔÎã2¡ÛSRPM¤Ë¤è¤ëSamba 3.0.0¤ÎºÆ¥Ó¥ë¥É ¡¦Red Hat Linux 7.x¤Î¾ì¹ç # rpm --rebuild samba-3.0.0-3iconv.src.rpm ¡¦Red Hat Linux 8.0°Ê¹ß¤Î¾ì¹ç # rpmbuild --rebuild samba-3.0.0-3iconv.src.rpm
¥½¡¼¥¹¤«¤é¤ÎƳÆþºî¶È
RPM¥Ñ¥Ã¥±¡¼¥¸¤¬ÍøÍѤǤ¤Ê¤¤¾ì¹ç¤Ï¡¢¥½¡¼¥¹¤òÆþ¼ê¤·¤Æ¥³¥ó¥Ñ¥¤¥ë¡¦¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ë¡£ ¥½¡¼¥¹¤«¤é¥³¥ó¥Ñ¥¤¥ë¤¹¤ë¤È¤¤Ï¡¢¤Þ¤ºlibiconv¤Î¥½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¤ÈCP932¥Ñ¥Ã¥Á¤òÆþ¼ê¤¹¤ë¡£
http://ftp.gnu.org/pub/gnu/libiconv/libiconv-1.8.tar.gz
http://www2d.biglobe.ne.jp/~msyk/software/libiconv-patch.html libiconv¤Î¥½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¤òŬÅö¤Ê¥Ç¥£¥ì¥¯¥È¥ê¤ÇŸ³«¤·¡¢¥Ñ¥Ã¥Á¤òŬÍѤ¹¤ë¡£ $ tar zxvf libiconv-1.8.tar.gz $ zcat libiconv-1.8-cp932-patch.diff.gz | patch -p0¤¢¤È¤Ï¡¢configure¥¹¥¯¥ê¥×¥È¤Î¡Ö--prefix¡×¥ª¥×¥·¥ç¥ó¤Ç¥¤¥ó¥¹¥È¡¼¥ëÀè¤ò»ØÄꤷ¡¢¡Ömake¡×¡¢¡Ömake check¡×¡¢¡Ömake install¡×¤ò¹Ô¤¦¡£ $ cd libiconv-1.8 $ ./configure --prefix=/opt/libiconv $ make ; make check # make install´Ä¶¤Ë¤è¤Ã¤Æ¤Ï¡¢/etc/ld.so.conf¤Ë¥¤¥ó¥¹¥È¡¼¥ëÀè¤Î¥é¥¤¥Ö¥é¥êÍѥǥ£¥ì¥¯¥È¥ê¡Ê/opt/libiconv/lib¡Ë¤òÄɲä·¡¢¡Öldconfig -v¡×¤ò¼Â¹Ô¤·¤Æ¤ª¤¯É¬Íפ¬¤¢¤ë¡£ ¥¤¥ó¥¹¥È¡¼¥ë¸å¤Ï¡¢iconv¥³¥Þ¥ó¥É¤Ë¤è¤Ã¤ÆCP932¤ËÂбþ¤·¤Æ¤¤¤ë¤«¤É¤¦¤«¤ò³Îǧ¤·¤Æ¤ª¤³¤¦¡£ $ /opt/libiconv/bin/iconv -l | egrep -i '(-31j|-ms)' EUCJP-MS CP932 WINDOWS-31J SambaËÜÂΤΥ½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¡Êsamba-3.0.0.tar.bz2¤Èsamba-3.0.0.tar.gz¤Î2¼ïÎढ¤ë¤Î¤Ç¡¢¤É¤Á¤é¤«¤òÍøÍѤ¹¤ë¡Ë¤Ï¡¢ ftp://ftp.samba.gr.jp/pub/samba/ ¤Ê¤É¤«¤éÆþ¼ê¤·¤Æ¡¢Å¬Åö¤Ê¥Ç¥£¥ì¥¯¥È¥ê¤ÇŸ³«¤¹¤ë¡£
$ tar xvj¡ÊÃí4¡Ëf samba-3.0.0.tar.bz2
¤¢¤ë¤¤¤Ï
$ tar xvzf samba-3.0.0.tar.gz
³¤¤¤Æ¡¢samba-3.0.0/source¥Ç¥£¥ì¥¯¥È¥ê¤Ë°Üư¤·¤Æ¡¢configure¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤¹¤ë¡£¤³¤³¤Ç¤Ï ¡Úɽ1¡Û ¤Î¤è¤¦¤Ê¥ª¥×¥·¥ç¥ó¤¬»ØÄê²Äǽ¤À¤¬¡¢¾ÜºÙ¤Ë¤Ä¤¤¤Æ¤Ï¡Ö--help¡×¥ª¥×¥·¥ç¥ó¤Çɽ¼¨¤µ¤ì¤ëÆâÍÆ¤ò»²¾È¤·¤Æ¤Û¤·¤¤¡£ $ cd samba-3.0.0/source $ ./configure --with-libiconv=/opt/libiconv/ --with-pam¸å¤Ï¡Ömake¡×¡¢¡Ömake install¡×¤Ç´°Î»¤À¡£ $ make # make install¤Ê¤ª¡¢UNIX/Linux¤Ç¤Î̾Á°²ò·èÍѤȤ·¤ÆWINS¥â¥¸¥å¡¼¥ë¤òÍøÍѤ¹¤ë¾ì¹ç¤Ï¡¢ $ make nsswitch/libnss_wins.so¤ò¼Â¹Ô¸å¡¢libnss_wins.so¤ò/lib°Ê²¼¤Ø¥³¥Ô¡¼¤·¤Æ¤ª¤³¤¦¡£ # cp nsswitch/libnss_wins.so /lib
¥½¡¼¥¹¤òÍøÍѤ·¤ÆÆ³Æþ¤·¤¿¾ì¹ç¡¢Samba¤Î¼Â¹Ô¥Õ¥¡¥¤¥ë¤Ê¤É¤Ï¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ë¤¬¡¢ÀßÄê¥Õ¥¡¥¤¥ë¤¬¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Ê¤¤¡£Samba¤òưºî¤µ¤»¤ë¤Ë¤Ï¡¢¤³¤ì¤é¤Î¥Õ¥¡¥¤¥ë¤Î½àÈ÷¡¢¤ª¤è¤Ó¥·¥¹¥Æ¥à¦¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤ÎÊѹ¹¤¬É¬ÍפȤʤ롣 Samba¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤Ç¤¢¤ê¡¢¤³¤ì¤¬¤Ê¤¤¤ÈSamba¤Ïµ¯Æ°¤·¤Ê¤¤¡£Samba3.0.0¤ÇÆüËܸì¤òÍøÍѤ¹¤ë¾ì¹ç¤Ï¡¢É¬¤º°Ê²¼¤Î3¹Ô¤ò»ØÄꤷ¤Æ¤Û¤·¤¤¡£ unix charset = EUCJP-MS display charset = EUCJP-MS dos charset = CP932
1¹ÔÌܤλØÄê¤Ï¡¢CP932¤ò¥µ¥Ý¡¼¥È¤·¤¿libiconv¤äglibc¤òƳÆþ¤·¤Æ¤¤¤Ê¤¤¤ÈÍøÍѤǤ¤Ê¤¤¡ÊSmaba¤¬µ¯Æ°¤·¤Ê¤¤¡Ë¤Î¤ÇÃí°Õ¤·¤è¤¦¡£ÆüËܸì¥Õ¥¡¥¤¥ë̾¤ò¹Íθ¤·¤¿¥µ¥ó¥×¥ë¥Õ¥¡¥¤¥ë¤òUNIX USER 2003ǯ12·î¹æÉÕÏ¿CD-ROM¤Î/Speciall/samba-3.0-ja°Ê²¼¤Ë¼ýÏ¿¤·¤¿¤Î¤Ç¡¢»²¹Í¤Ë¤·¤Æ¤Û¤·¤¤¡£
Samba¥æ¡¼¥¶¡¼ÍѤΥѥ¹¥ï¡¼¥É¤ò³ÊǼ¤¹¤ë¥Õ¥¡¥¤¥ë¡£ Samba¤ÎÀßÄê/´ÉÍý¤òWeb¥Ö¥é¥¦¥¶·Ðͳ¤Ç¹Ô¤¦¤¿¤á¡¢ÀìÍÑWeb¥¤¥ó¥¿¡¼¥Õ¥§¥¤¥¹SWAT¤¬ÍѰդµ¤ì¤Æ¤¤¤ë¡£¤³¤ì¤Ïinetd/xinetd·Ðͳ¡¢¤¢¤ë¤¤¤ÏWebmin ·Ðͳ¤ÇÍøÍѤ¹¤ë¤¬¡¢Á°¼Ô¤Î¾ì¹ç¡¢/etc/services¤Ë¼¡¤Î¹Ô¤òÄɲ䷤Ƥª¤¯¡£ swat 901/tcp
¤µ¤é¤Ë¡¢¥·¥¹¥Æ¥à¤¬inetd¤Èxinetd¤Î¤É¤Á¤é¤ò»ÈÍѤ·¤Æ¤¤¤ë¤Î¤«³Îǧ¤·¡¢
¡Ú¥ê¥¹¥È1¡Û
¤Î¤è¤¦¤ÊÀßÄê¤ò¹Ô¤¦¡£ Samba¤Î¥í¥°¤òÄê´üŪ¤Ë¥í¡¼¥Æ¡¼¥·¥ç¥ó¤µ¤»¤ë¤Ë¤Ï¡¢¥í¥°¥í¡¼¥Æ¡¼¥·¥ç¥óÍѤÎÀßÄê¥Õ¥¡¥¤¥ë¤òÍѰդ¹¤ë¡£¤¿¤È¤¨¤Ð¡¢Red Hat Linux 9¤Ç¤¢¤ì¤Ð¡¢ ¡Ú¥ê¥¹¥È3¡Û ¤Î¤è¤¦¤Ê/etc/logrotate.d/samba¥Õ¥¡¥¤¥ë¤òºîÀ®¤·¤è¤¦¡£¤³¤ì¤Ï¡¢¥½¡¼¥¹¥Ç¥£¥ì¥¯¥È¥ê¤Îpackaging/RedHat°Ê²¼¤Ë¤¢¤ësamba.log¤ò¥³¥Ô¡¼¤·¤Æ¤âÎɤ¤¡£
¥·¥¹¥Æ¥àµ¯Æ°»þ¤ËSamba¤ò¼«Æ°¼Â¹Ô¤µ¤»¤ë¤Ë¤Ï¡¢¥·¥¹¥Æ¥à¤Ë¤¢¤ï¤»¤¿µ¯Æ°ÍÑ¥¹¥¯¥ê¥×¥È¤òÍѰդ¹¤ë¡£¤¿¤È¤¨¤Ð¡¢Red Hat Linux 9¤Ç¤¢¤ì¤Ð¡¢
¡Ú¥ê¥¹¥È4¡Û
¤Î¤è¤¦¤Ê/etc/rc.d/init/smb¥Õ¥¡¥¤¥ë¡ÊÃí5¡Ë¤òºîÀ®¤·¤è¤¦¡£
Samba¤Îµ¯Æ°ÀßÄê
µ¯Æ°¥¹¥¯¥ê¥×¥È¤¬ÍѰդǤ¤¿¤é¡¢¤½¤ì¤é¤¬¥·¥¹¥Æ¥àµ¯Æ°»þ¤ËÆÉ¤ß¹þ¤Þ¤ì¤ë¤è¤¦¤ËÀßÄꤹ¤ë¡£¤¿¤È¤¨¤Ð¡¢Red Hat Linux 9¤Ç¤¢¤ì¤Ð¡¢ # chkconfig smb on ¤ª¤è¤Ó # chkconfig winbind on
¤È¼Â¹Ô¤¹¤ë¤³¤È¤Ç¡¢¸½ºß¤Î¥é¥ó¥ì¥Ù¥ë¤Ë¤ª¤¤¤Æ¥·¥¹¥Æ¥àµ¯Æ°»þ¤ËSamba¤¬¼«Æ°¼Â¹Ô¤µ¤ì¤ë¤è¤¦¤Ë¤Ê¤ë¡£
¡Ú¿Þ¡ÛSWAT¤Ç¤ÎÀßÄê¡Ê¿Þ¤Ïưºî¾õ¶·¤Î²èÌÌ¡Ë
³«È¯¼Ô¤Ø¤Î¥Õ¥£¡¼¥É¥Ð¥Ã¥¯¤¬°ÂÄꤷ¤¿Samba¤òÀ¸¤à
É®¼Ô¤¬Linux´ØÏ¢¤Î»Å»ö¤ò¤·¤Æ¤¤¤ë¤¿¤á¡¢LinuxÃæ¿´¤Î²òÀâ¤È¤Ê¤Ã¤Æ¤·¤Þ¤Ã¤¿¤¬¡¢Samba¤Î³«È¯¥Á¡¼¥à¼«ÂΤâLinuxÃæ¿´¤Ç³«È¯¤ò¿Ê¤á¤Æ¤¤¤ë¡£¤·¤¿¤¬¤Ã¤Æ¡¢Æ°ºî¸¡¾Ú¤Ê¤É¤âLinux¤ò½ÅÅÀŪ¤Ë¹Ô¤Ã¤Æ¤¤¤ë¤Î¤â»ö¼Â¤À¡£
Part 3 ¥±¡¼¥¹Ê̤˸«¤ëSamba¥µ¡¼¥Ð¡¼¹½ÃÛ»þ¤ÎÃí°ÕÅÀ
¥¹¥¿¥ó¥É¥¢¥í¥ó¥µ¡¼¥Ð¡¼¤Î¹½ÃÛ
ºÇ½é¤Ë¡¢Samba¤òÍѤ¤¤¿¥¹¥¿¥ó¥É¥¢¥í¥ó¥µ¡¼¥Ð¡¼¤Î¹½ÃÛÊýË¡¤Ë¤Ä¤¤¤Æ²òÀ⤹¤ë¡£¥¹¥¿¥ó¥É¥¢¥í¥ó¥µ¡¼¥Ð¡¼¤È¤ÏÊ̤Υۥ¹¥È¤ÈÏ¢·È¤¹¤ë¤³¤È¤Ê¤¯Ã±ÆÈ¤ÇÍøÍѤ¹¤ë¤â¤Î¤Ç¡¢Windows¤Ç¤¤¤¦¥ï¡¼¥¯¥°¥ë¡¼¥×¥µ¡¼¥Ð¡¼¤Î¤³¤È¤Ç¤¢¤ë¡£¤³¤Î¾ì¹ç¡¢¥æ¡¼¥¶¡¼¤ä¥°¥ë¡¼¥×¤Î´ÉÍý¤¬½ÅÍפʥݥ¤¥ó¥È¤È¤Ê¤ë¡£
Part 1¤Ç¤âÀâÌÀ¤·¤¿¤¬¡¢Samba 3.0¤Î¿ä¾©ÀßÄê¤Ç¤Ï¥¹¥¿¥ó¥É¥¢¥í¥ó¥µ¡¼¥Ð¡¼¹½ÃÛ»þ¤Î¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤È¤·¤ÆTDB¤òÍøÍѤ¹¤ë¡£¤³¤ì¤Ï¡¢Samba 2.2¤Ç°ìÈÌŪ¤ËÍøÍѤ·¤Æ¤¤¤¿smbpasswd¤ÈÈæ³Ó¤·¤Æ¡¢Àǽ¤ä³ÈÄ¥À¤ÎÌ̤ÇÍ¥¤ì¤Æ¤¤¤ë¡£ passdb backend = tdbsam
Samba 2.2¤Ë¤ª¤±¤ë¥æ¡¼¥¶¡¼¤ÎÄɲúî¶È¤Ï¡¢¥·¥¹¥Æ¥à¦¤Îuseradd¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤¿¸å¡¢Samba¦¤Îsmbpasswd¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤·¤¿¡£°ìÊý¡¢Samba 3.0¤Ç¤Ïpdbedit¥³¥Þ¥ó¥É
¡Úɽ1¡Û
¤Ènet¥³¥Þ¥ó¥É¤¬Ä󶡤µ¤ì¤Æ¤¤¤ë¡£ # useradd odagiri ¢«¥·¥¹¥Æ¥à¦¤Ë¥æ¡¼¥¶¡¼¤òÄɲà # pdbedit -a -u odagiri
pdbedit¥³¥Þ¥ó¥É¤Ïpassdb backend¥Ñ¥é¥á¡¼¥¿¤È¤·¤Æ¡Ötdbsam¡×¡¢¡Ösmbpasswd¡×¡¢¡Öldamsam¡×¤Î¤¤¤º¤ì¤«¤òÍøÍѤ·¤¿¾ì¹ç¤Ë¥æ¡¼¥¶¡¼¤ò´ÉÍý¤Ç¤¤ë¤¬¡¢»öÁ°¤Ë¥·¥¹¥Æ¥à¦¤Ç¤â¥æ¡¼¥¶¡¼¤òÄɲ䷤Ƥª¤¯É¬Íפ¬¤¢¤ë¡£ # net rpc user add odagiri
¤È¼Â¹Ô¤·¡¢´ÉÍýÂоݤ¬Samba¤Ç¤âWindows¤Ç¤â¥æ¡¼¥¶¡¼´ÉÍý²Äǽ¤À¤¬¡¢¥Í¥Ã¥È¥ï¡¼¥¯·Ðͳ¤Ç¥¢¥¯¥»¥¹¤¹¤ë¤¿¤á¤Î¥æ¡¼¥¶¡¼/¥Ñ¥¹¥ï¡¼¥É¤¬É¬ÍפÀ¡£
Samba 2.2¤Ç¤Ï¥°¥ë¡¼¥×´ÉÍýµ¡Ç½¤ò¼ÂÁõ¤·¤Æ¤¤¤Ê¤«¤Ã¤¿¤¿¤á¡¢¥·¥¹¥Æ¥à¦¤Îgroupadd¥³¥Þ¥ó¥É¤Ç¥°¥ë¡¼¥×¤ÎÄɲäò¹Ô¤¨¤ÐÎɤ«¤Ã¤¿¡£¤È¤³¤í¤¬¡¢Samba 3.0¤«¤é¤Ï¥°¥ë¡¼¥×´ÉÍýµ¡Ç½¤ò¼ÂÁõ¤·¤¿¤¿¤á¡¢groupadd¥³¥Þ¥ó¥É¤Ë²Ã¤¨¤Ænet¥³¥Þ¥ó¥É¤Ç¥°¥ë¡¼¥×´ÉÍý¤ò¹Ô¤ï¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£¤µ¤é¤Ë¡¢Samba¤ÇWindows¥É¥á¥¤¥ó´Ä¶¤ò¹½ÃÛ¤¹¤ë¾ì¹ç¡¢¥°¥í¡¼¥Ð¥ë¥°¥ë¡¼¥×¤È¥í¡¼¥«¥ë¥°¥ë¡¼¥×¤ò¶èÊ̤Ǥ¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¤³¤È¤Ç¡¢´ÉÍý¾å¤â¤³¤ì¤é¤ò»È¤¤Ê¬¤±¤ëɬÍפ¬½Ð¤Æ¤¤¿¡£ # groupadd dev # net groupmap add ntgroup=dev unixgroup=dev type=local ¤Î¤è¤¦¤Ë¼Â¹Ô¤·¡¢Samba¥É¥á¥¤¥ó´Ä¶¤Ç¥°¥í¡¼¥Ð¥ë¥°¥ë¡¼¥×dev¤òºîÀ®¤¹¤ë¤Ë¤Ï¡¢ # groupadd dev # net groupmap add ntgroup=dev unixgroup=dev type=domain
¤Î¤è¤¦¤Ë¼Â¹Ô¤¹¤ë¡£
¤³¤ì¤é¤Î¥°¥ë¡¼¥×¤Ï¡¢net¥³¥Þ¥ó¥É¡ÊÃí1¡Ë¤òÍøÍѤ·¤ÆÅÐÏ¿¤·¤Æ¤ª¤³¤¦¡Ú¼Â¹ÔÎã1¡Û¡£UNIX/Linux¦¤Î¥°¥ë¡¼¥×̾wheel¡¢nobody¡¢smbusers¤Ï¡¢¤½¤ì¤¾¤ì¤Î´Ä¶¤Ë±þ¤¸¤Æ¥«¥¹¥¿¥Þ¥¤¥º¤·¤Æ¤Û¤·¤¤¡£
¡Ú¼Â¹ÔÎã1¡Û ɬ¿Ü¥°¥ë¡¼¥×¤ÎÄɲà # groupadd smbusers # net groupmap modify ntgroup="Administrators" unixgroup=wheel # net groupmap modify ntgroup="Users" unixgroup=smbusers # net groupmap modify ntgroup="Guests" unixgroup=nobody # net groupmap modify ntgroup="Print Operators" unixgroup=lp # net groupmap modify ntgroup="Domain Admins" unixgroup=wheel # net groupmap modify ntgroup="Domain Users" unixgroup=smbusers # net groupmap modify ntgroup="Domain Guests" unixgroup=nobody
¤³¤³¤Þ¤Ç¤Î²òÀâ¤Ë¤è¤Ã¤Æ¡¢¡ÖSamba 3.0¤Ç¤Ï¥æ¡¼¥¶¡¼´ÉÍý¤¬ÂçÊѤˤʤ信פȴ¶¤¸¤¿¿Í¤â¿¤¤¤Î¤Ç¤Ï¤Ê¤¤¤À¤í¤¦¤«¡©¤¿¤·¤«¤ËÀßÄê¤ä¥³¥Þ¥ó¥É¤ÏÌÌÅݤˤʤ俤¬¡¢Samba 3.0¤Ç¤ÏWindows¤«¤é¤Î¥æ¡¼¥¶¡¼/¥°¥ë¡¼¥×´ÉÍý¤¬¼Â¸½¤µ¤ì¤¿¡£¤³¤ì¤Ë¤è¤Ã¤Æ¡¢Èó¾ï¤Ë´ÉÍý¤·¤ä¤¹¤¯¤Ê¤ë¤À¤í¤¦¡£
¡Ú¿Þ1¡Û¥æ¡¼¥¶¡¼¥Þ¥Í¡¼¥¸¥ã¤Ë¤è¤ë´ÉÍý
¥á¥ó¥Ð¥µ¡¼¥Ð¡¼¤Î¹½ÃÛ
³¤¤¤Æ¡¢´û¸¤ÎAD¥É¥á¥¤¥ó¤ËÂФ·¤Æ¡¢Samba¥µ¡¼¥Ð¡¼¤ò¥á¥ó¥Ð¥µ¡¼¥Ð¡¼¤È¤·¤ÆÅÐÏ¿¤·¤Æ¤ß¤è¤¦¡£¤³¤³¤Ç¤Ï¡¢¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤È¤·¤ÆWindows 2000 Server/Server 2003¤¬Æ°ºî¤·¤Æ¤¤¤ë¤³¤È¤òÁ°Äó¤È¤¹¤ë¡£ # net rpc join member -w <¥É¥á¥¤¥ó̾> -S <PDC¥µ¡¼¥Ð¡¼Ì¾> -U administrator%<´ÉÍý¼Ô¥Ñ¥¹¥ï¡¼¥É> ¸å¤Ï¡¢Winbind¥Ç¡¼¥â¥ó¤òµ¯Æ°¤¹¤ì¤Ð´°Î»¤À¡£Samba 3.0.0¤Ç¤ÏSWAT¤«¤éWinbind¤¬µ¯Æ°¤Ç¤¤ë¤è¤¦¤Ë¤Ê¤Ã¤¿¤Î¤Ç¡¢¤³¤ì¤òÍøÍѤ¹¤ë¤ÈÎɤ¤¡£¤Þ¤¿¡¢Winbind¤¬³ä¤êÉÕ¤±¤¿UID/GID¤òLDAP¤Ç´ÉÍý¤Ç¤¤ë¤Î¤Ç¡¢Ê£¿ô¤ÎSamba¥µ¡¼¥Ð¡¼¤¬¡ÊWinbind¤òÍøÍѤ·¤Æ¡Ë¥É¥á¥¤¥ó¥á¥ó¥Ð¤Ë¤Ê¤ë¾ì¹ç¤Ï¡¢LDAP¥µ¡¼¥Ð¡¼¤òÍѰդ·¤Æ¡¢smb.confÆâ¤Çidmap backend¥Ñ¥é¥á¡¼¥¿¤ò»ØÄꤷ¤è¤¦¡£ idmap uid = 1000-2000 idmap gid = 2000-3000 ¤½¤Î¤Û¤«¡¢LDAP´ØÏ¢¤Î¥Ñ¥é¥á¡¼¥¿¤Ë¤Ä¤¤¤Æ¤Ï¡¢°Ê¹ß¤Î²òÀâ¤ò»²¹Í¤Ë¤·¤Æ¤Û¤·¤¤¡£
¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤Î¹½ÃÛ
Samba 3.0¤òPDC¤È¤·¤Æµ¯Æ°¤¹¤ë¤Ë¤Ï¡¢¥¹¥¿¥ó¥É¥¢¥í¥ó¥µ¡¼¥Ð¡¼¹½ÃÛ»þ¤ËÍѰդ·¤¿smb.confÆâ¤Ç¡Ödomain logons = yes¡×¤È»ØÄꤹ¤ë¤À¤±¤Ç¤âOK¤À¡£¤·¤«¤·¡¢Ê£¿ô¤ÎSamba¥µ¡¼¥Ð¡¼¤òÍѤ¤¤¿¾ì¹ç¡¢¸ÄÊ̤Υµ¡¼¥Ð¡¼¤´¤È¤Ë¥æ¡¼¥¶¡¼ÅÐÏ¿¤·¤Ê¤±¤ì¤Ð¤Ê¤é¤º¡¢BDC¤â¹½ÃۤǤ¤Ê¤¤¡£¤·¤¿¤¬¤Ã¤Æ¡¢Ê£¿ôÂæ¤ÎSamba¥µ¡¼¥Ð¡¼¤Ë¤è¤Ã¤Æ¥É¥á¥¤¥ó¤ò¹½ÃÛ¤¹¤ë¾ì¹ç¤Ï¡¢LDAP¥µ¡¼¥Ð¡¼¤òÍѰդ·¡¢smb.confÆâ¤Ç¡Öpassdb backend=ldapsam¡×¤È¤·¤¿¤Û¤¦¤¬Îɤ¤¤À¤í¤¦¡£ Samba 3.0.0¤òLDAP¥µ¡¼¥Ð¡¼¤ÈÏ¢·È¤µ¤»¤ë¾ì¹ç¡¢Ãí°Õ¤¹¤Ù¤ÅÀ¤¬¤¢¤ë¡£LDAP¥¹¥¡¼¥Þ¤òºîÀ®¤¹¤ë¤¿¤á¤Î´Ä¶¤¬ÍѰդµ¤ì¤Æ¤¤¤Ê¤¤¤¿¤á¡¢¼ê½ç¤ò´Ö°ã¤¨¤ë¤ÈÀµ¾ï¤Ëưºî¤·¤Ê¤¤¤Î¤À¡ÊÃí2¡Ë¡£¤³¤Î¾õ¶·¤Ï¡¢¸å½Ò¤¹¤ësmbldap-tools¤¬²þÎɤµ¤ì¤ì¤Ð²ò·è¤¹¤ë¤À¤í¤¦¡£
Samba¤Îldapsamµ¡Ç½¤ÏOpenLDAP¤ò¥Ù¡¼¥¹¤Ë³«È¯¤µ¤ì¤Æ¤¤¤ë¤¬¡¢Oracle¤äNovell¤Ê¤É¤ÎLDAP¥µ¡¼¥Ð¡¼¤Ë¤âÂбþ¤·¤Æ¤ª¤ê¡¢¥¹¥¡¼¥Þ¤µ¤¨ÅÐÏ¿¤¹¤ì¤ÐÌäÂê¤Ê¤¯ÍøÍѲÄǽ¤À¡£¤³¤³¤Ç¤Ï¡¢OpenLDAP 2.0.27¤Ë¤è¤ë¹½ÃÛÊýË¡¤ò²òÀ⤹¤ë¡£
Red Hat·ÏLinux¥Ç¥£¥¹¥È¥ê¥Ó¥å¡¼¥·¥ç¥ó¤Î¾ì¹ç¡¢RPM¥Ñ¥Ã¥±¡¼¥¸¤¬ÍѰդµ¤ì¤Æ¤¤¤ë¤Î¤Ç¡¢¤³¤ì¤é¤òÍøÍѤ¹¤ë¤È´Êñ¤À¡£ # rpm -Uvh openldap-2.0.27*.i386.rpm # rpm -Uvh openldap-clients-2.0.27*.i386.rpm # rpm -Uvh openldap-devel-2.0.27*.i386.rpm # rpm -Uvh openldap-servers-2.0.27*.i386.rpm # rpm -Uvh nscd-2.3.2*.i386.rpm # rpm -Uvh nss_ldap*.i386.rpm
RPM¥Ñ¥Ã¥±¡¼¥¸¤òÍøÍѤǤ¤Ê¤¤OS¤Ë¤Ä¤¤¤Æ¤Ï¡¢¥½¡¼¥¹¤òÍøÍѤ¹¤ë¤³¤È¤Ë¤Ê¤ë¡£OpenLDAP¤Î¥½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¤Ï¡¢¼¡¤Î¥µ¥¤¥È¤Ê¤É¤«¤éÆþ¼ê²Äǽ¤À¡£
http://www.openldap.org/ # tar xfz openldap-2.0.27.tgz Ÿ³«¸å¡¢¥½¡¼¥¹¥Ç¥£¥ì¥¯¥È¥ê¤Çconfigure¥¹¥¯¥ê¥×¥È¤ò¼Â¹Ô¤¹¤ë¤¬¡¢¤³¤³¤Ç¤Ï¡Ú¼Â¹ÔÎã3¡Û¤Î¥ª¥×¥·¥ç¥ó¤ò»ØÄꤷ¤¿¡£¥ª¥×¥·¥ç¥ó¤Î¾ÜºÙ¤Ë¤Ä¤¤¤Æ¤Ï¡¢¡Ö--help¡×¤Ç½ÐÎϤµ¤ì¤ëɽ¼¨¤ò»²¾È¤·¤Æ¤Û¤·¤¤¡£ # ./configure --help ¸å¤Ï¡¢°Í¸´Ø·¸¤ò¹½ÃÛ¤·¡¢¥³¥ó¥Ñ¥¤¥ë¡¢¥¤¥ó¥¹¥È¡¼¥ë¤¹¤ì¤Ð´°Î»¤À¡£ # make depend # make # make test # make install # cd openldap-2.0.27 # ./configure --prefix=/usr --exec-prefix=/usr\ > --bindir=/usr/bin --sbindir=/usr/sbin --sysconfdir=/etc\ > --datadir=/usr/share --includedir=/usr/include\ > --libdir=/usr/lib --libexecdir=/usr/libexec\ > --localstatedir=/var --sharedstatedir=/usr/com\ > --mandir=/usr/share/man --infodir=/usr/share/info\ > --with-slapd --with-slurpd --without-ldapd\ > --with-threads=posix --enable-shared --enable-static\ > --enable-ldbm -with-ldbm-api=gdbm --enable-passwd\ > --enable-shell -enable-local --enable-cldap\ > --disable-rlookups --with-kerberos=k5only --with-tls\ > --with-cyrus-sasl --enable-wrappers --enable-cleartext\ > --enable-crypt --enable-kpasswd --enable-spasswd\ > --libexecdir=/usr/sbin --localstatedir=/var/run OpenLDAP¤òÍøÍѤ¹¤ë¤Ë¤Ï¡¢
¤È¤¤¤¦2¼ïÎà¤ÎÀßÄê¤ò¹Ô¤¦É¬Íפ¬¤¢¤ë¡£1.¤ÏLDAP¥Ç¡¼¥â¥ó¤òưºî¤µ¤»¤ë¥µ¡¼¥Ð¡¼¤Î¤ß¹Ô¤¨¤ÐÎɤ¯¡¢2.¤ÏWindows¤ò½ü¤¯¤¹¤Ù¤Æ¤ÎUNIX/Linux¥Þ¥·¥ó¡ÊLDAP¥µ¡¼¥Ð¡¼¤Î¥Þ¥·¥ó¼«ÂΤâ´Þ¤à¡Ë¤Ç¹Ô¤ï¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£ ÀßÄ꤬ɬ¿Ü¤Ê¥Õ¥¡¥¤¥ë¤Ï¡¢/etc/openldap/slapd.conf¤À¤±¤Ç¤¢¤ë¡£¤³¤³¤Ç¤ÏSamba¤Ç¥É¥á¥¤¥ó´Ä¶¤ò¹½ÃÛ¤¹¤ëºÝ¤Î´ØÏ¢»ö¹à¤Î¤ß²òÀ⤹¤ë¤Î¤Ç¡¢OpenLDAP¤Î¾ÜºÙ¤ÊÀßÄêÊýË¡¤Ë¤Ä¤¤¤Æ¤Ï°Ê²¼¤ÎWeb¥Ú¡¼¥¸¤Ê¤É¤ò»²¾È¤·¤Æ¤Û¤·¤¤¡£
¤Þ¤º¤Ï¡¢ ¡Ú¥ê¥¹¥È7¡Û ¤Ë¼¨¤·¤¿slapd.conf¤Î¥µ¥ó¥×¥ë¥Õ¥¡¥¤¥ë¤ò¸«¤Æ¤Û¤·¤¤¡£¤³¤ì¤ò¥Ù¡¼¥¹¤È¤·¤Æ¡¢¼¡¤Ë¤¢¤²¤ë4¤Ä¤Î¥Ñ¥é¥á¡¼¥¿¤Ë´ØÏ¢¤¹¤ëºî¶È¤ò¹Ô¤¦¡£
SambaÍѤΥ¹¥¡¼¥Þ¥Õ¥¡¥¤¥ë¤Î¼è¤ê¹þ¤ß¤Ï¡¢include¥Ñ¥é¥á¡¼¥¿¤Ç»ØÄꤹ¤ë¡£Samba 3.0.0¤Î¥½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¤Ë´Þ¤Þ¤ì¤ëexsample/LDAP/samba.schema¥Õ¥¡¥¤¥ë¤ò/etc/openldap/schema/samba30.schema¤Ø¥³¥Ô¡¼¤·¤Æ¡¢slapd.conf¤Ç¼¡¤Î¤è¤¦¤ËÀßÄꤹ¤ë¡£ include /etc/openldap/schema/samba30.schema¤Þ¤¿¡¢Samba 3.0.0¤ò¡Ö--with-ldapsam¡×¥ª¥×¥·¥ç¥óÉÕ¤¤Ç¥³¥ó¥Ñ¥¤¥ë¤·¤¿¾ì¹ç¡¢Samba 2.2¤Î¥½¡¼¥¹¥³¡¼¥É¤Ë´Þ¤Þ¤ì¤ë¥¹¥¡¼¥Þ¤ò/etc/openldap/schema/samba22.schema¤Ø¥³¥Ô¡¼¤·¡¢¼¡¤ÎÀßÄê¤òÄɲ䷤Ƥª¤³¤¦¡£ include /etc/openldap/shema/samba22.shema
¥Ù¡¼¥¹¥µ¥Õ¥£¥Ã¥¯¥¹¤Ïsuffix¥Ñ¥é¥á¡¼¥¿¤Ç»ØÄꤹ¤ë¡£¤³¤ì¤Ï¡¢ºÇÄã¤Ç¤â1¤Ä°Ê¾åÀßÄꤷ¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£¥æ¡¼¥¶¡¼Â¦¤Ç¼«Í³¤ËÀßÄê¤Ç¤¤ë¤¬¡¢Á´À¤³¦¤Ç¥æ¥Ë¡¼¥¯¤Ë¤Ê¤ë¤è¤¦¤ËDNS¥É¥á¥¤¥ó̾¤ÈƱ¤¸¤â¤Î¤ò»ÈÍѤ¹¤ë¤Î¤¬°ìÈÌŪ¤À¡£ suffix "dc=miraclelinux,dc=com" suffix "dc=softbank,dc=co,dc=jp" suffix "ou=naniwa,dc=unixuser,dc=jp" ¤³¤³¤Ç¡Ödc¡×¤ÏDomain COmponent¡¢¡Öou¡×¤ÏOrganization Unit¤ò°ÕÌ£¤·¤Æ¤¤¤ë¡£¤³¤ì°Ê³°¤Ë¡Öc¡×¡ÊCountry¡Ë¤ä¡Öo¡×¡ÊOrganization¡Ë¤Ê¤É¤â»È¤ï¤ì¤ë¤¬¡¢¥æ¥Ë¡¼¥¯¤Ç¤¢¤ì¤Ð²¿¤ò»È¤Ã¤Æ¤â¥æ¡¼¥¶¡¼¤Î¼«Í³¤Ç¤¢¤ë¡£¤Þ¤¿¡¢Âçʸ»ú¡¦»Òʸ»ú¤Î¶èÊ̤Ϥʤ¤¡£
LDAP¥µ¡¼¥Ð¡¼¤Î´ÉÍý¼ÔDN¡ÊDistinguished Name¡§¼±ÊÌ̾¡Ë¤Ï¡¢rootdn¥Ñ¥é¥á¡¼¥¿¤Ç»ØÄꤹ¤ë¡£¤Ê¤ª¡¢´ÉÍý¼Ô¤Ê¤É¥æ¡¼¥¶¡¼ÍѤÎDN¤Ë¤Ä¤¤¤Æ¤â¼«Í³¤ËÀßÄê²Äǽ¤Ç¡Ê¥Ù¡¼¥¹¥µ¥Õ¥£¥Ã¥¯¥¹¤ò´Þ¤àɬÍפ¬¤¢¤ë¡Ë¡¢Âçʸ»ú¡¦»Òʸ»ú¤Î¶èÊ̤Ϥʤ¤¡£ rootdn "cn=Manager,dc=miraclelinux,dc=com" rootdn "cn=root,dc=softbank,dc=co,dc=jp" rootdn "cn=Administrator,ou=Users,ou=naniwa,dc=unixuser,dc=jp"
LDAP¥µ¡¼¥Ð¡¼¤Î´ÉÍý¼Ô¥Ñ¥¹¥ï¡¼¥É¤Ï¡¢rootpw¥Ñ¥é¥á¡¼¥¿¤ÇÀßÄꤹ¤ë¡£¥Æ¥¹¥È´Ä¶¤Ç¤Ïʿʸ¤Î¥Ñ¥¹¥ï¡¼¥É¤ò»ØÄꤷ¤Æ¤âÎɤ¤¤¬¡¢¼Â±¿ÍѤǤϰŹ沽¤·¤¿¤â¤Î¤òÍѤ¤¤Æ¤Û¤·¤¤¡£
# slappasswd -s miracle -h {MD5}
{MD5}0SLYzLSMIRdTdundlie/5A==
¤³¤³¤Çɽ¼¨¤µ¤ì¤¿¤â¤Î¤òrootpw¤Ç»ØÄꤹ¤ì¤ÐÎɤ¤¡£
rootpw = {MD5}0SLYzLSMIRdTdundlie/5A==
¤Ê¤ª¡¢rootdn¥Ñ¥é¥á¡¼¥¿¤È¤·¤ÆLDAP¤ËÅÐÏ¿¤µ¤ì¤Æ¤¤¤ë¥æ¡¼¥¶¡¼¤ò»ØÄꤷ¡¢LDAPÆâ¤Ë¥Ñ¥¹¥ï¡¼¥É¤¬³ÊǼ¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ï¡¢rootpw¤ò¾Êά¤Ç¤¤ë¡£ # service ldap start ̵»ö¤Ëµ¯Æ°¤·¤¿¤é¡¢¥·¥¹¥Æ¥àµ¯Æ°»þ¤Ë¼«Æ°¼Â¹Ô¤¹¤ë¤è¤¦¤ËÀßÄꤷ¤Æ¤ª¤¯¡£ # chkconfig ldap on LDAP¥¯¥é¥¤¥¢¥ó¥È¤È¤Ê¤ë¤¹¤Ù¤Æ¤ÎUNIX/Linux¥Þ¥·¥ó¤Ç¤Ï¡¢¼¡¤Î4¤Ä¤Î¥Õ¥¡¥¤¥ë¤Ë¤Ä¤¤¤ÆÀßÄê¤ò¹Ô¤¦É¬Íפ¬¤¢¤ë¡£
Red Hat Linux¤äMIRACLE LINUX V2.x¤Ç¤Ï¡¢ÀßÄê¥Ä¡¼¥ëauthconfig¤¬Ä󶡤µ¤ì¤Æ¤¤¤ë¤Î¤Ç¡¢¤³¤ì¤òÍøÍѤ¹¤ë¤ÈÎɤ¤¤À¤í¤¦¡£LDAP¥µ¡¼¥Ð¡¼¤¬Æ°ºî¤·¤Æ¤¤¤ë¥Þ¥·¥ó¤Ç¤Ï¥µ¡¼¥Ð¡¼¤ò127.0.0.1¤È¤·¡¢¤½¤ì°Ê³°¤Ç¤ÏLDAP¥µ¡¼¥Ð¡¼¤ÎIP¥¢¥É¥ì¥¹¤ä¥Û¥¹¥È̾¤ò»ØÄꤹ¤ë¡Ú¿Þ4¡Û¡£
¥Í¡¼¥à¥µ¡¼¥Ó¥¹¥¹¥¤¥Ã¥Á¤ÎÀßÄê¥Õ¥¡¥¤¥ë/etc/nsswitch.conf¤Ç¤Ï¡¢¼¡¤Î¤è¤¦¤ÊLDAP¤Ë´Ø¤¹¤ëÀßÄ꤬ɬÍפȤʤ롣 passwd: files ldap shadow: files ldap group: files ldap
nss_ldap¤Èpam_ldap¤ÎÀßÄê¥Õ¥¡¥¤¥ë¤Ç¤¢¤ë/etc/ldap.conf¤òÊÔ½¸¤·¡¢¥æ¡¼¥¶¡¼¤ÎÁÈ¿¥¤È¸¡º÷¥Ù¡¼¥¹¤òÈ¿±Ç¤µ¤»¤ë¡£/etc/openldap/ldap.conf¤Ïldapsearch¤äldapadd¤Ê¤É¤Î¥³¥Þ¥ó¥É¥é¥¤¥ó¥Ä¡¼¥ëÍÑÀßÄê¥Õ¥¡¥¤¥ë¤Ç¤¢¤ê¡¢¤³¤ì¤âLDAPÀßÄê¤Ë¹ç¤ï¤»¤ÆÊÔ½¸¤¹¤ëɬÍפ¬¤¢¤ë¡£ host 127.0.0.1 base dc=miraclelinux,dc=com ¤Î¤è¤¦¤ËÊѹ¹¤µ¤ì¤Æ¤¤¤ë¤Ï¤º¤À¤¬¡¢¤µ¤é¤Ë¡¢ nss_base_passwd dc=miraclelinux,dc=com?sub nss_base_shadow dc=miraclelinux,dc=com?sub nss_base_group ou=Groups,dc=miraclelinux,dc=com?one ssl no pam_password md5 ¤Î¤è¤¦¤ÊÆâÍÆ¤âÄɲ䷤Ƥª¤³¤¦¡£
PAMÍÑÀßÄê¥Õ¥¡¥¤¥ë/etc/pam.d/system-auth¤Ë¤Ï¡¢¼¡¤Î¤è¤¦¤Ê¹Ô¤¬Äɲ䵤ì¤ë¡£ auth sufficient /lib/security/pam_ldap.so use_first_pass
UNIX/Linux¤Ëssh/telnet¤Ç¥í¥°¥¤¥ó¤·¤Æ»ÈÍѤ¹¤ë¾ì¹ç¤Ï¡¢¼«Æ°¥Û¡¼¥à¥Ç¥£¥ì¥¯¥È¥êÀßÄ굡ǽ¤â»ØÄꤷ¤Æ¤ª¤¯¤ÈÎɤ¤¤À¤í¤¦
¡Ú¥ê¥¹¥È8¡Û¡£ # service nscd start # chkconfig nscd on ¤³¤ì¤Ë¤è¤Ã¤Æ¸¡º÷·ë²Ì¤¬¥¥ã¥Ã¥·¥å¤µ¤ì¤ë¤¿¤á¡¢¥¢¥¯¥»¥¹¤¬¹â®¤Ë¤Ê¤ë¡Ê¤³¤ì¤òµ¯Æ°¤µ¤»¤Ê¤¯¤Æ¤âLDAP¤Îưºî¤Ë»Ù¾ã¤Ï¤Ê¤¤¡Ë¡£ Samba¥µ¡¼¥Ð¡¼¤òPDC/BDC¤È¤·¤Æ¥É¥á¥¤¥ó¤ò¹½ÃÛ¤¹¤ë¾ì¹ç¡¢PDC/BDC/¥á¥ó¥Ð¥µ¡¼¥Ð¡¼¤Îsmb.conf¥Õ¥¡¥¤¥ë¤ò ¡Úɽ2¡Û ¤Î¤è¤¦¤ËÀßÄꤹ¤ë¡£
Samba¤ÈLDAP¤òÍøÍѤ·¤¿´Ä¶¤Ç¤Ï¡¢¥æ¡¼¥¶¡¼¾ðÊó¤Ï¤¹¤Ù¤ÆLDAP¤Ë³ÊǼ¤µ¤ì¤Æ¤¤¤ë¤Î¤Ç¡¢PDC/BDC¤È¤¤¤Ã¤¿Ìò³ä¤Ï´Êñ¤ËÊѹ¹²Äǽ¤À¡£¤·¤¿¤¬¤Ã¤Æ¡¢Samba¤òÊ£¿ôÂæÍøÍѤ¹¤ë¾ì¹ç¤Ï¡¢1Âæ¤À¤±PDC¤òÀßÄꤷ¡¢¤½¤ì°Ê³°¤Ï¤¹¤Ù¤ÆBDC¤Ë¤¹¤ë¤ÈÎɤ¤¤À¤í¤¦¡£¤Þ¤¿¡¢Samba¤òPDC¤Ë¤¹¤ë¤È¤¤ÏWINS¥µ¡¼¥Ð¡¼¤Ë¤·¤¿¤Û¤¦¤¬Îɤ¤¤¬¡¢¤½¤ÎºÝ¡¢Windows¥¯¥é¥¤¥¢¥ó¥È¤Ë¤ª¤±¤ëWINSÀßÄê¤ÎÊѹ¹¤â˺¤ì¤º¤Ë¹Ô¤Ã¤Æ¤Û¤·¤¤¡£ LDAP¤òÍøÍѤ¹¤ë¾ì¹ç¡¢passdb backend¥Ñ¥é¥á¡¼¥¿¤Ç¤Ï¡Öldapsam¡×¤ò»ØÄꤹ¤ë¤¬¡¢Æ±»þ¤ËLDAP¥µ¡¼¥Ð¡¼¤Î¥Û¥¹¥È̾¤â»ØÄꤹ¤ë¡£ passdb backend=ldapsam:ldap://
¥Ç¥Õ¥©¥ë¥È¤Ï¡Ölocalhost¡×¤Ê¤Î¤Ç¡¢Æ±°ì¥Þ¥·¥ó¾å¤ÎÀßÄê¤Ç¤¢¤ì¤Ð¡Ö:ldap:// ¥¢¥«¥¦¥ó¥È¸¡º÷ÍÑDN¤Ï¡¢ldap suffix¥Ñ¥é¥á¡¼¥¿¤ÇÀßÄꤹ¤ë¡£¤³¤³¤Ç¤Ï¡Ödc=miraclelinux,dc=com¡×¤È¤¹¤ë¤¿¤á¡¢¼¡¤Î¤è¤¦¤ËÀßÄꤷ¤¿¡£ ldap suffix="dc=miraclelinux,dc=com" LDAP´ÉÍý¼ÔÍÑDN¤Ï¡¢ldap admin dn¥Ñ¥é¥á¡¼¥¿¤ÇÀßÄꤹ¤ë¡£¤³¤ì¤Ï/etc/openldap/slapd.conf¤Ç¤Î»ØÄê¤ÈƱ°ì¤Ë¤·¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£¤·¤¿¤¬¤Ã¤Æ¡¢¤³¤³¤Ç¤Ï°Ê²¼¤Î¤è¤¦¤ËÀßÄꤷ¤¿¡£ ldap admin dn = cn=Manager,dc=miraclelinux,dc=com ¤Þ¤¿¡¢LDAP´ÉÍý¼ÔÍѥѥ¹¥ï¡¼¥É¤Ï¡¢smbpasswd¥³¥Þ¥ó¥É¤ÇÀßÄꤹ¤ë¡£ # smbpasswd -w miracle ¢¨
°Ê¾å¤ÎÀâÌÀ¤òƧ¤Þ¤¨¤Æ¡¢¤³¤³¤Ç¤Ï ¡Ú¥ê¥¹¥È9¡Û ¤Î¤è¤¦¤ÊÀßÄê¥Õ¥¡¥¤¥ë¤òÍѰդ·¤¿¡£ºÇ¸å¤Ë¡¢Samba¤òµ¯Æ°¤¹¤ë¡£ # service smb start
LDAP¤Ø¤Î½é´ü¥Ç¡¼¥¿¤Î³ÊǼ¤ä¡¢¥æ¡¼¥¶¡¼¤ä¥°¥ë¡¼¥×¤Î´ÉÍýÍѤΥġ¼¥ë¤È¤·¤Æ¡¢smbldap-tools¤¬ÍѰդµ¤ì¤Æ¤¤¤ë¡£¤³¤ì¤ÏSamba¤Î¥½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¤Ë´Þ¤Þ¤ì¤ë¤¬¡¢¼¡¤Î¥µ¥¤¥È¤ÇºÇ¿·¥½¡¼¥¹¥³¡¼¥É¤äRPM¥Ñ¥Ã¥±¡¼¥¸¤¬ÍѰդµ¤ì¤Æ¤¤¤ë¤Î¤Ç¡¢¤½¤Á¤é¤òÍøÍѤ·¤Æ¤Û¤·¤¤¡£ smbldap-tools¤ÏPerl¤Çµ½Ò¤µ¤ì¤Æ¤ª¤ê¡¢°Ê²¼¤ÎPerl¥â¥¸¥å¡¼¥ë¡ÊÃí3¡Ë¤¬É¬ÍפʤΤǡ¢¥Ñ¥Ã¥±¡¼¥¸¥·¥¹¥Æ¥à¤Ê¤É¤òÍøÍѤ·¤ÆÆ³Æþ¤·¤Æ¤Û¤·¤¤¡£
IO-Socket-SSL-0.95.tar.gz
XML-NamespaceSupport-1.08.tar.gz XML-SAX-0.12.tar.gz Authen-SASL-2.04.tar.gz Convert-ASN1-0.18.tar.gz perl-ldap-0.29.tar.gz smbldap-tools¤ÎƳÆþ¤Ë¤è¤Ã¤Æ¡¢ ¡Úɽ3¡Û ¤Î¥¹¥¯¥ê¥×¥È·²¤¬¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤ë¡£
smbldap-tools¤Î»ÈÍÑÁ°¤Ë¤Ï¡¢¤Þ¤º/etc/samba/smbldap_conf.pm¥Õ¥¡¥¤¥ë¤Ë¤ª¤¤¤Æ¼¡¤Î¹Ô¤òÀßÄꤷ¤Æ¤ª¤¯¡£ $masterLDAP = <LDAP¥µ¡¼¥Ð¡¼¤Î¥Û¥¹¥È̾> $slaveLDAP = <LDAP¥µ¡¼¥Ð¡¼¤Î¥Û¥¹¥È̾> $suffix = <¥Ù¡¼¥¹¥µ¥Õ¥£¥Ã¥¯¥¹> $binddn = <LDAP´ÉÍý¼ÔDN> $bindpasswd = <LDAP´ÉÍý¼Ô¥Ñ¥¹¥ï¡¼¥É> $SID = <¡Önet getlocalsid¡×¥³¥Þ¥ó¥É¤Ç¼èÆÀ¤·¤¿SID>
¤³¤ì°Ê³°¤Ë¤âɬÍפʹàÌܤˤĤ¤¤Æ¤Ï¡¢Å¬µ¹ÀßÄꤷ¤Æ¤ª¤³¤¦¡£ # smbldap-populate.pl Samba¥Þ¥·¥ó¤äWindows NT/2000/XP¤ò¥É¥á¥¤¥ó¥á¥ó¥Ð¤ËÄɲ乤ë¾ì¹ç¤Ï¡¢PDC¾å¤Ç¥É¥á¥¤¥ó¥á¥ó¥Ð¤Î¥Þ¥·¥ó¥¢¥«¥¦¥ó¥È¤òºîÀ®¤¹¤ë¡£ ¤Þ¤º¤Ï¡¢PDC¾å¤Îroot¸¢¸Â¤Ç¡¢¥É¥á¥¤¥ó´ÉÍýÍѥ桼¥¶¡¼domainadd¤òºîÀ®¤·¤è¤¦¡£ # smbldap-useradd.pl -a -d /dev/null -s /bin/false \ > domainadd -g "Domain Admins" # smbldap-usermod.pl -u 0 domainadd # smbldap-passwd.pl domanadd ¸å¤Ï¡¢¥É¥á¥¤¥ó¥á¥ó¥Ð¤Î¥Þ¥·¥óʬ¤À¤±°Ê²¼¤Î¥³¥Þ¥ó¥É¤ò¼Â¹Ô¤¹¤ë¡£ # smbldap-useradd -w <Windows¥Þ¥·¥ó̾>
Windows NT/2000/XP¡ÊÃí4¡Ë¾å¤Ç¤Ï¡¢¤Þ¤ºAdministrator¤È¤·¤Æ¥í¥°¥ª¥ó¤¹¤ë¡£¥³¥ó¥È¥í¡¼¥ë¥Ñ¥Í¥ë¤Î¡Ö¥·¥¹¥Æ¥à¡×¤Î¥×¥í¥Ñ¥Æ¥£¤Ë¤ª¤¤¤Æ¡¢¡Ö¥Í¥Ã¥È¥ï¡¼¥¯ID¡×¥¿¥Ö¤Î¡Î¥Í¥Ã¥È¥ï¡¼¥¯ID¡Ï¤Î¥Ü¥¿¥ó¤ò¥¯¥ê¥Ã¥¯¤·¤è¤¦¡£¡Ö¥æ¡¼¥¶¡¼¥¢¥«¥¦¥ó¥È¤È¥É¥á¥¤¥ó¾ðÊó¡×¤Ë¤ª¤¤¤Æ¡¢Samba PDC¤ÇÀßÄꤷ¤¿domainadd¥æ¡¼¥¶¡¼¤È¥Ñ¥¹¥ï¡¼¥É¡¢¥É¥á¥¤¥ó̾¤òÆþÎϤ¹¤ë¡Ú¿Þ5¡Û¡£ºÇ¸å¤Ë¡¢¡Ö¥É¥á¥¤¥ó¤Ø¤è¤¦¤³¤½¡×¤È¤¤¤¦¥À¥¤¥¢¥í¥°¤¬É½¼¨¤µ¤ì¤ì¤ÐOK¤À¡£
¥æ¡¼¥¶¡¼¤ÎÄɲäÏsmbldap-tools¤À¤±¤Ç²Äǽ¤À¤¬¡Êpdbedit¥³¥Þ¥ó¥É¤ÏÉÔÍסˡ¢¥°¥ë¡¼¥×¤ÎÄɲäˤÏsmbldap-tools¤Ë²Ã¤¨¤Æ¡Önet groupmap¡×¥³¥Þ¥ó¥É¤¬É¬ÍפȤʤë¤Î¤ÇÃí°Õ¤·¤è¤¦¡£¤È¤¯¤Ë¡¢É¬¿Ü¥°¥ë¡¼¥×¡ÊDomain Admis¡¢DomainGuests¡¢Domain Users¡Ë¤ÎÅÐÏ¿¤ò˺¤ì¤Ê¤¤¤Ç¤Û¤·¤¤¡£ # smbldap-useradd.pl -a -m odagiri ¤È¼Â¹Ô¤·¡¢Samba¥É¥á¥¤¥ó´Ä¶¤Ç¥°¥í¡¼¥Ð¥ë¥°¥ë¡¼¥×dev¤òºîÀ®¤¹¤ë¾ì¹ç¤Ï¼¡¤Î¤è¤¦¤Ë¼Â¹Ô¤¹¤ë¡£ # smbldap-groupadd.pl dev # net groupmap add ntgroup=dev unixgroup=dev type=domain ÀßÄê¤È¥æ¡¼¥¶¡¼¤ÎÄɲ䬽ªÎ»¤·¤¿¤é¡¢Windows¥¯¥é¥¤¥¢¥ó¥È¤ò¥ê¥Ö¡¼¥È¤·¡¢ÀßÄꤷ¤¿Windows¥É¥á¥¤¥ó¤Ø¥í¥°¥ª¥ó¤¹¤ë¡£»öÁ°¤Ë¥í¥°¥ª¥ó¥¹¥¯¥ê¥×¥È¤ò½àÈ÷¤·¤Æ¤ª¤±¤Ð¡¢ÌäÂê¤Ê¤¯Æ°ºî¤¹¤ë¤Ï¤º¤À¡£
Êѹ¹ÅÀ¤ËÃí°Õ¤·¤¿ÀßÄê¤ò
°Ê¾å¡¢Samba 3.0.0¤Ë¤è¤ë¥±¡¼¥¹Ê̤ι½ÃÛÊýË¡¤ò¶î¤±Â¤Ç²òÀ⤷¤¿¡£»È¤¤Êý¤¬¾¯¤·Æñ¤·¤¯¤Ê¤Ã¤¿¤¬¡¢Ì¥ÎÏËþºÜ¤Îµ¡Ç½¤¬Áý¤¨¤¿¤È¤â¤¤¤¨¤ë¤À¤í¤¦¡£º£¸å¤ÎÉʼÁ¸þ¾å¤Ë¤Ä¤¤¤Æ¤â´üÂÔ¤·¤¿¤¤¤È¤³¤í¤À¡£
Part 4 ´û¸´Ä¶¤«¤é¤Î°Ü¹ÔÊýË¡
°Ü¹Ô²Äǽ¤Ê·ÁÂÖ
Samba 3.0¤ÎÌ̵ܶ¡Ç½¤Î1¤Ä¤Ï¡¢NT¥É¥á¥¤¥ó´Ä¶¤«¤é¤Î°Ü¹Ô¤Ç¤¢¤ë¡£Samba 3.0¤Ç¤Ï¡¢¼¡¤Î¤è¤¦¤Ê´Ä¶¤«¤é¤Î°Ü¹Ôºî¶È¤¬²Äǽ¤È¤Ê¤Ã¤Æ¤¤¤ë¡£
Windows NT 4.0¤òPDC¤È¤·¤¿´û¸¤ÎNT¥É¥á¥¤¥ó´Ä¶¤Ï¡¢¡Önet vampire¡×¥³¥Þ¥ó¥É¤ò»ÈÍѤ¹¤ë¤³¤È¤ÇSamba3.0¤Ø°Ü¹Ô²Äǽ¤À¡£¤³¤Î¾ì¹ç¡¢¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¡Êpassdb backend¥Ñ¥é¥á¡¼¥¿¡Ë¤È¤·¤ÆSamba 3.0¤Îldapsam¤¬¿ä¾©¤µ¤ì¤ë¤¬¡¢Samba 2.2¸ß´¹¥â¡¼¥É¡Êldapsam_compat¡Ë¤âÍøÍѤǤ¤ë¡£¤³¤ì¤Ë¤è¤Ã¤Æ¡¢Samba 3.0¤ÇWindows NT 4.0¥É¥á¥¤¥ó´Ä¶¤òLDAP¤Ø°Ü¹Ô¤·¤¿¸å¡¢Samba2.2¤Ç¤Î±¿ÍѤâ²Äǽ¤È¤Ê¤ë¡£
Samba 2.2¤Ç¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤È¤·¤Æsmbpasswd¥Õ¥¡¥¤¥ë¤ò»ÈÍѤ·¤Æ¤¤¤¿¾ì¹ç¡¢Samba 3.0¤Îtdbsam¤äldapsam¤Î´Ä¶¤Ø°Ü¹Ô²Äǽ¤À¡£
Samba 3.0¤Ë¤ª¤¤¤Æ¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤Ësmbpasswd¤ätdbsam¤ò»ÈÍѤ·¤Æ¤¤¤¿¾ì¹ç¡¢tdbsam¤äldapsam¤Î´Ä¶¤Ø¤È°Ü¹Ô²Äǽ¤À¡£
NT¥É¥á¥¤¥ó´Ä¶¤«¤é¤Î°Ü¹Ô
¼ÂºÝ¤Ë¡¢NT¥É¥á¥¤¥ó´Ä¶¤òSamba 3.0¤Ø°Ü¹Ô¤·¤Æ¤ß¤è¤¦¡£
Samba 3.0¤Ç¤Î°Ü¹Ô¼ê½ç¤Ï¡¢Samba 2.2¤Î¾ì¹ç¤È¾¯¤·°Û¤Ê¤Ã¤Æ¤¤¤ë¡£Samba 3.0¤Ç¤Ïºî¶È¼ê½ç¤¬ÂçÉý¤Ë¸º¾¯¤¹¤ë¤¦¤¨¡¢¿·¤·¤¤LDAPÍÑSamba 3.0¥¹¥¡¼¥Þ¤òÍøÍѤ¹¤ë¤È¡¢³Æ¥æ¡¼¥¶¡¼¤ÎSID¤äRID¡¢¥×¥é¥¤¥Þ¥ê¥°¥ë¡¼¥×¾ðÊó¤Ê¤É¡¢Samba 2.2¤Ç¤Ï°Ü¹Ô¤Ç¤¤Ê¤«¤Ã¤¿¾ðÊó¤ä°Üư¥×¥í¥Õ¥¡¥¤¥ë¤Ê¤É¤Ë¤âÂбþ¤Ç¤¤ë¡ÊSamba2.2¸ß´¹LDAP¥¹¥¡¼¥Þ¤ò»ÈÍѤ·¤¿¾ì¹ç¤Ï¡¢°Üư¥×¥í¥Õ¥¡¥¤¥ë¤Ê¤É¤¬°Ü¹Ô¤Ç¤¤Ê¤¤¡Ë¡£
Samba 2.2 ¤Î¾ì¹ç
Samaba 3.0 ¤Î¾ì¹ç
¤½¤ì¤Ç¤Ï¡¢¼ÂºÝ¤Ë°Ü¹Ôºî¶È¤ò¹Ô¤Ã¤Æ¤ß¤è¤¦¡£¤³¤³¤Ç¤Ï¡¢Part 3¤Î ¡Ú¥ê¥¹¥È9¡Û ¤Ë¼¨¤·¤¿smb.conf¤ò¥Ù¡¼¥¹¤Ë²òÀ⤹¤ë¡£
NT¥É¥á¥¤¥ó¤«¤é°Ü¹Ô¤·¤Æ¤ß¤¿¤È¤³¤í¡¢¸½¾õ¤Ç¤Ï°Ê²¼¤Î¤è¤¦¤ÊÀ©¸Â¤¬Â¸ºß¤·¤¿¡£¼ÂºÝ¤Ë°Ü¹Ô¤¹¤ë¤È¤¤Ï¡¢¤³¤ÎÅÀ¤ËÃí°Õ¤·¤Æ¤Û¤·¤¤¡£
Samba2.2¤«¤é¤Î°Ü¹Ô
Samba 2.2¤«¤é¤Î°Ü¹Ô¤Ï¡¢Èæ³ÓŪ´Êñ¤À¡£¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹Ê̤˾Ҳ𤷤褦¡£ Samba 2.2¤Ë¤ª¤¤¤Æ¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤Ësmbpasswd¤ò»ÈÍѤ·¤Æ¤¤¤¿¾ì¹ç¡¢smb.conf¤Ç¡¢ passdb backend = smbpasswd ¤È»ØÄꤹ¤ì¤Ð¡¢smbpasswd¤Ë¤è¤Ã¤Æ·ÑÂ³ÍøÍѤǤ¤ë¡£ smbpasswd¤«¤étdbsam¤ØÊѹ¹¤·¤¿¤¤¾ì¹ç¤Ï¡¢pdbedit¥³¥Þ¥ó¥É¤ò»ÈÍѤ¹¤ë¡£ # pdbedit -i smbpasswd:/etc/smbpasswd \ > -e tdbsam:/etc/samba/passdb.tdb ¤³¤ì¤Ë¤è¤Ã¤Æ¡¢/etc/smbpasswd¤Î¥Ç¡¼¥¿¤¬/etc/samba/passdb.tdb¤Ø°Ü¹Ô¤µ¤ì¤ë¡£ Samba 2.2¤ÇLDAP¤ò»È¤Ã¤¿PDC¤ò¹½ÃÛ¤·¤Æ¤¤¤ë¾ì¹ç¤Ï¡¢¤Þ¤ºslapcat¥³¥Þ¥ó¥É¤Ë¤è¤Ã¤ÆLDAP¥Ç¡¼¥¿¤òLDIF¥Õ¥¡¥¤¥ë¤Ø¥¨¥¯¥¹¥Ý¡¼¥È¤¹¤ë¡£ # slapcat -l <LDIF¥Õ¥¡¥¤¥ë> ¸å¤Ï¡¢¤³¤ÎLDIF¥Õ¥¡¥¤¥ë¤òÍøÍѤ·¤Æ¡¢Samba 3.0.0¤Î¥½¡¼¥¹¥¢¡¼¥«¥¤¥Ö¡Êexamples/LDAP°Ê²¼¡Ë¤Ë´Þ¤Þ¤ì¤ëconvertSambaAccount¥¹¥¯¥ê¥×¥È¤ÇSamba 3.0ÍÑ¥¹¥¡¼¥Þ¤ØÊÑ´¹¤¹¤ë¡£ # convertSambaAccount --sid=<SID> \ > --input=<ÊÑ´¹Á°¤ÎLDIF¥Õ¥¡¥¤¥ë> \ > --output=<ÊÑ´¹¸å¤ÎLDIF¥Õ¥¡¥¤¥ë> ÊÑ´¹¸å¤ÎLDIF¥Õ¥¡¥¤¥ë¤ò¡¢slapadd¥³¥Þ¥ó¥É¤ÇLDAP¤ØÅêÆþ¤¹¤ì¤Ð´°Î»¤À¡£ # slapadd -l <LDIF¥Õ¥¡¥¤¥ë>
Samba3.0¤«¤é¤Î°Ü¹Ô
Samba 3.0¤É¤¦¤·¤Ç¤â¡¢¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤ÎÊѹ¹¤òȼ¤¦°Ü¹Ô¤Ï²Äǽ¤À¡£¤³¤Îºî¶È¤Ï¡¢¤¹¤Ù¤Æpdbedit¥³¥Þ¥ó¥É¤Ç¹Ô¤¦¡Ú¼Â¹ÔÎã2¡Û¡£ ¡Ú¼Â¹ÔÎã2¡Û¥æ¡¼¥¶¡¼´ÉÍý¥Ç¡¼¥¿¥Ù¡¼¥¹¤Î¤ÎÊѹ¹¡¦smbpasswd¤«¤étdbsam¤Ø¤ÎÊѹ¹ # pdbedit -i smbpasswd:/etc/smbpasswd -e tdbsam:/etc/samba/passdb.tdb ¡¦tdbsam¤«¤éldapsam¤Ø¤ÎÊѹ¹ # pdbedit -i tdbsam:/etc/samba/passdb.tdb -e ldapsam:ldap://<LDAP¥µ¡¼¥Ð¡¼>
¥æ¡¼¥¶¡¼´ÉÍýµ¡Ç½¤À¤±¤Ç¤âÍøÍѤ¹¤ë²ÁÃͤ¢¤ê
Samba 3.0¤Î¼çÍ×µ¡Ç½¤ò²òÀ⤷¤Æ¤¤¿¤¬¡¢Íý²ò¤·¤Æ¤¤¤¿¤À¤±¤¿¤À¤í¤¦¤«¡©¡¡Samba 3.0¤ËÂФ¹¤ëÉ®¼Ô¤Î´¶ÁۤȤ·¤Æ¤Ï¡¢ÉʼÁŪ¤ËÌäÂê¤Î¤¢¤ëÉôʬ¤â»Ä¤Ã¤Æ¤ª¤ê¡¢¤¹¤Ù¤Æ¤ÎÍÑÅӤˤª¤¤¤Æ°Ü¹Ô¤ò´«¤á¤é¤ì¤ë¾õ¶·¤È¤Ï¤¤¤¤Æñ¤¤¡£¸½ºß¡¢¥ß¥é¥¯¥ë¡¦¥ê¥Ê¥Ã¥¯¥¹¤Î¥á¥ó¥Ð¡¼¤ò¤Ï¤¸¤á¤È¤¹¤ëÆüËÜSamba¥æ¡¼¥¶²ñ¤¬±Ô°ÕÅØÎÏÃæ¤Ê¤Î¤Ç¡¢À®²Ì¤Ë´üÂÔ¤·¤Æ¤Û¤·¤¤¡£
|
|
|