MIRACLE

¥á¡¼¥ë¥µ¡¼¥Ó¥¹¿½¹þ ¥æ¡¼¥¶¡¼ÅÐÏ¿ ¥Ñ¡¼¥È¥Ê¡¼¾ðÊó
¤ªÌ䤤¹ç¤ï¤» FAQ ¥µ¥¤¥È¥Þ¥Ã¥×
MIRACLE LINUX¤ÎÆÃĹ À½ÉʾҲ𠥵¡¼¥Ó¥¹°ÆÆâ ¹ØÆþ ¥µ¥Ý¡¼¥È µ»½Ñ¥Õ¥©¡¼¥é¥à

¥Æ¥¯¥Î¥í¥¸¡¼¾ðÊó

µ»½Ñ¥Õ¥©¡¼¥é¥à


Samba ¤¬Æ°ºî¤¹¤ë Linux ¥Þ¥·¥ó¤ò Windows ¥É¥á¥¤¥ó¤Ë»²²Ã¤µ¤»¤ëÊýË¡
¡½ MIRACLE LINUX V2.1 ¤Ë¤ª¤±¤ë Samba Winbind ÍøÍÑÊýË¡ ¡½

  1. ¤Ï¤¸¤á¤Ë

    MIRACLE LINUX Standard Edition V2.1 ¤ª¤è¤Ó Red Hat Linux Advanced Server 2.1 powered by MIRACLE ¤Ç¤Ï Samba 2.2.4 ÆüËܸìÈǤ¬ºÎÍѤµ¤ì¤Æ¤¤¤Þ¤¹¡£

    Samba 2.2.4 ÆüËܸìÈǤǤΤµ¤Þ¤¶¤Þ¤Ê¿·µ¡Ç½¤ÎÃæ¤Ç¡¢Winbind µ¡Ç½¤Ï½¾Íè¤Î¥É¥á¥¤¥ó¥á¥ó¥Ð (Security=DOMAIN) µ¡Ç½¤òÃÖ¤­´¹¤¨¤ë½ÅÍפǤ«¤ÄÂçÊÑÊØÍø¤Êµ¡Ç½¤Ç¤¹¡£
    ¤³¤³¤Ç¤Ï¤³¤Î Winbind µ¡Ç½¤ÎÍøÍÑÊýË¡¤ò¾Ò²ð¤·¤Þ¤¹¡£

  2. Winbind µ¡Ç½³µÍ×

    Winbind ¤Ï°Ê²¼¤Îµ¡Ç½¤òÄ󶡤·¤Þ¤¹¡£

    • Linux ¤È Windows ¤Î´Ö¤ÎÅý°ì¥í¥°¥ª¥ó

      Windows ¥É¥á¥¤¥óÆâ¤Î¡Ê¥É¥á¥¤¥ó¤Ë»²²Ã¤·¤¿¡Ë¤¹¤Ù¤Æ¤Î¥Þ¥·¥ó¤ËÂФ·¡¢Æ±¤¸¥æ¡¼¥¶¥¢¥«¥¦¥ó¥È¤È¥Ñ¥¹¥ï¡¼¥É¤ò»È¤Ã¤Æ Linux¡¢Windows ¤Î¥í¥°¥ª¥ó¤òÅý°ì²Äǽ¤Ë¤·¤Þ¤¹¡£



      Fig1. Winbind µ¡Ç½

      ½¾Íè¤Î Samba 2.0·Ï¤Ç¤â Samba ¥Þ¥·¥ó¤ò Windows ¥É¥á¥¤¥ó¤Ë»²²Ã¤µ¤»¤ë¤³¤È¤¬²Äǽ¤Ç¤·¤¿¤¬¡¢¤½¤Î¾ì¹ç¤Ï¥Ñ¥¹¥ï¡¼¥É¤À¤±¤¬ Windows ¥É¥á¥¤¥ó¤Ëǧ¾Ú¤µ¤ì¤ë¤À¤±¤Ç¡¢³Æ Linux ¥Þ¥·¥ó¾å¤Ë¥æ¡¼¥¶¤ä¥°¥ë¡¼¥×¤ÎÅÐÏ¿¤¬ÊÌÅÓɬÍפǤ·¤¿¡£

      ¤½¤Î¤¿¤á¡¢Linux + Samba¤Î¥Þ¥·¥ó¤¬Â¿¤¯¤Ê¤ë¤È¥æ¡¼¥¶¤ä¥°¥ë¡¼¥×¤Î´ÉÍý¤¬ÌÌÅݤǤ·¤¿¡£

      Winbind ¤Ï¤³¤¦¤·¤¿ÌäÂê¤ò²ò·è¤·¤Þ¤¹¤¬¡¢°Ê²¼¤ÎÀ©¸Â»ö¹à¤â»Ä¤Ã¤Æ¤¤¤Þ¤¹¡£

    • winbind ¤ÎÀ©¸Â»ö¹à
      • ¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤ò Windows NT4.0/2000¤Ë¤·¤Ê¤¤¤È¥É¥á¥¤¥ó¤ò¹½ÃÛ¤¹¤ë¤³¤È¤¬¤Ç¤­¤Ê¤¤¡£
        Samba¤ò¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤Ë¤¹¤ë¤È winbind ¤ÏÍøÍѤǤ­¤Þ¤»¤ó¡£

      • Windows ¤Î RID ¤«¤é UNIX ¤Î ID¡Êuid¡¢gid)¤Ø¤Î¥Þ¥Ã¥×¤Ï±é»»Åª¤Ëºî¤é¤ì¤¿¤â¤Î¤Ç¤Ï¤Ê¤¯¡¢winbind ¤¬Ì¤ÅÐÏ¿¤È¤ß¤Ê¤·¤¿¥æ¡¼¥¶¡¼¤ä¥°¥ë¡¼¥×¤«¤é³ä¤êÅö¤Æ¤é¤ì¤Þ¤¹¡£
        ½¾¤Ã¤Æ¡¢¥É¥á¥¤¥óÆâ¤Î¤¹¤Ù¤Æ¤Î Linux ¤Ç uid¡¢gid ¤ÏƱ¤¸¤Ë¤Ê¤ë¤È¤Ï¸Â¤é¤Ê¤¤¤·¡¢¥Þ¥Ã¥×¾ðÊó¤òÊÝ»ý¤·¤Æ¤¤¤ë¥Õ¥¡¥¤¥ë¤¬²þ¤¶¤ó¤µ¤ì¤¿¤ê¡¤Ç˲õ¤µ¤ì¤ë¤È RID ¤«¤é UNIX ¤Î ID ¤Ø¤Î¥Þ¥Ã¥×¤òÉüµì¤¹¤ë¤³¤È¤Ïº¤Æñ¤Ç¤¹¡£
        ¡ÊNFS¤ò»ÈÍѤ¹¤ë»þ¡¢uid ¤È gid ¤¬Åý°ì¤µ¤ì¤Ê¤¤¤Î¤ÇÌäÂê¤È¤Ê¤ê¤Þ¤¹¡Ë

      • Linux ¤Î passwd ¥³¥Þ¥ó¥É¤Ç¤Î Windows ¥É¥á¥¤¥ó¥Ñ¥¹¥ï¡¼¥É¤ÎÊѹ¹¤Ï¤Ç¤­¤Þ¤»¤ó¡£
        smbpasswd -r ¥É¥á¥¤¥ó¥µ¡¼¥Ð̾

        ¤Ç²Äǽ¤Ê¤Î¤Ç

        alias passwd = smbpasswd -r ¥É¥á¥¤¥ó¥µ¡¼¥Ð̾

        ¤ò°ìÈ̥桼¥¶¤Î bash_profile ¤ËÆþ¤ì¤¿¤ê¡¢SWAT ¤Ë¤è¤ë¥Ñ¥¹¥ï¡¼¥ÉÊѹ¹¤ò¥ë¡¼¥ëÉÕ¤±¤ë¤È¤¤¤¤¤Ç¤·¤ç¤¦¡£

      • ¸½¾õ¤Î winbind ¤Î PAM ¥â¥¸¥å¡¼¥ë¤Ï¡¢¥æ¡¼¥¶Ëè¤Ë¥í¥°¥¤¥ó¤Ç¤­¤ë¥ï¡¼¥¯¥¹¥Æ¡¼¥·¥ç¥ó¤òÀ©¸Â¤¹¤ë¤³¤È¤ä¥í¥°¥ª¥ó»þ´Ö¤òÀ©¸Â¤¹¤ëµ¡Ç½¤Ê¤É¤ò¼Â¸½¤·¤Æ¤¤¤Þ¤»¤ó¡£

  3. ÀßÄê¼ê½ç

    Winbind ¤ÎÀßÄê¤Ï°Ê²¼¤Î¼ê½ç¤Ç¹Ô¤¤¤Þ¤¹¡£

    1. Samba ¥¤¥ó¥¹¥È¡¼¥ë³Îǧ
    2. Winbind (smb.conf) ¤ÎÀßÄê
    3. Windows ¥É¥á¥¤¥ó¤Ë Samba ¥Þ¥·¥ó¤òÅÐÏ¿
    4. ¥Þ¥·¥ó¡¦¥¢¥«¥¦¥ó¥È¤ÎºîÀ®
    5. Winbind ¥Ç¡¼¥â¥ó¤Îµ¯Æ°¤Èưºî³Îǧ
    6. NSSWITCH (/etc/nsswitch.conf) ¤ÎÀßÄê
    7. PAM (/etc/pam.d/system-auth) ¤ÎÀßÄê

    °Ê²¼¤Ë½ç¤òÄɤäÆÀâÌÀ¤·¤Þ¤¹¡£

  4. Samba ¥¤¥ó¥¹¥È¡¼¥ë³Îǧ

    Winbind ¤òÍøÍѤ¹¤ë¤Ë¤Ï¡¢Samba 2.2.4 ÆüËܸìÈǡʤ⤷¤¯¤Ï¤³¤ì¤è¤ê¿·¤·¤¤ÈǤΤâ¤Î¡Ë¤¬É¬ÍפǤ¹¡£

    Samba ¤¬¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤¤ë¤«¤Ï°Ê²¼¤Î¥³¥Þ¥ó¥É¤Ç³Îǧ¤·¤Þ¤¹¡£

    # rpm -q samba

    Samba ¤Î¥Ñ¥Ã¥±¡¼¥¸¤È¥Ð¡¼¥¸¥ç¥ó¤¬É½¼¨¤µ¤ì¤ì¤Ð¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤¤ë¤³¤È¤Ë¤Ê¤ê¤Þ¤¹¡£

    ¤â¤·¡¢¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤¤Ê¤±¤ì¤Ð¡¢MIRACLE LINUX ¤Î¥¤¥ó¥¹¥È¡¼¥ë CD ¤ò¥Þ¥·¥ó¤ËÁÞÆþ¤·¡¢°Ê²¼¤Î¥³¥Þ¥ó¥É¤Ç¥¤¥ó¥¹¥È¡¼¥ë¤·¤Þ¤¹¡£

    # mount /mnt/cdrom
    # rpm -Uvh /mnt/cdrom/Miracle/RPMS/samba*.rpm

    ¤¹¤Ç¤Ë¥¤¥ó¥¹¥È¡¼¥ë¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤Ç¤â¡¢°Ê²¼¤Îºî¶È¤ò¹Ô¤¦Á°¤ËSamba¥Ç¡¼¥â¥ó¤òÄä»ß¤µ¤»¤Æ¤ª¤¯É¬Íפ¬¤¢¤ê¤Þ¤¹¤Î¤Ç¡¢°Ê²¼¤Î¤è¤¦¤Ë¤·¤ÆÄä»ß¤·¤Æ¤ª¤¤¤Æ¤¯¤À¤µ¤¤¡£

    # service smb stop

  5. Winbind ¡Êsmb.conf¡Ë ¤ÎÀßÄê

    Winbind ¤Ï½¾Íè¤Î Samba ¤Î smbd ¤ä nmbd ¤È°Û¤Ê¤ë¥Ç¡¼¥â¥ó¤Ç¤¹¤¬¡¢ÀßÄê¥Õ¥¡¥¤¥ë¤ÏƱ¤¸ /etc/samba/smb.conf ¤ò»ÈÍѤ·¡¢°Ê²¼¤Î¹àÌܤòÀßÄꤷ¤Þ¤¹¡£¡Ê²¼µ­°Ê³°¤Î¤â¤Î¤Ï SWAT ¤Î¥É¥­¥å¥á¥ó¥È»²¾È¤·¤Æ¤¯¤À¤µ¤¤¡Ë

    smb.conf ¥Ñ¥é¥á¡¼¥¿ ¥Ñ¥é¥á¡¼¥¿¤Î°ÕÌ£
    security Winbind ¤ò»ÈÍѤ¹¤ë»þ¤Ïɬ¤º security=DOMAIN ¤ò»ØÄꤷ¤Þ¤¹¡£
    workgroup Windows PDC (Primary Domain Controler) *Ãí1¤¬»ý¤Ä¥É¥á¥¤¥ó̾¤ÈƱ¤¸ Windows ¥É¥á¥¤¥ó̾¤ò»ØÄꤷ¤Þ¤¹¡£
    password server Winodws PDC ¤Î¥Û¥¹¥È̾¤ò»ØÄꤷ¤Þ¤¹¡£
    DNS ¤ä /etc/hosts¡¢WINS Åù¤Ç̾Á°²ò·è¤Ç¤­¤ë¤è¤¦¤Ë¤·¤Æ¤ª¤­¤Þ¤·¤ç¤¦¡£
    Ʊ°ì¥»¥°¥á¥ó¥È¤Ë PDC ¤¬Â¸ºß¤¹¤ë¤«¡¢WINS ¥µ¡¼¥Ð¤¬Â¸ºß¤¹¤ë¾ì¹ç¤Ï¡¢¡ö¤ò»ØÄꤹ¤ë¤³¤È¤â²Äǽ¤Ç¤¹¡£
    wins server WINS ¥µ¡¼¥Ð¤Î IP ¥¢¥É¥ì¥¹¤ò»ØÄꤷ¤Þ¤¹¡£
    Windows PDC ¤ò WINS ¥µ¡¼¥Ð¤È¤·¡¢¤½¤Î IP ¥¢¥É¥ì¥¹¤ò»ØÄꤹ¤ë¤Î¤¬Ë¾¤Þ¤·¤¤¤Ç¤¹¡£
    wins support=yes ¤È¤¹¤ë¤Î¤Ï˾¤Þ¤·¤¯¤¢¤ê¤Þ¤»¤ó¡£
    encrypt passwords Windows PDC ¤Ï°Å¹æ²½¥Ñ¥¹¥ï¡¼¥É¤ò»ÈÍѤ¹¤ë¤Î¤Ç¡¢É¬¤º Yes ¤ò»ØÄꤷ¤Þ¤¹¡£
    winbind separator Windows ¥É¥á¥¤¥ó¤È¥æ¡¼¥¶Ì¾¤Î¥»¥Ñ¥ì¡¼¥¿¤ò»ØÄꤷ¤Þ¤¹¡£
    Ä̾ï Windows ¥É¥á¥¤¥ó¡¦¥æ¡¼¥¶¤Ï¡Ö¥É¥á¥¤¥ó̾¡ï¥æ¡¼¥¶Ì¾¡×¤Çɽ¸½¤µ¤ì¡¢¥Ç¥Õ¥©¥ë¥È¤Î¥»¥Ñ¥ì¡¼¥¿¤Ï¡Ö¡ï¡×µ­¹æ¤Ç¤¹¡£
    ¤·¤«¤·¡¢UNIX ¤Î¥·¥§¥ë¤ÎÃæ¤Ç¡Ö¡ï¡×¤ÏÆÃ¼ì¤Ê°ÕÌ£¤ò»ý¤Ä¤¿¤á¡¢¤³¤Î¥»¥Ñ¥ì¡¼¥¿¤òÊѹ¹¤·¤¿¤¤¤È¤­¤Ë»ØÄꤷ¤Þ¤¹¡£
    ÂåÂØ¤È¤·¤Æ¤Ï¡¢¡Ö¡¿¡×¤Ê¤É¤Ç¤âÎɤ¤¤Ç¤¹¤¬¥Ç¥£¥ì¥¯¥È¥ê¤Î¥»¥Ñ¥ì¡¼¥¿¤È¤Ê¤Ã¤Æ¤¤¤ë¤Î¤ÇÉÔÅԹ礬¤Ç¤ë¾ì¹ç¤â¤¢¤ê¤Þ¤¹¡£¡Ö¡Ü¡×µ­¹æ¤ä¡Ö¡²¡Ê¥¢¥ó¥À¡¼¥Ð¡¼¡Ë¡×µ­¹æ¤Ê¤É¤¬Îɤ¤¤Ç¤·¤ç¤¦¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëwinbind separator = \ 
    »ÈÍÑÎã¡Ëwinbind separator = + 
    winbind uid winbind ¤¬ UNIX/Linux ¥æ¡¼¥¶¤Ë³ä¤êÅö¤Æ¤ë uid ¡Ê¥æ¡¼¥¶ID¡Ë ¤ÎÈϰϤò»ØÄꤷ¤Þ¤¹¡£
    /etc/passwd ¤ä NIS ¤ÎÃæ¤Ç»ÈÍѤµ¤ì¤Æ¤¤¤Ê¤¤ÈϰϤò»ØÄꤷ¤Ê¤±¤ì¤Ð¤Ê¤ê¤Þ¤»¤ó¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëwinbind uid = ¤Ê¤·
    »ÈÍÑÎã¡Ëwinbind uid = 10000-20000
    winbind gid winbind ¤¬ UNIX/Linux ¥æ¡¼¥¶¤Ë³ä¤êÅö¤Æ¤ë gid ¡Ê¥°¥ë¡¼¥×ID¡Ë ¤ÎÈϰϤò»ØÄꤷ¤Þ¤¹¡£
    /etc/group¤ä NIS ¤ÎÃæ¤Ç»ÈÍѤµ¤ì¤Æ¤¤¤Ê¤¤ÈϰϤò»ØÄꤷ¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤ê¤Þ¤»¤ó¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëwinbind gid = ¤Ê¤·
    »ÈÍÑÎã¡Ëwinbind gid = 10000-20000  
    winbind cache time winbind ¥Ç¡¼¥â¥ó¤¬¥æ¡¼¥¶¾ðÊó¡¢¥°¥ë¡¼¥×¾ðÊó¤ò¥­¥ã¥Ã¥·¥å¤¹¤ë»þ´Ö¤òÉÃñ°Ì¤Ç»ØÄꤷ¤Þ¤¹¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëwinbind cache time = 15 
    winbind enum users Â絬ÌÏ¥·¥¹¥Æ¥à¤Ç¤Î¥æ¡¼¥¶°ìÍ÷¼èÆÀ¤òÍÞÀ©¤¹¤ë¤¿¤á¤Î¥ª¥×¥·¥ç¥ó¤Ç¤¹¡£
    ¥Ç¥Õ¥©¥ë¥È¤Ï yes ¤Ç¤¹¤¬¡¢no ¤Ë¤¹¤ë¤È setpwent()¡¢getpwent()¡¢endpwent() ¤Î¥·¥¹¥Æ¥à´Ø¿ô¤Ç°ìÍ÷¤¬¼èÆÀ¤Ç¤­¤Ê¤¯¤Ê¤ê¡¢finger ¤Ê¤É¤Î°ìÉô¤Î¥×¥í¥°¥é¥à¤¬Æ°ºî¤·¤Ê¤¯¤Ê¤ë¤³¤È¤¬¤¢¤ê¤Þ¤¹¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëwinbind enum users = yes
    winbind enum groups Â絬ÌÏ¥·¥¹¥Æ¥à¤Ç¤Î¥°¥ë¡¼¥×°ìÍ÷¼èÆÀ¤òÍÞÀ©¤¹¤ë¤¿¤á¤Î¥ª¥×¥·¥ç¥ó¤Ç¤¹¡£
    ¥Ç¥Õ¥©¥ë¥È¤Ï yes ¤Ç¤¹¤¬¡¢no ¤Ë¤¹¤ë¤È setgrent()¡¢getgrent()¡¢ endgrent() ¤Î¥·¥¹¥Æ¥à´Ø¿ô¤Ç°ìÍ÷¤¬¼èÆÀ¤Ç¤­¤Ê¤¯¤Ê¤ê¡¢°ìÉô¤Î¥×¥í¥°¥é¥à¤¬Æ°ºî¤·¤Ê¤¯¤Ê¤ë²ÄǽÀ­¤¬¤¢¤ê¤Þ¤¹¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëwinbind enum groups = yes
    template homedir ¥æ¡¼¥¶¥Û¡¼¥à¥Ç¥£¥ì¥¯¥È¥ê¤ò»ØÄꤷ¤Þ¤¹¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëtemplate homedir = /home/%D/%U

    ¤³¤ì¤Ï¡¢/home/¥É¥á¥¤¥ó̾/¥æ¡¼¥¶Ì¾ ¤ò°ÕÌ£¤·¤Þ¤¹¡£
    template shell ¥æ¡¼¥¶¤Î¥Ç¥Õ¥©¥ë¥È¡¦¥·¥§¥ë¤ò»ØÄꤷ¤Þ¤¹¡£

    ¥Ç¥Õ¥©¥ë¥È¡Ëtemplate shell = /bin/false

    ¥Ç¥Õ¥©¥ë¥È¤Ç¤Ï¡¢Linux ¤Ë¥í¥°¥¤¥ó¤Ç¤­¤Ê¤¤¤Î¤Ç¡¢telnet ¤ä ssh ¤ò»ÈÍѤ¹¤ë¾ì¹ç¤Ï¡¢template shell = /bin/bash Åù¤ò»ØÄꤷ¤Þ¤¹¡£

    *Ãí1¡ËWindows NT ¤Ë¤è¤ë NT ¥É¥á¥¤¥ó¤Ë¤Ï¡¢PDC (Primary Domain Controler) ¤È BDC (Backup Domain Controler) ¤¬Â¸ºß¤·¤Þ¤¹¤¬¡¢Windows 2000 ¤Î Active Directory ¤Ë¤Ï PDC¡¢BDC ¤Ï¸ºß¤»¤º DC (Domain Controler) ¤Î¤ß¤È¤Ê¤ê¤Þ¤¹¡£

    Fig.2 ¤Ë smb.conf ¤ÎÀßÄê¤òºÜ¤»¤Þ¤¹¡£
    ¤Ê¤ª Winbind ¤ò»ÈÍѤ¹¤ë¾ì¹ç¡¢°Ê²¼¤Î¥Ñ¥é¥á¡¼¥¿¤Ï·è¤·¤Æ»ØÄꤷ¤Æ¤Ï¤¤¤±¤Þ¤»¤ó¡£

    domain logon = yes
    domain master = yes

    [global]
    	coding system = euc
    	client code page = 932
    	workgroup = MIRACLE
    	server string = Samba %v on %h
    	security = DOMAIN
    	encrypt passwords = Yes
    	password server = win2kdc
    	deadtime = 15
    	read size = 65536
    	socket options = TCP_NODELAY SO_RCVBUF=8192 SO_SNDBUF=8192
    	lm announce = False
    	preferred master = False
    	local master = No
    	domain master = False
    	dns proxy = No
    	wins server = 192.168.0.1
    	winbind uid = 1000-1500
    	winbind gid = 2000-2500
    	template shell = /bin/bash
    	winbind separator = _
    

    Fig2 smb.conf ÀßÄêÎã¡Ê½ÅÍפÊÉôʬ¤À¤±¤òÈ´¿è¤·¤Æ¤¤¤Þ¤¹¡Ë

  6. Windows NT4.0¡¿2000 Server¤Ç¤ÎÀßÄê

    Windows NT4.0¡¿2000 Server ¤ò¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤È¤·¤Æ¡¢¥É¥á¥¤¥ó¤ò¹½ÃÛ¤¹¤ëɬÍפ¬¤¢¤ê¤Þ¤¹¡£
    ¡ÊɬÍפ˱þ¤¸¤Æ¤³¤Î¥Þ¥·¥ó¤òWINS¥µ¡¼¥Ð¤äDNS¥µ¡¼¥Ð¤È¤¹¤ë¤ÈÎɤ¤¤Ç¤·¤ç¤¦¡Ë

    ¼¡¤Ë Windows ¥É¥á¥¤¥ó¤Î¥É¥á¥¤¥ó¡¦¥³¥ó¥È¥í¡¼¥é¤Ç¤¢¤ë Windows NT4.0 /2000 Server¾å¤Î "¥µ¡¼¥Ð¥Þ¥Í¡¼¥¸¥ã"(SRVMGR.EXE) ¤ò»È¤Ã¤Æ Samba ¥Þ¥·¥ó¤ò Windows NT Workstaton ¤È¤·¤Æ Windows ¥É¥á¥¤¥ó¤ËÄɲä·¤Þ¤¹¡£
    ¡ÊWindows2000¤Ç¤Ï¥¹¥¿¡¼¥È¡¦¥á¥Ë¥å¡¼¤Ë¤Ê¤¤¤Î¤Ç¡Ö¥Õ¥¡¥¤¥ë̾¤ò»ØÄꤷ¤Æ¼Â¹Ô¡×¤ò»È¤Ã¤Æµ¯Æ°¤·¤Þ¤¹¡Ë


    Fig3. ¥µ¡¼¥Ð¥Þ¥Í¡¼¥¸¥ã

    ¤³¤Î»þ¡¢Samba¥Þ¥·¥ó¤Ç¤Ê¤¯¡¢¥É¥á¥¤¥ó¤Ë»²²Ã¤¹¤ëWindows NT/2000/XP¥Þ¥·¥ó¤¹¤Ù¤Æ¤òÅÐÏ¿¤¹¤ë¤ÈÎɤ¤¤Ç¤·¤ç¤¦¡£
    ¡ÊWindows 95/98/Me¤ÏɬÍפʤ¤¡Ë


  7. Samba¥Þ¥·¥ó¤Î¥È¥é¥¹¥È¡¦¥¢¥«¥¦¥ó¥È¤òºîÀ®

    º£Å٤ϥɥᥤ¥ó¤Î¥á¥ó¥Ð¤Ë¤Ê¤ë¤¹¤Ù¤Æ¤Î Samba ¥Þ¥·¥ó¤Î¾å¤Ç root ¥æ¡¼¥¶¤Ë¤Ê¤Ã¤Æ¥É¥á¥¤¥ó»²²Ã¤Î¤¿¤á¤Î¥È¥é¥¹¥È¡¦¥¢¥«¥¦¥ó¥È¤òºîÀ®¤·¤Þ¤¹¡£
    »²²Ã¤¹¤ë Windows ¥É¥á¥¤¥ó¤Î̾Á°¤¬ DOMNAME , PDC¡Ê¥×¥é¥¤¥Þ¥ê¡¦¥É¥á¥¤¥ó¡¦¥³¥ó¥È¥í¡¼¥é¡Ë ¤Î¥³¥ó¥Ô¥å¡¼¥¿Ì¾¤¬ DOMPDC ¤Î¾ì¹ç¤ÎÊýË¡¤Ï°Ê²¼¤ÎÄ̤ê¤Ç¤¹¡£

    # smbpasswd -j DOMNAME -r DOMPDC
    smbpasswd: Joined domain DOMAIN.

    »öÁ°¤Ë Samba ¥µ¡¼¥Ð¤òÄä»ß¤µ¤»¡¢PDC ¤Î̾Á°²ò·è¤È ping ¤¬¤Ç¤­¤ë¤è¤¦¤Ë³Îǧ¤·¤Æ¤ª¤­¤Þ¤·¤ç¤¦¡£
    (¾åµ­¤ÎÎã¤Ç¤Ï ping DOMPDC ¤¬¤¦¤Þ¤¯¤¤¤¯¤³¤È¤ò³Îǧ)
    ping ¤¬¤¦¤Þ¤¯¤¤¤«¤Ê¤¤»þ¤Ï¡¢PDC ¤Î¥³¥ó¥Ô¥å¡¼¥¿Ì¾¤È IP ¥¢¥É¥ì¥¹¤ò /etc/hosts ¤Ëµ­½Ò¤¹¤ë¤«¡¢¤â¤·¤¯¤Ï¸å½Ò¤¹¤ë LIBNSS_WINS ¤òÀßÄꤹ¤ë¤Î¤¬Îɤ¤¤Ç¤·¤ç¤¦¡£


  8. ¥Í¡¼¥à ¥µ¡¼¥Ó¥¹ ¥¹¥¤¥Ã¥Á¤ÎÀßÄê(/etc/nsswitch.conf)

    ³ºÅö¥Þ¥·¥ó¤ò Samba ¤Ç¤·¤«ÍøÍѤ·¤Ê¤¤¾ì¹ç¡Êtelnet ¤ä ftp ¤Ç»ÈÍѤ·¤Ê¤¤¾ì¹ç¡Ë¤Ï¡¢NSSWITCH ¤ÎÀßÄê¤À¤±¡ÊPAM ¤ÎÀßÄê̵¤·¡Ë¤Ç Winbind ¤ÏÍøÍѲÄǽ¤Ë¤Ê¤ê¤Þ¤¹¡£

    /etc/nsswitch.conf ¤ÎÃæ¤Ç°Ê²¼¤Î¹Ô¤òõ¤·¡¢Êѹ¹¤·¤Þ¤¹¡£

    [Êѹ¹Á°¤ÎÎã]

    passwd:    files nisplus nis
    group:     files nisplus nis

    [Êѹ¹¸å¤ÎÎã]

    passwd:     files winbind
    group:      files winbind

    ¥Í¥Ã¥È¥ï¡¼¥¯¤¬Ê£¿ô¥»¥°¥á¥ó¥È¤Ë¤Þ¤¿¤¬¤Ã¤Æ¤¤¤ë¾ì¹ç¤ä¥Þ¥·¥óÂæ¿ô¤¬¤¢¤ëÄøÅÙ¤¢¤ë¾ì¹ç¤Ï¡¢PDC(Primary Domain Controler)¤Î Windows ¥µ¡¼¥Ð¤ò WINS ¥µ¡¼¥Ð¤È¤·¤Æ¡¢¤¹¤Ù¤Æ¤Î Linux/Windows ¥Þ¥·¥ó¤Ç LIBNSS_WINS ¤òÍøÍѤ¹¤ë¤³¤È¤ò¿ä¾©¤·¤Þ¤¹¡£


  9. ǧ¾Úµ¡¹½¤ÎÀßÄê(/etc/pam.d/system-auth)

    ³ºÅö¥Þ¥·¥ó¤ò Samba ¤Ç¤À¤±¤Ç¤Ê¤¯ ssh ¤ä telnet¡¢ftp ¤Ç¤â»ÈÍѤ¹¤ë¾ì¹ç¤Ï¡¢¥í¡¼¥«¥ë¥Þ¥·¥ó¤Îǧ¾ÚÊýË¡¤ò»ØÄꤹ¤ë¤¿¤á¡¢PAM ¤ÎÀßÄê¤âɬÍפǤ¹¡£

    /etc/pam.d/system-auth ¤ò°Ê²¼¤Î¤è¤¦¤Ë

    auth        sufficient    /lib/security/pam_winbind.so

    ¤È

    account     sufficient    /lib/security/pam_winbind.so

    ¤òÄɲ䷤ƽ¤Àµ¤·¤Þ¤¹¡£

    ¥æ¡¼¥¶¥Û¡¼¥à¤ò¼«Æ°¤ÇºîÀ®¤·¤¿¤¤¾ì¹ç¤Ï

    session     required      /lib/security/pam_mkhomedir.so skel=/etc/skel umask=0022

    ¤âÄɲ乤ë¤È¤¤¤¤¤Ç¤·¤ç¤¦¡£

    #%PAM-1.0
    auth        required      /lib/security/pam_env.so
    auth        sufficient    /lib/security/pam_unix.so likeauth nullok
    auth        sufficient    /lib/security/pam_winbind.so
    auth        required      /lib/security/pam_deny.so
    
    account     required      /lib/security/pam_unix.so
    account     sufficient    /lib/security/pam_winbind.so
    
    password    required      /lib/security/pam_cracklib.so retry=3
    password    sufficient    /lib/security/pam_unix.so nullok use_authtok md5 shadow
    password    required      /lib/security/pam_deny.so
    
    session     required      /lib/security/pam_limits.so
    session     required      /lib/security/pam_unix.so
    session     required      /lib/security/pam_mkhomedir.so skel=/etc/skel umask=0022
    

    Fig4. /etc/pam.d/system-auth ¤ÎÀßÄêÎã

  10. Winbind ¤È Samba ¤Îµ¯Æ°

    °Ê¾å¤ÇÀßÄê¤Ï´°Î»¤Ç³Æ¥Þ¥·¥ó¤Ç winbind ¥Ç¡¼¥â¥ó¤È Samba ¥×¥í¥»¥¹¡Ênmbd¡¢smbd ¥Ç¡¼¥â¥ó¡Ë¤òÀßÄꤹ¤ì¤Ð´°Î»¤Ç¤¹¡£

    # service smb start
    # service winbind start

    OS µ¯Æ°»þ¤Ë¥Ç¡¼¥â¥ó¤¬¼«Æ°µ¯Æ°¤¹¤ë¤è¤¦¤Ë°Ê²¼¤âÀßÄꤷ¤Æ¤ª¤­¤Þ¤·¤ç¤¦¡£

    # chkconfig smb on
    # chkconfig winbind on

    ¤â¤·¡¢¤¦¤Þ¤¯µ¯Æ°¤Ç¤­¤Ê¤±¤ì¤Ð¡¢/var/log/samba/ ¤Ë¤¢¤ë¥¨¥é¡¼¥í¥°¤ÎÆâÍÆ¤ò³Îǧ¤·¡¢ÀßÄê¤ò½¤Àµ¤·¤Þ¤·¤ç¤¦¡£


  11. ¥æ¡¼¥¶¤È¥°¥ë¡¼¥×¤Î´ÉÍý

    Winbind ¤òÍøÍѤ¹¤ë¾ì¹ç¤Ï PDC ¤È¤Ê¤ë Windows NT/2000 ¥µ¡¼¥Ð¤Ë¥æ¡¼¥¶¤òÄɲ乤ë¤À¤±¤Ç¡¢Linux ¤Ø¤Î telnet¡¢ftp¡¢ssh ¥í¥°¥¤¥ó¤â Samba ¤Ø¤Î¥Õ¥¡¥¤¥ë¶¦Í­¤âƱ¤¸¥Ñ¥¹¥ï¡¼¥É¤Ç¥¢¥¯¥»¥¹²Äǽ¤Ë¤Ê¤ê¤Þ¤¹¡£

    Windows NT4.0 ¥µ¡¼¥Ð¤Ç¤Î¥æ¡¼¥¶´ÉÍý¤Ï¡Ö¥É¥á¥¤¥ó¥æ¡¼¥¶¥Þ¥Í¡¼¥¸¥ã¡×¡Êusrmgr.exe¡Ë¤Ç¡¢Windows 2000 ¥µ¡¼¥Ð¤Ç¤Î¥æ¡¼¥¶´ÉÍý¤Ï¡ÖActive Directory ¥æ¡¼¥¶¡¼¤È¥³¥ó¥Ô¥å¡¼¥¿¡×¤Ç¹Ô¤¤¤Þ¤¹¡£


    Fig5. Windows 2000 ¥µ¡¼¥Ð¤Î¡ÖActive Directory ¥æ¡¼¥¶¡¼¤È¥³¥ó¥Ô¥å¡¼¥¿¡×

  12. Winbind¤Îưºî³Îǧ

    wbinfo ¥³¥Þ¥ó¥É¤ò»È¤¦¤È winbind ¤«¤é¾ðÊó¤ò¼è¤ê½Ð¤¹¤³¤È¤¬¤Ç¤­¡¢winbind ¤ÎÀßÄ꤬¤¦¤Þ¤¯¤¤¤Ã¤Æ¤¤¤ë¤«³Îǧ¤Ç¤­¤Þ¤¹¡£»ÈÍÑÊýË¡¤Ï°Ê²¼¤ÎÄ̤ê¤Ç¤¹¡£

    [¥³¥Þ¥ó¥É¤Îʸˡ]

    wbinfo [-t] [-u] [-g] [-m] 
           [-h NETBIOS̾]
           [-i IP¥¢¥É¥ì¥¹] 
           [-n ¥æ¡¼¥¶Ì¾¡¿¥°¥ë¡¼¥×̾] 
           [-s ¥»¥­¥å¥ê¥Æ¥£¼±ÊÌ»Ò] 
           [-U ¥æ¡¼¥¶ID] 
           [-G ¥°¥ë¡¼¥×ID] 
           [-S ¥»¥­¥å¥ê¥Æ¥£¼±ÊÌ»Ò] 
           [-Y ¥»¥­¥å¥ê¥Æ¥£¼±ÊÌ»Ò] 
           [-r ¥æ¡¼¥¶Ì¾] 
           [-a ¥æ¡¼¥¶Ì¾%¥Ñ¥¹¥ï¡¼¥É] 
           [-A ¥æ¡¼¥¶Ì¾%¥Ñ¥¹¥ï¡¼¥É]
    

    [°ú¿ô¤Î°ÕÌ£]

    °ú¿ô °ú¿ô¤Î°ÕÌ£
    -t Samba ¥µ¡¼¥Ð¤¬ smbpasswd ¥³¥Þ¥ó¥É¤Ë¤è¤Ã¤Æ Windows NT ¥É¥á¥¤¥ó¤Ë»²²Ã¤·¤¿¤È¤­¤ËºîÀ®¤µ¤ì¤¿¥Þ¥·¥ó¡¦¥¢¥«¥¦¥ó¥È¤¬µ¡Ç½¤·¤Æ¤¤¤ë¤«¥Æ¥¹¥È¤¹¤ë¡£
    -u Windows NT ¥É¥á¥¤¥óÆâ¤ÇÍøÍѤǤ­¤ëÁ´¥æ¡¼¥¶¤ò¥ê¥¹¥È¤¹¤ë¡£¤¹¤Ù¤Æ¤Î¿®Íê¤Ç¤­¤ë¥É¥á¥¤¥ó¤Î¥æ¡¼¥¶¤â¤Þ¤¿¡¢¥ê¥¹¥È¤µ¤ì¤ë¡£¤³¤ÎÁàºî¤Ç¤Ï winbindd ¤Ë¸«¤¨¤Ê¤¤¥æ¡¼¥¶¤Î ID ¤Ï¼èÆÀ¤Ç¤­¤Ê¤¤¡£
    -g Windows NT ¥É¥á¥¤¥óÆâ¤ÇÍøÍѤǤ­¤ëÁ´¥°¥ë¡¼¥×¤ò¥ê¥¹¥È¤¹¤ë¡£¤¹¤Ù¤Æ¤Î¿®Íê¤Ç¤­¤ë¥É¥á¥¤¥ó¤Î¥°¥ë¡¼¥×¤â¤Þ¤¿¡¢¥ê¥¹¥È¤µ¤ì¤ë¡£¤³¤ÎÁàºî¤Ç¤Ï winbindd ¤Ë¸«¤¨¤Ê¤¤¥°¥ë¡¼¥×¤Î ID ¤Ï¼èÆÀ¤Ç¤­¤Ê¤¤¡£
    -m ¿®Íꤵ¤ì¤¿¥É¥á¥¤¥ó¤Î°ìÍ÷¤òɽ¼¨¤¹¤ë¡£
    ¤³¤Î¥ê¥¹¥È¤Ë¤Ï¡¢¥µ¡¼¥Ð¤¬¥×¥é¥¤¥Þ¥ê¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤È¤Ê¤Ã¤Æ¤¤¤ë Windows NT ¥É¥á¥¤¥ó¤Ï´Þ¤Þ¤ì¤Ê¤¤¡£
    -n ¥æ¡¼¥¶Ì¾¡¿¥°¥ë¡¼¥×̾ »ØÄꤵ¤ì¤¿Ì¾Á°¤ËÂбþ¤¹¤ë SID ¡Ê¥»¥­¥å¥ê¥Æ¥£¼±Ê̻ҡˤòÌ䤤¹ç¤ï¤»¤ë¡£¥É¥á¥¤¥ó̾¤ò winbindd ¤Î¶èÀÚ¤êʸ»ú¤ò»È¤Ã¤Æ¥æ¡¼¥¶Ì¾¤ÎÁ°¤ËÉղ乤뤳¤È¤â¤Ç¤­¤ë¡£
    Î㤨¤Ð¡¢CWDOM1/Administrator ¤Ï ¥É¥á¥¤¥ó CWDOM1 ¤Î Administrator ¥æ¡¼¥¶¤òÌ䤤¹ç¤ï¤»¤ë¡£
    ¥É¥á¥¤¥ó¤Ë²¿¤â»ØÄꤷ¤Ê¤«¤Ã¤¿¤È¤­¤Ë¤Ï smb.conf ¤Î workgroup ¥Ñ¥é¥á¡¼¥¿¤ÎÃͤ¬»ÈÍѤµ¤ì¤ë¡£
    -s ¥»¥­¥å¥ê¥Æ¥£¼±ÊÌ»Ò SID ¤Î̾Á°²ò·è¤Ë»ÈÍѤ¹¤ë¡£¤³¤ì¤Ï¡¢ Á°¤Ë½Ò¤Ù¤¿ -n ¥ª¥×¥·¥ç¥ó¤ÎµÕ¤ÎƯ¤­¤ò¤¹¤ë¡£
    SID ¤Ë¤Ï Microsoft ·Á¼°¤Ç¤Î ASCII ʸ»úÎó¤ò»ØÄꤷ¤Ê¤±¤ì¤Ð¤¤¤±¤Ê¤¤¡£
    Î㤨¤Ð S-1-5-21-1455342024-3071081365-2475485837-500 ¤Ç¤¢¤ë¡£
    -U ¥æ¡¼¥¶ID UNIX/Linux ¤Î¥æ¡¼¥¶ ID ¤ò Windows ¤Î SID ¤Ø¤ÎÊÑ´¹¤ò»î¤ß¤ë¡£
    »ØÄꤵ¤ì¤¿ uid ¤¬ winbind ¤Ç¤Î uid ¤ÎÈÏ°ÏÆâ¤Ç¤Ê¤±¤ì¤Ð¡¢¥¨¥é¡¼¤È¤Ê¤ë¡£
    -G ¥°¥ë¡¼¥×ID UNIX/Linux ¤Î¥°¥ë¡¼¥× ID ¤ò Windows ¤Î SID ¤Ø¤ÎÊÑ´¹¤ò»î¤ß¤ë¡£»ØÄꤵ¤ì¤¿¥°¥ë¡¼¥× ID ¤¬ winbind ¤Ç¤Î gid ¤ÎÈÏ°ÏÆâ¤Ç¤Ê¤±¤ì¤Ð¡¢¥¨¥é¡¼¤È¤Ê¤ë¡£
    -S sid SID ¤ò UNIX/Linux ¤Î¥æ¡¼¥¶ ID ¤ËÊÑ´¹¤¹¤ë¡£
    SID ¤¬ winbindd ¤Î¥Þ¥Ã¥×¤¹¤ë UNIX/Linux ¤Î¥æ¡¼¥¶¤Ë³ºÅö¤·¤Ê¤¤¾ì¹ç¤Ï¡¢¥¨¥é¡¼¤È¤Ê¤ë¡£
    -Y sid SID ¤ò UNIX/Linux ¤Î¥°¥ë¡¼¥× ID ¤ËÊÑ´¹¤¹¤ë¡£
    SID ¤¬ winbindd ¤Î¥Þ¥Ã¥×¤¹¤ë UNIX/Linux ¤Î¥°¥ë¡¼¥×¤Ë³ºÅö¤·¤Ê¤¤¾ì¹ç¤Ï¡¢¥¨¥é¡¼¤È¤Ê¤ë¡£
    -r ¥æ¡¼¥¶Ì¾ ¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤ËÄêµÁ¤µ¤ì¤¿¥æ¡¼¥¶¤¬½ê°¤¹¤ë¥°¥ë¡¼¥× ID °ìÍ÷¤òɽ¼¨¤¹¤ë¡£
    -a ¥æ¡¼¥¶Ì¾%¥Ñ¥¹¥ï¡¼¥É winbind ·Ðͳ¤Ç¥æ¡¼¥¶Ì¾¤È¥Ñ¥¹¥ï¡¼¥É¤Îǧ¾Ú¤ò»î¤ß¤Æ¡¢¤½¤Î¥×¥í¥È¥³¥ë¤È·ë²Ì¤òɽ¼¨¤¹¤ë¡£
    -A ¥æ¡¼¥¶Ì¾%¥Ñ¥¹¥ï¡¼¥É winbind ·Ðͳ¤Ç¥æ¡¼¥¶Ì¾¤È¥Ñ¥¹¥ï¡¼¥É¤ò¥É¥á¥¤¥ó¥³¥ó¥È¥í¡¼¥é¤Ë³ÊǼ¤¹¤ë¡£


    Fig6. Wbinfo ¼Â¹ÔÎã

  13. Windows¥¯¥é¥¤¥¢¥ó¥È¤«¤é¤Î»ÈÍÑÊýË¡

    ¥É¥á¥¤¥ó¤Ë»²²Ã¤·¤Æ¤¤¤ë Windows ¥µ¡¼¥Ð¤òÍøÍѤ¹¤ëÊýË¡¤ÈƱ¤¸ÊýË¡¤Ç Samba ¥Þ¥·¥ó¤¬ÍøÍѤǤ­¤Þ¤¹¡£

    • ¥¯¥é¥¤¥¢¥ó¥È¤¬ Windows NT/2000/XP ¤Î¾ì¹ç¤Ï¡¢Samba ¤ÈƱÍͤ˥¯¥é¥¤¥¢¥ó¥È¤ò¥É¥á¥¤¥ó¤Ë»²²Ã¤µ¤»¤ëÀßÄê¤ò¤¹¤ë¤³¤È¡£
    •  ¥É¥á¥¤¥ó¥µ¡¼¥Ð¤Ë¥É¥á¥¤¥ó¥æ¡¼¥¶¤òÅÐÏ¿¤¹¤ë¡£
    •  ¥É¥á¥¤¥ó¥æ¡¼¥¶¤¬ÅÐÏ¿¤µ¤ì¤Æ¤¤¤ì¤Ð¡¢Windows ¥¯¥é¥¤¥¢¥ó¥È¤ª¤è¤Ó Samba ¥Þ¥·¥ó¤Ë¤Ï¥æ¡¼¥¶ÅÐÏ¿¤ÏɬÍפʤ¤¡£
    • ¥æ¡¼¥¶¥Û¡¼¥àµ¡Ç½¤ò»ÈÍѤ¹¤ë¾ì¹ç¤Ï¡¢Í½¤á¥Û¡¼¥à¥Ç¥£¥ì¥¯¥È¥ê¤ò°Ê²¼¤Î¤è¤¦¤ËºîÀ®¤¹¤ëɬÍפ¬¤¢¤ë¡£
      ¤¿¤À¤·¡¢Fig4 ¤ÇÀâÌÀ¤·¤¿ pam_mkhomedir.so ¤òÀßÄꤷ¤¿¾ì¹ç¤Ï¡¢Linux ¤Ë¥í¥°¥¤¥ó¤·¤¿»þ¤Ë¼«Æ°Åª¤Ë¥æ¡¼¥¶¥Û¡¼¥à¤¬ºîÀ®¤µ¤ì¤ë¡£

      ¥Û¡¼¥à¥Ç¥£¥ì¥¯¥È¥êºîÀ®Îã¡Ë

      ¥É¥á¥¤¥ó̾¤¬ MIRACLE¡¢¥æ¡¼¥¶Ì¾¤¬ odagiri¡¢smb.conf ¤ÎÀßÄ꤬ Fig2 ¤Î¾ì¹ç
      # mkdir -p /home/MIRACLE/odagiri
      # chown MIRACLE_odagiri /home/MIRACLE/odagiri

    Fig7 ¤Ë Winbind ¤ò»È¤Ã¤Æ MIRACLE ¥É¥á¥¤¥ó¤Î odagiri ¤¬¥í¥°¥¤¥ó¤·¤¿¾ì¹ç¤Î SWAT STATUS ¥Ú¡¼¥¸¤Îɽ¼¨Îã¤ò¼¨¤·¤Þ¤¹¡£



    Fig7 SWAT STATUS ¥Ú¡¼¥¸¤Îɽ¼¨Îã

    ¤³¤ì¤ò¸«¤Æ¤ï¤«¤ëÄ̤ê UNIX/Linux ¾å¤Ç¤Î¥æ¡¼¥¶Ì¾¤Ï¡¢¡Ö¥É¥á¥¤¥ó̾¡Ü¥æ¡¼¥¶Ì¾¡×¤È¤Ê¤ê¤Þ¤¹¡£

    Î㤨¤Ð¡¢¥É¥á¥¤¥ó̾¤¬ MIRACLE ¡Êɬ¤º±ÑÂçʸ»ú¡Ë¤Ç¥æ¡¼¥¶Ì¾¤¬ odagiri¡¢¥»¥Ñ¥ì¡¼¥¿¤¬ _ ¤Î¾ì¹ç¤Ï¡¢Linux ¾å¤Î¥æ¡¼¥¶Ì¾¤Ï MIRACLE_odagiri ¤È¤Ê¤ê¤Þ¤¹¡£
    ssh ¤ä ftp ¤ò»ÈÍѤ¹¤ë¤È¤­¤ÏÃí°Õ¤·¤Æ¤¯¤À¤µ¤¤¡£

    °Ê¾å¤¬ winbind ¤Îµ¡Ç½¤Ç¤¢¤ê¡¢½¾Íè¤Î Samba 2.0·Ï¤Î security=domain µ¡Ç½¤è¤ê¤â³ÊÃÊ¤Ë Windows NT ¥É¥á¥¤¥ó¤È¤Î¿ÆÏÂÀ­¤¬¸þ¾å¤·¤Æ¤¤¤ë¤³¤È¤¬¤ï¤«¤ë¤È»×¤¤¤Þ¤¹¡£


Êä­1¡¥LIBNSS_WINS»ÈÍÑÊýË¡

´û¸¤Î¥Í¥Ã¥È¥ï¡¼¥¯¤¬ Windows NT/2000 ¥µ¡¼¥Ð¤Î¥É¥á¥¤¥ó¤Ë¤è¤Ã¤Æ¹½ÃÛ¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¡¢Windows ¥Þ¥·¥ó¤Î̾Á°²ò·è¤¬ WINS ¡ÊWindows Internet Name Service¡Ë ¤Ë¤è¤Ã¤Æ´ÉÍý¤µ¤ì¤Æ¤¤¤ë¾ì¹ç¤¬¤¢¤ê¤Þ¤¹¡£

¤³¤¦¤·¤¿¥Í¥Ã¥È¥ï¡¼¥¯¤Ë¸å¤«¤é Samba ¥µ¡¼¥Ð¤ò¥É¥á¥¤¥ó¥á¥ó¥Ð¤È¤·¤ÆÄɲ乤ë¾ì¹ç¡¢Samba ¥Þ¥·¥ó¼«ÂÎ¤Ï WINS ¥¯¥é¥¤¥¢¥ó¥È¤Ë¤â¤Ê¤ì¤ë¤Î¤Ç¡¢Samba ¥Þ¥·¥ó¤Î̾Á°²ò·è¤ÏÍÆ°×¤Ë¼Â¸½¤Ç¤­¤Þ¤¹¡£

¤È¤³¤í¤¬ Samba ¥Þ¥·¥ó¤ò Windows ¥¯¥é¥¤¥¢¥ó¥È¤«¤éÍøÍѤ¹¤ë¾ì¹ç¡¢Samba¡ÊLinux¡Ë ¥Þ¥·¥ó¤«¤é Windows ¥¯¥é¥¤¥¢¥ó¥È¤Î̾Á°²ò·è¤¬¤Ç¤­¤Ê¤¤¤È telnet ¤ä ftp ¤Ê¤É¤¬¤¦¤Þ¤¯¤Ç¤­¤Ê¤«¤Ã¤¿¤ê¡¢¥í¥°¥ª¥ó¤Ë»þ´Ö¤¬¤«¤«¤ë¤Ê¤É¤ÎÌäÂ꤬ȯÀ¸¤¹¤ë¤³¤È¤¬¤¢¤ê¤Þ¤¹¡£

¤³¤¦¤·¤¿ÌäÂê¤ò²ò·è¤¹¤ë¤¿¤á¤Ë libnss_wins ¤òÍøÍѤ¹¤ì¤Ð¡¢UNIX/Linux ¤Ç¤Î¥Û¥¹¥È̾¤Î̾Á°²ò·è¤Ç DNS ¤ähosts ¥Õ¥¡¥¤¥ë¤Ë²Ã¤¨¡¢WINS ¤ò»ÈÍѤ·¤ÆÌ¾Á°²ò·è¤¬¤Ç¤­¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤¹¡£
¡ÊWINS ¥µ¡¼¥Ð¤Ë¤Ï Samba ¥Þ¥·¥ó¤È Windows NT/2000 ¥µ¡¼¥Ð¤À¤±¤¬¤Ê¤ë¤³¤È¤¬¤Ç¤­¡¢WINS ¥¯¥é¥¤¥¢¥ó¥È¤ÏWindows 95 °Ê¹ß¤Î¤¹¤Ù¤Æ¤Î Windows ¥Þ¥·¥ó¤È Samba ¥Þ¥·¥ó¤¬¤Ê¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡Ë

Ä̾ï UNIX/Linux ¤Ç¤Î¥Û¥¹¥È̾¤Î̾Á°²ò·è¤Ï DNS ¤ä hosts ¥Õ¥¡¥¤¥ë¤ä NIS ¤¬ÍѤ¤¤é¤ì¡¢WINS ¤ò»²¾È¤·¤Þ¤»¤ó¡£
¤½¤Î¤¿¤á¡¢Windows ¤Î ping ¥³¥Þ¥ó¥É¤Ç¤Ï WINS ¤ò»²¾È¤·¤ÆÌ¾Á°²ò·è¤Ç¤­¤ë¥Þ¥·¥ó¤â Linux ¤Î ping ¤Ç¤Ï WINS ¤ò»²¾È¤·¤Ê¤¤¤¿¤á¡¢Ì¾Á°²ò·è¤Ç¤­¤Ê¤¤¤³¤È¤¬¤¢¤ê¤Þ¤¹¡£

Linux ¤ä Windows ¥µ¡¼¥Ð¤À¤±¤ò DNS ¤Ç´ÉÍý¤¹¤ì¤ÐÌäÂê¤Ï¤Ê¤¤¤è¤¦¤Ë¸«¤¨¤Þ¤¹¤¬¡¢Windows ¥¯¥é¥¤¥¢¥ó¥È¤ò WINS ¤ä DHCP ¤Î¤ß¤Ç´ÉÍý¤·¤Æ¤¤¤ë¾ì¹ç¡¢Linux ¥Þ¥·¥ó¤«¤é Windows ¥¯¥é¥¤¥¢¥ó¥È¤Î̾Á°²ò·è¤Ç¤­¤Ê¤«¤Ã¤¿¤ê¡¢¸Å¤¤ Windows ¥Þ¥·¥ó¤Ç¤Ï DNS ¤Ë¤è¤ë NBT ̾Á°²ò·è¤Ç¤­¤Ê¤«¤Ã¤¿¤ê¡¢Æ°Åª DNS ¤¬ÍøÍѤ¬¤Ç¤­¤Ê¤«¤Ã¤¿¤ê¤·¤Æ¡¢À©¸Â»ö¹à¤¬¤¢¤ê¤Þ¤·¤¿¡£
¡ÊWindows ¥¯¥é¥¤¥¢¥ó¥È¤«¤é Samba ¥µ¡¼¥Ð¤Î̾Á°²ò·è¤¬¤Ç¤­¤Æ¤â¡¢Samba ¥µ¡¼¥Ð¦¤«¤é Windows ¥¯¥é¥¤¥¢¥ó¥È¤Î̾Á°²ò·è¤¬¤Ç¤­¤Ê¤¤¤È¥¨¥é¡¼¤È¤Ê¤Ã¤¿¤ê¡¢Àܳ¤¬ÃÙ¤¯¤Ê¤Ã¤¿¤ê¤¹¤ë¤³¤È¤¬¤¢¤ê¤Þ¤¹¡Ë

LIBNSS_WINS ¤ÎÀßÄêÊýË¡¤Ï¡¢/etc/nsswitch.conf ¤ÎÃæ¤Ç°Ê²¼¤Î hosts ¹Ô¤òõ¤·¡¢Êѹ¹¤·¤Þ¤¹¡£

¡ãÊѹ¹Á°¤ÎÎã¡ä

hosts: files nisplus nis dns

¡ãÊѹ¹¸å¡ä

hosts: files wins dns

¤³¤ì¤Ç¥Û¥¹¥È̾¤Î²ò·è»þ¤Ë/etc/hosts¤Î¸¡º÷¸å¡¢DNS¤ËÌ䤤¹ç¤ï¤»¤ëÁ°¤ËWINS¤ò¸¡º÷¤¹¤ë¤è¤¦¤Ë¤Ê¤ê¤Þ¤¹¡£
¡Êwins¤Èdns¤Î¤É¤Á¤é¤òÀè¤Ë¤¹¤ë¤«¤Ï¡¢¥Í¥Ã¥È¥ï¡¼¥¯´Ä¶­¤Ë¤è¤ê·èÄ꤯¤À¤µ¤¤¡£¡Ë

¥ê¥â¡¼¥È¤ÎWINS¥µ¡¼¥Ð¤Î¥¢¥É¥ì¥¹¤Ï¡¢smb.conf ¤ÎÃæ¤Ë°Ê²¼¤Î¤è¤¦¤Ë»ØÄꤷ¤Þ¤¹¡£

wins server = 123.45.56.78

¤â¤·¡¢¤½¤Î¥Þ¥·¥ó¼«¿È¤ÎSamba¤¬WINS¥µ¡¼¥Ð¤È¤¹¤ë¾ì¹ç¤Ï¡¢smb.conf ¤ÎÃæ¤Ë°Ê²¼¤Î¤è¤¦¤Ë»ØÄꤹ¤ì¤Ð¡¢¥í¡¼¥«¥ë¡Ê127.0.0.1¡Ë¤ò»²¾È¤·¤Þ¤¹¡£

wins support = yes

¤â¤Á¤í¤ó¡¢¤³¤ÎWINS¤ÎÀßÄê¤ÏSamba¥Þ¥·¥ó¤äWindows¥¯¥é¥¤¥¢¥ó¥È¤¹¤Ù¤Æ¤ÇÅý°ì¤·¤Ê¤¤¤È°ÕÌ£¤¬¤Ê¤¤¤·¡¢¤³¤ì¤¬¤Ç¤­¤Æ¤¤¤Ê¤¤¥È¥é¥Ö¥ë¤Î¸µ¤Ë¤Ê¤ë¤Î¤ÇÃí°Õ¤·¤Æ¤¯¤À¤µ¤¤¡£

¤·¤«¤·¡¢WINS¥µ¡¼¥Ð¤¬¤Ê¤¯¤Æ¤âWindows¤ÈƱ¤¸¤è¤¦¤Ë¥Ý¡¼¥È£±£³£·¤Ø¤Î¥Ö¥í¡¼¥É¥­¥ã¥¹¥È¤Ç¤â̾Á°²ò·è¤¬¤Ç¤­¤ë¤Î¤Ç¡¢¥Í¥Ã¥È¥ï¡¼¥¯¡¦¥»¥°¥á¥ó¥È¤¬£±¤Ä¤·¤«¤Ê¤¤¾ì¹ç¤Ê¤éÊØÍø¤Êµ¡Ç½¤Ç¤¹¡£

¤Ê¤ª¡¢Windows NT/2000¥µ¡¼¥Ð¤òWINS¥µ¡¼¥Ð¤Ë¤¹¤ë¤È¤­¤Ï¥³¥ó¥Ý¡¼¥Í¥ó¥È¤ÎÄɲäǡÖWindows Internet Service¡×¤òÄɲä·¤Þ¤¹¡£
¡Ê¥ï¡¼¥¯¥¹¥Æ¡¼¥·¥ç¥ó¤äWindows 9x¤ÏWINS¥µ¡¼¥Ð¤Ë¤Ê¤ì¤Þ¤»¤ó¡Ë


Êä­£²¡¥PAM¡ÊPluggable Authentication Modules¡Ë¤Ë¤Ä¤¤¤Æ

¥·¥¹¥Æ¥à´ÉÍý¼Ô¤¬Ç§¾Ú¥×¥í¥°¥é¥à¤òºÆ¥³¥ó¥Ñ¥¤¥ë¤»¤º¤Ëǧ¾Ú¥Ý¥ê¥·¡¼¤òÀßÄê¤Ç¤­¤ë¤è¤¦¤Ë¤¹¤ëÊýË¡¤Ç¤¹¡£

PAM¤ò»ÈÍѤ¹¤ë¾ì¹ç¡¢/etc/pam.d¤Ë¤¢¤ëPAMÀßÄê¥Õ¥¡¥¤¥ë¤òÊÔ½¸¤¹¤ë¤³¤È¤Ë¤è¤Ã¤Æ¡¢¥×¥í¥°¥é¥à¤Ëǧ¾Ú¥â¥¸¥å¡¼¥ë¤ò¥×¥é¥°¥¤¥ó¤¹¤ëÊýË¡¤òÀ©¸æ¤Ç¤­¤Þ¤¹¡£

PAM¤Ë¤Ï¼¡¤Î4¤Ä¤Î¥¿¥¤¥×¤Î¥â¥¸¥å¡¼¥ë¤¬¤¢¤ê¡¢ÆÃÄê¤Î¥µ¡¼¥Ó¥¹¤Ø¤Î¥¢¥¯¥»¥¹¤òÀ©¸æ¤·¤Þ¤¹¡£

  • auth
    ¼ÂºÝ¤Îǧ¾Ú¤òÄ󶡡ʥѥ¹¥ï¡¼¥É¤ÎÍ׵ᤪ¤è¤Ó¥Á¥§¥Ã¥¯¡Ë¤·¡¢½ê°¥°¥ë¡¼¥×¤Ê¤É¤òÀßÄꤹ¤ë¡£
  • account
    ǧ¾Ú¤¬µö²Ä¤µ¤ì¤ë¤³¤È¤ò¥Á¥§¥Ã¥¯¤¹¤ë¡£
    ¡Ê¥¢¥«¥¦¥ó¥È¤¬´ü¸ÂÀÚ¤ì¤Ç¤Ê¤¤¤«¡¢¥æ¡¼¥¶¡¼¤¬¤½¤Î»þ¹ï¤Î¥í¥°¥¤¥ó¤òǧ¤á¤é¤ì¤Æ¤¤¤ë¤«¡¢¤Ê¤É¡Ë¡£
  • password
    ¥Ñ¥¹¥ï¡¼¥É¤ÎÀßÄê¤Ë»ÈÍѤµ¤ì¤ë¡£
  • session
    ¥æ¡¼¥¶¡¼¤¬Ç§¾Ú¤µ¤ì¤¿¸å¤Ç»ÈÍѤµ¤ì¡¢session¥â¥¸¥å¡¼¥ë¤Ë¤è¤Ã¤Æ¡¢¥æ¡¼¥¶¡¼¤¬¼«Ê¬¤Î¥¢¥«¥¦¥ó¥È¤ò»ÈÍѤǤ­¤ë¤è¤¦¤Ë¤Ê¤ë¡£
    ¡ÊÎ㤨¤Ð¡¢¥æ¡¼¥¶¡¼¤Î¥Û¡¼¥à¥Ç¥£¥ì¥¯¥È¥ê¤ò¥Þ¥¦¥ó¥È¤·¤¿¤ê¡¢¥á¡¼¥ë¥Ü¥Ã¥¯¥¹¤òÍøÍѤǤ­¤ë¤è¤¦¤Ë¤¹¤ë¡Ë

PAMÀ©¸æ¥Õ¥é¥°¤Ï¡¢¥Á¥§¥Ã¥¯·ë²Ì¤ËÂФ¹¤ë½èÍýÊýË¡¤òPAM¤ËÄ󶡤·¤Þ¤¹¡£
¥â¥¸¥å¡¼¥ë¤ÏÆÃÄê¤Î½ç½ø¤Ç¥¹¥¿¥Ã¥¯¤µ¤ì¤ë¤Î¤Ç¡¢À©¸æ¥Õ¥é¥°¤Ë¤è¤Ã¤Æ¡¢¥æ¡¼¥¶¡¼¤¬¸å¤Ë³¤¯¥â¥¸¥å¡¼¥ë¤Î½ÅÍ×ÅÙ¤òÀßÄꤹ¤ë¤³¤È¤¬¤Ç¤­¤Þ¤¹¡£

PAM¤Îµ¬³Ê¤Ë¤è¤Ã¤Æ¡¢°Ê²¼¤Î4¤Ä¤Î¥¿¥¤¥×¤ÎÀ©¸æ¥Õ¥é¥°¤¬ÄêµÁ¤µ¤ì¤Æ¤¤¤Þ¤¹¡£

  • required ¡ÊɬÍס˥ե饰¥â¥¸¥å¡¼¥ë
    µö²Ä¤µ¤ì¤ëǧ¾Ú¤Î½ç½ø¤Ç´°Á´¤Ë¥Á¥§¥Ã¥¯¤µ¤ì¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¤â¤Î¡£
    required¥â¥¸¥å¡¼¥ë¤Î¥Á¥§¥Ã¥¯¤¬¼ºÇÔ¤¹¤ë¤È¡¢¡Ê¥¹¥¿¥Ã¥¯¤µ¤ì¤¿¡ËƱ¤¸¥¿¥¤¥×¤Î¤Û¤«¤Î¥â¥¸¥å¡¼¥ë¤¬¥Á¥§¥Ã¥¯¤µ¤ì¤ë¤Þ¤Ç¥æ¡¼¥¶¡¼¤Ë¤Ï²¿¤âÄÌÃΤµ¤ì¤Ê¤¤¡£
  • requisite ¡Êɬ¿Ü¡Ë¥Õ¥é¥°¥â¥¸¥å¡¼¥ë
    ¤³¤ì¤â¡¢µö²Ä¤µ¤ì¤ëǧ¾Ú¤Î½ç½ø¤Ç´°Á´¤Ë¥Á¥§¥Ã¥¯¤µ¤ì¤Ê¤±¤ì¤Ð¤Ê¤é¤Ê¤¤¡£
    ¤¿¤À¤·¡¢ requisite ¥â¥¸¥å¡¼¥ë¤Î¥Á¥§¥Ã¥¯¤¬¼ºÇÔ¤·¤¿¾ì¹ç¤Ï¡¢Required¤Þ¤¿¤ÏRequisit¥â¥¸¥å¡¼¥ë¤¬ºÇ½é¤Ë¼ºÇÔ¤·¤¿¤³¤È¤òÃΤ餻¤ë¥á¥Ã¥»¡¼¥¸¤¬¥æ¡¼¥¶¡¼¤Ëľ¤Á¤ËÄÌÃΤµ¤ì¤ë¡£
  • sufficient ¡Ê½½Ê¬¡Ë¥Õ¥é¥°¥â¥¸¥å¡¼¥ë
    ¤³¤Î¥Á¥§¥Ã¥¯¤¬¼ºÇÔ¤·¤Æ¤â̵»ë¤µ¤ì¤ë¡£
    ¤¿¤À¤·¡¢ sufficient ¥Õ¥é¥°¥â¥¸¥å¡¼¥ë¤Î¥Á¥§¥Ã¥¯¤¬À®¸ù¤·¡¢¤½¤Î¾å¤Îrequired ¥Õ¥é¥°¥â¥¸¥å¡¼¥ë¤¬¤¹¤Ù¤ÆÀ®¸ù¤·¤¿¾ì¹ç¡¢¤³¤Î¥¿¥¤¥×¤Î¤Û¤«¤Î¥â¥¸¥å¡¼¥ë¤Ï¥Á¥§¥Ã¥¯¤µ¤ì¤º¡¢¤³¤Î¥â¥¸¥å¡¼¥ë¥¿¥¤¥×Á´ÂΤΥÁ¥§¥Ã¥¯¤¬À®¸ù¤·¤¿¤È¸«¤Ê¤µ¤ì¤ë¡£
  • optional ¡ÊǤ°Õ¡Ë¥Õ¥é¥°¥â¥¸¥å¡¼¥ë
    ¤³¤Î¥¿¥¤¥×¤Î¥â¥¸¥å¡¼¥ë°Ê³°¤¬¤¹¤Ù¤ÆÀ®¸ù¤Þ¤¿¤Ï¼ºÇÔ¤·¤¿»þ¡¢À®¸ù¤Þ¤¿¤Ï¼ºÇÔ¤·¤¿ optional ¥Õ¥é¥°¥â¥¸¥å¡¼¥ë¤Ë¤è¤Ã¤Æ¡¢¤½¤Î¥â¥¸¥å¡¼¥ë¥¿¥¤¥×Á´ÂΤÎPAMǧ¾Ú¤¬·èÄꤵ¤ì¤ë¡£
¢£¤³¤Î»ñÎÁ¤Îɾ²Á¤ò¤ª´ê¤¤¤·¤Þ¤¹¡£
¤È¤Æ¤â»²¹Í¤Ë¤Ê¤Ã¤¿
»²¹Í¤Ë¤Ê¤Ã¤¿
¤É¤Á¤é¤Ç¤â¤Ê¤¤
¤¢¤Þ¤ê»²¹Í¤Ë¤Ê¤é¤Ê¤«¤Ã¤¿
¤Þ¤Ã¤¿¤¯»²¹Í¤Ë¤Ê¤é¤Ê¤«¤Ã¤¿

¥³¥á¥ó¥È¤¬¤¢¤ë¾ì¹ç¤Ï°Ê²¼¤Ëµ­½Ò¤·¤Æ¤¯¤À¤µ¤¤¡£µ»½Ñ»ñÎÁ¤È¤·¤Æ¼è¤ê¾å¤²¤Æ¤Û¤·¤¤¥Æ¡¼¥Þ¤â¼õ¤±ÉÕ¤±¤Æ¤¤¤Þ¤¹¡£

°Ê²¼¤ÏǤ°Õ¤Ç¤¹¡£

¤ªÌ¾Á°¡Ê¥Õ¥ë¥Í¡¼¥à¡Ë :
²ñ¼Ò̾ :
¥á¡¼¥ë¥¢¥É¥ì¥¹ :
¡¡

¥Ú¡¼¥¸¥È¥Ã¥×¤Ø



¥Æ¥¯¥Î¥í¥¸¡¼¾ðÊó
¥ê¥Ê¥Ã¥¯¥¹´ØÏ¢
¥¤¥Ù¥ó¥È/¥»¥ß¥Ê¡¼»ñÎÁ
¥ª¥é¥¯¥ë/DB´ØÏ¢
Samba´ØÏ¢
¸¦½¤¤Î¤´¾Ò²ð
FAQ
¥¤¥ó¥¹¥È¥ì¡¼¥·¥ç¥ó¥¬¥¤¥É
¥½¥Õ¥È¥¦¥§¥¢¥À¥¦¥ó¥í¡¼¥É
¼ÂÀӤΤ¢¤ë¥·¥¹¥Æ¥à¹½À®

²ñ¼Ò¾ðÊó ºÎÍѾðÊó ¸Ä¿Í¾ðÊóÊݸîÊý¿Ë ¾¦É¸Åù¼è¤ê°·¤¤»ö¹à English
Copyright(c)2000-2008 MIRACLE LINUX CORPORATION. All Rights Reserved.