<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="de">
	<id>https://wiki.ixheim.de/index.php?action=history&amp;feed=atom&amp;title=Sernet_Ubuntu</id>
	<title>Sernet Ubuntu - Versionsgeschichte</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.ixheim.de/index.php?action=history&amp;feed=atom&amp;title=Sernet_Ubuntu"/>
	<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Sernet_Ubuntu&amp;action=history"/>
	<updated>2026-06-29T13:18:19Z</updated>
	<subtitle>Versionsgeschichte dieser Seite in Xinux Wiki</subtitle>
	<generator>MediaWiki 1.35.1</generator>
	<entry>
		<id>https://wiki.ixheim.de/index.php?title=Sernet_Ubuntu&amp;diff=11704&amp;oldid=prev</id>
		<title>Thomas: Die Seite wurde neu angelegt: „=preparation= ==/etc/resolv.conf==  nameserver 192.168.240.200  search xinux.org  ==/etc/hostname==   gondor.xinux.org ==/etc/hosts==  127.0.0.1       localhos…“</title>
		<link rel="alternate" type="text/html" href="https://wiki.ixheim.de/index.php?title=Sernet_Ubuntu&amp;diff=11704&amp;oldid=prev"/>
		<updated>2016-12-12T10:52:52Z</updated>

		<summary type="html">&lt;p&gt;Die Seite wurde neu angelegt: „=preparation= ==/etc/resolv.conf==  nameserver 192.168.240.200  search xinux.org  ==/etc/hostname==   gondor.xinux.org ==/etc/hosts==  127.0.0.1       localhos…“&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Neue Seite&lt;/b&gt;&lt;/p&gt;&lt;div&gt;=preparation=&lt;br /&gt;
==/etc/resolv.conf==&lt;br /&gt;
 nameserver 192.168.240.200&lt;br /&gt;
 search xinux.org &lt;br /&gt;
==/etc/hostname== &lt;br /&gt;
 gondor.xinux.org&lt;br /&gt;
==/etc/hosts==&lt;br /&gt;
 127.0.0.1       localhost&lt;br /&gt;
 192.168.240.200 gondor gondor.xinux.org&lt;br /&gt;
==/etc/network/interfaces==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
auto lo&lt;br /&gt;
iface lo inet loopback&lt;br /&gt;
&lt;br /&gt;
auto eth0&lt;br /&gt;
iface eth0 inet static&lt;br /&gt;
 address 192.168.240.200&lt;br /&gt;
 netmask 255.255.248.0&lt;br /&gt;
 gateway 192.168.240.100&lt;br /&gt;
 dns-nameservers 192.168.240.200&lt;br /&gt;
 dns-search xinux.org &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=create an account=&lt;br /&gt;
 https://portal.enterprisesamba.com/&lt;br /&gt;
=add this to /etc/apt/source.list=&lt;br /&gt;
change USERNAME and ACCESSKEY&lt;br /&gt;
 deb http://USERNAME:ACCESSKEY@download.sernet.de/packages/samba/4.1/debian squeeze main&lt;br /&gt;
 deb-src http://USERNAME:ACCESSKEY@download.sernet.de/packages/samba/4.1/debian squeeze main&lt;br /&gt;
=The SerNet build key=&lt;br /&gt;
 wget http://ftp.sernet.de/pub/sernet-samba-keyring_1.4_all.deb&lt;br /&gt;
 dpkg -i sernet-samba-keyring_1.4_all.deb&lt;br /&gt;
=update=&lt;br /&gt;
 apt-get update&lt;br /&gt;
=install=&lt;br /&gt;
 apt-get install sernet-samba-ad&lt;br /&gt;
=clean=&lt;br /&gt;
 rm /etc/samba/smb.conf /var/lib/samba/private/sam.ldb&lt;br /&gt;
=provision=&lt;br /&gt;
 samba-tool domain provision&lt;br /&gt;
=change in /etc/default/sernet-samba=&lt;br /&gt;
 SAMBA_START_MODE=&amp;quot;ad&amp;quot;&lt;br /&gt;
=start samba ad=&lt;br /&gt;
 service sernet-samba-ad start &lt;br /&gt;
 Starting SAMBA AD services :  *&lt;br /&gt;
=test share=&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
=test the serverports=&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
netstat -ltp &lt;br /&gt;
&lt;br /&gt;
Aktive Internetverbindungen (Nur Server)&lt;br /&gt;
Proto Recv-Q Send-Q Local Address           Foreign Address         State       PID/Program name&lt;br /&gt;
tcp        0      0 *:domain                *:*                     LISTEN      2579/samba      &lt;br /&gt;
tcp        0      0 *:kerberos              *:*                     LISTEN      2573/samba      &lt;br /&gt;
tcp        0      0 *:8472                  *:*                     LISTEN      790/sshd        &lt;br /&gt;
tcp        0      0 *:ldaps                 *:*                     LISTEN      2571/samba      &lt;br /&gt;
tcp        0      0 *:microsoft-ds          *:*                     LISTEN      2570/smbd       &lt;br /&gt;
tcp        0      0 *:1024                  *:*                     LISTEN      2567/samba      &lt;br /&gt;
tcp        0      0 *:3268                  *:*                     LISTEN      2571/samba      &lt;br /&gt;
tcp        0      0 *:3269                  *:*                     LISTEN      2571/samba      &lt;br /&gt;
tcp        0      0 *:ldap                  *:*                     LISTEN      2571/samba      &lt;br /&gt;
tcp        0      0 *:loc-srv               *:*                     LISTEN      2567/samba      &lt;br /&gt;
tcp        0      0 *:netbios-ssn           *:*                     LISTEN      2570/smbd       &lt;br /&gt;
tcp        0      0 *:kpasswd               *:*                     LISTEN      2573/samba      &lt;br /&gt;
tcp6       0      0 [::]:domain             [::]:*                  LISTEN      2579/samba      &lt;br /&gt;
tcp6       0      0 [::]:kerberos           [::]:*                  LISTEN      2573/samba      &lt;br /&gt;
tcp6       0      0 [::]:8472               [::]:*                  LISTEN      790/sshd        &lt;br /&gt;
tcp6       0      0 [::]:ldaps              [::]:*                  LISTEN      2571/samba      &lt;br /&gt;
tcp6       0      0 [::]:microsoft-ds       [::]:*                  LISTEN      2570/smbd       &lt;br /&gt;
tcp6       0      0 [::]:1024               [::]:*                  LISTEN      2567/samba      &lt;br /&gt;
tcp6       0      0 [::]:3268               [::]:*                  LISTEN      2571/samba      &lt;br /&gt;
tcp6       0      0 [::]:3269               [::]:*                  LISTEN      2571/samba      &lt;br /&gt;
tcp6       0      0 [::]:ldap               [::]:*                  LISTEN      2571/samba      &lt;br /&gt;
tcp6       0      0 [::]:loc-srv            [::]:*                  LISTEN      2567/samba      &lt;br /&gt;
tcp6       0      0 [::]:netbios-ssn        [::]:*                  LISTEN      2570/smbd       &lt;br /&gt;
tcp6       0      0 [::]:kpasswd            [::]:*                  LISTEN      2573/samba     &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=test dns=&lt;br /&gt;
 DOMAIN=&amp;quot;xinux.org&amp;quot;&lt;br /&gt;
 CONTROLLER=&amp;quot;gondor&amp;quot;&lt;br /&gt;
==ldap== &lt;br /&gt;
 host -t SRV _ldap._tcp.$DOMAIN&lt;br /&gt;
 _ldap._tcp.xinux.org has SRV record 0 100 389 gondor.xinux.org.&lt;br /&gt;
==kerberos==&lt;br /&gt;
 host -t SRV _kerberos._udp.$DOMAIN&lt;br /&gt;
 _kerberos._udp.xinux.org has SRV record 0 100 88 gondor.xinux.org.&lt;br /&gt;
==hostname==&lt;br /&gt;
 host -t A $CONTROLLER.$DOMAIN&lt;br /&gt;
 gondor.xinux.org has address 192.168.240.200&lt;br /&gt;
=nsswitch=&lt;br /&gt;
==change /etc/nsswitch.conf==&lt;br /&gt;
 passwd:         compat winbind&lt;br /&gt;
 group:          compat winbind&lt;br /&gt;
==test passwd==&lt;br /&gt;
 getent passwd | grep XINUX&lt;br /&gt;
 &lt;br /&gt;
 XINUX\Administrator:*:0:100::/home/XINUX/Administrator:/bin/false&lt;br /&gt;
 XINUX\Guest:*:3000011:3000012::/home/XINUX/Guest:/bin/false&lt;br /&gt;
 XINUX\krbtgt:*:3000016:100::/home/XINUX/krbtgt:/bin/false&lt;br /&gt;
&lt;br /&gt;
==test group==&lt;br /&gt;
 getent group | grep XINUX&lt;br /&gt;
 &lt;br /&gt;
 XINUX\Enterprise Read-Only Domain Controllers:*:3000017:&lt;br /&gt;
 XINUX\Domain Admins:*:3000008:&lt;br /&gt;
 XINUX\Domain Users:*:100:&lt;br /&gt;
 XINUX\Domain Guests:*:3000012:&lt;br /&gt;
 XINUX\Domain Computers:*:3000018:&lt;br /&gt;
 XINUX\Domain Controllers:*:3000019:&lt;br /&gt;
 XINUX\Schema Admins:*:3000007:&lt;br /&gt;
 XINUX\Enterprise Admins:*:3000006:&lt;br /&gt;
 XINUX\Group Policy Creator Owners:*:3000004:&lt;br /&gt;
 XINUX\Read-Only Domain Controllers:*:3000020:&lt;br /&gt;
 XINUX\DnsUpdateProxy:*:3000021:&lt;br /&gt;
=kerberos=&lt;br /&gt;
==install heimdal-clients==&lt;br /&gt;
 apt-get install heimdal-clients&lt;br /&gt;
==copy config==&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/krb5.conf&lt;br /&gt;
==test kerberos==&lt;br /&gt;
===kinit===&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
 &lt;br /&gt;
 Administrator@XINUX.ORG's Password: &lt;br /&gt;
===klist=== &lt;br /&gt;
 klist&lt;br /&gt;
 &lt;br /&gt;
 Credentials cache: FILE:/tmp/krb5cc_0&lt;br /&gt;
         Principal: Administrator@XINUX.ORG&lt;br /&gt;
 &lt;br /&gt;
   Issued                Expires               Principal&lt;br /&gt;
 Jun 25 14:31:42 2014  Jun 26 00:31:34 2014  krbtgt/XINUX.ORG@XINUX.ORG&lt;br /&gt;
=ldap=&lt;br /&gt;
==test over ldapserver localhost==&lt;br /&gt;
 ldbsearch -H ldaps://localhost  &amp;quot;cn=administrator&amp;quot; -U administrator&lt;br /&gt;
&lt;br /&gt;
=timeserver=&lt;br /&gt;
==install==&lt;br /&gt;
 apt-get install ntp&lt;br /&gt;
==/etc/ntp.conf==&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
server 127.127.1.0&lt;br /&gt;
fudge 127.127.1.0 stratum 10&lt;br /&gt;
server 0.pool.ntp.org iburst prefer&lt;br /&gt;
server 1.pool.ntp.org iburst prefer&lt;br /&gt;
driftfile /var/lib/ntp/ntp.drift&lt;br /&gt;
logfile /var/log/ntp&lt;br /&gt;
ntpsigndsocket /var/lib/samba/ntp_signd/&lt;br /&gt;
restrict default kod nomodify notrap nopeer mssntp&lt;br /&gt;
restrict 127.0.0.1&lt;br /&gt;
restrict 0.pool.ntp.org mask 255.255.255.255 nomodify notrap nopeer noquery&lt;br /&gt;
restrict 1.pool.ntp.org mask 255.255.255.255 nomodify notrap nopeer noquery&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
==/var/lib/samba/ntp_signd==&lt;br /&gt;
 chgrp ntp /var/lib/samba/ntp_signd&lt;br /&gt;
 chmod g+rx /var/lib/samba/ntp_signd&lt;br /&gt;
=[[Usermanagment]]=&lt;/div&gt;</summary>
		<author><name>Thomas</name></author>
	</entry>
</feed>