[Freeipa-users] FreeIPA integrating samba4 + AD

Simo Sorce simo at redhat.com
Wed Sep 11 19:59:26 UTC 2013


On Wed, 2013-09-11 at 16:37 -0300, Christovam Paynes Silva wrote:
> Hello Simo, thanks for the feedback.
> I would use the Samba4 with AD and authenticate my clients windows in
> FreeIPA.
> Is this possible?

It is not possible at this point to combine Samba4 AD and freeIPA.

Simo.
> 
> 2013/9/11 Simo Sorce <simo at redhat.com>
>         On Wed, 2013-09-11 at 14:06 -0300, Christovam Paynes Silva
>         wrote:
>         > Hello!
>         >
>         >
>         > First I apologize if this topic is redundant.
>         >
>         >
>         > I'm looking on the implementation of FreeIPA . Looking for
>         the
>         > forums , have some comments that authentication does not
>         work with
>         > Samba4 . Elsewhere say that that possibility exists . Today
>         we have
>         > nearly 200 computers in the domain with the "Active
>         Directory" and one
>         > wireless "captive portal" with 1000 + proxy users .
>         >
>         > I would like to see if the following scenario is possible :
>         > 1 - Integrating Samba4 with "Active Directory" , to use
>         their GPO and
>         > authenticate network users through the FreeIPA .
>         > 2 - Authenticate proxy servers in FreeIPA .
>         > 3 - And if it is possible some integration with FreeRADIUS
>         >
>         
>         
>         Hi Christovam, it is a bit unclear what you mean by
>         integrating here.
>         
>         Is your intent to use Samba4 as an AD domain controller for
>         your Windows
>         client s and IPA for your servers ?
>         
>         If that's the case unfortunately this is not possible at the
>         moment as
>         samba4 does not yet support Forest level trusts.
>         A Microsoft AD server can be used this way instead.
>         
>         Simo.
>         
>         --
>         Simo Sorce * Red Hat, Inc * New York
>         
> 
> 


-- 
Simo Sorce * Red Hat, Inc * New York




More information about the Freeipa-users mailing list