Web lists-archives.com

Re: [Samba] [Curiosity] 'netbios aliases' works in AD mode?




Hai Marco, 

I dont get what your goal is, sorry.. :-/ 

If you follow this template. 
The computername  should always have an A + PTR recored.
Now create an CNAME and point to the computer name, and this one can be in any zone. 
Does not have to be the primary dns zone, as long as the zones are withing the kerberos domain. 

On a member you have, by default : dns proxy = yes , man smb.conf for the info. 
But since samba-ad-dc does not run NMBD i dont think what your trying below is going to work. 
But i think, not sure about it. 

And, sorry, but can you explain a bit more what your trying to do. 
You want cups with kerberos auth? You only need the host/spn. 
All i have is :          
HOST/PRINT1
HOST/print1.internal.example.com


Greetz, 

Louis



> -----Oorspronkelijk bericht-----
> Van: samba [mailto:samba-bounces@xxxxxxxxxxxxxxx] Namens 
> Marco Gaiarin via samba
> Verzonden: maandag 18 december 2017 15:24
> Aan: samba@xxxxxxxxxxxxxxx
> Onderwerp: Re: [Samba] [Curiosity] 'netbios aliases' works in AD mode?
> 
> 
> > Ahem no one reply me.
> 
> Still no feedback. I've done some test by myself.
> 
> a) i've added in smb.conf:
> 
> 	netbios aliases = CUPSSV FILESV
> 
> b) i've registered the alias as SPNs, now i've:
> 
> 	root@vdcsv1:~# samba-tool spn list vdmsv1$
> 	vdmsv1$
> 	User 
> CN=VDMSV1,OU=Computers,OU=SanVito,OU=FVG,DC=ad,DC=fvg,DC=lnf,D
> C=it has the following servicePrincipalName: 
> 		 HOST/VDMSV1
> 		 HOST/vdmsv1.ad.fvg.lnf.it
> 		 HOST/filesv.ad.fvg.lnf.it
> 		 HOST/FILESV
> 		 HOST/CUPSSV
> 		 HOST/cupssv.ad.fvg.lnf.it
> 
> (for google, the correct commandline seems:
> 	samba-tool spn add HOST/cupssv.ad.fvg.lnf.it vdmsv1$
> )
> 
> c) still does not work; if i browse the network i can see the 'FILESV'
>  host/server, but i cannot open it (give a generic/unknown error).
> 
> 
> Could be that there's no DNS records?
> 
> 	root@vdcsv1:~# host filesv.ad.fvg.lnf.it
> 	Host filesv.ad.fvg.lnf.it not found: 3(NXDOMAIN)
> 
> I've to add that, via 'samba-tool dns add'? I've to add 'A' records or
> i can add 'CNAME'?
> 
> 
> Thanks.
> 
> -- 
> dott. Marco Gaiarin				        GNUPG 
> Key ID: 240A3D66
>   Associazione ``La Nostra Famiglia''          
> http://www.lanostrafamiglia.it/
>   Polo FVG   -   Via della Bontà, 7 - 33078   -   San Vito al 
> Tagliamento (PN)
>   marco.gaiarin(at)lanostrafamiglia.it   t +39-0434-842711   
> f +39-0434-842797
> 
> 		Dona il 5 PER MILLE a LA NOSTRA FAMIGLIA!
>       http://www.lanostrafamiglia.it/index.php/it/sostienici/5x1000
> 	(cf 00307430132, categoria ONLUS oppure RICERCA SANITARIA)
> 
> -- 
> To unsubscribe from this list go to the following URL and read the
> instructions:  https://lists.samba.org/mailman/options/samba
> 
> 


-- 
To unsubscribe from this list go to the following URL and read the
instructions:  https://lists.samba.org/mailman/options/samba