Environment
Novell Open Enterprise Server 2SP1 (OES 2SP1) Linux
Domain Services for Window
DSFW
Domain Services for Window
DSFW
Situation
Sample default smb.conf files from both first domain controller and a second domain contoller.
Resolution
# Samba configuration file for Domain Services for Windows - First Domain Controller
#
[global]
workgroup = DSFW
printing = cups
printcap name = cups
printcap cache time = 0
cups options = raw
map to guest = Bad User
include = /etc/samba/dhcp.conf
logon path = \\%L\profiles\.msprofile
logon home = \\%L\%U\.9xprofile
logon drive = P:
usershare allow guests = Yes
netbios name = SLES10-SP2-64-1
realm = dsfw.local
auth methods = guest winbind
server string = Novell Open Enterprise Server
security = ads
encrypt passwords = Yes
socket options = TCP_NODELAY
local master = Yes
os level = 64
domain master = Yes
preferred master = Yes
domain logons = Yes
idmap backend = ad:ldapi://%2fvar%2fopt%2fnovell%2fxad%2frun%2fldapi
idmap uid = 1-4294967295
idmap gid = 1-4294967295
pid directory = /var/run/samba
use kerberos keytab = Yes
winbind use default domain = Yes
winbind nss info = rfc2307
dce funnel directory = /var/opt/novell/xad/rpc
nt acl support = No
load printers = No
server signing = auto # this is not default in OES2SP1
[netlogon]
comment = Network Logon Service
path = /var/opt/novell/xad/sysvol/sysvol/dsfw.local/scripts
writable = No
share modes = No
nt acl support = Yes
[sysvol]
comment = Group Policies
path = /var/opt/novell/xad/sysvol/sysvol
writable = Yes
share modes = No
nt acl support = No
[homes]
comment = Home Directories
valid users = %S, %D%w%S
browseable = No
read only = No
inherit acls = Yes
[profiles]
comment = Network Profiles Service
path = %H
read only = No
store dos attributes = Yes
create mask = 0600
directory mask = 0700
[www]
path = /srv/www
read only = No
inherit acls = yes
comment =
# Samba configuration file for Domain Services for Windows - Additional domain controller.
#
[global]
workgroup = DSFW
printing = cups
printcap name = cups
printcap cache time = 0
cups options = raw
map to guest = Bad User
include = /etc/samba/dhcp.conf
logon path = \\%L\profiles\.msprofile
logon home = \\%L\%U\.9xprofile
logon drive = P:
usershare allow guests = Yes
netbios name = SLES10-SP2-64-2
realm = dsfw.local
auth methods = guest winbind
server string = Novell Open Enterprise Server
security = ads
encrypt passwords = Yes
socket options = TCP_NODELAY
local master = Yes
os level = 64
domain master = Yes
preferred master = Yes
domain logons = Yes
idmap backend = ad:ldapi://%2fvar%2fopt%2fnovell%2fxad%2frun%2fldapi
idmap uid = 1-4294967295
idmap gid = 1-4294967295
pid directory = /var/run/samba
use kerberos keytab = Yes
winbind use default domain = Yes
winbind nss info = rfc2307
dce funnel directory = /var/opt/novell/xad/rpc
nt acl support = No
load printers = No
host msdfs = Yes
server signing = auto # this is not default in OES2SP1
[netlogon]
comment = Network Logon Service
path = /var/opt/novell/xad/sysvol/sysvol/dsfw.local/scripts
writable = No
share modes = No
nt acl support = Yes
[sysvol]
msdfs proxy = \SLES10-SP2-64-1.dsfw.local\sysvol
comment = Group Policies
msdfs root = Yes
[homes]
comment = Home Directories
valid users = %S, %D%w%S
browseable = No
read only = No
inherit acls = Yes
[profiles]
comment = Network Profiles Service
path = %H
read only = No
store dos attributes = Yes
create mask = 0600
directory mask = 0700
#
[global]
workgroup = DSFW
printing = cups
printcap name = cups
printcap cache time = 0
cups options = raw
map to guest = Bad User
include = /etc/samba/dhcp.conf
logon path = \\%L\profiles\.msprofile
logon home = \\%L\%U\.9xprofile
logon drive = P:
usershare allow guests = Yes
netbios name = SLES10-SP2-64-1
realm = dsfw.local
auth methods = guest winbind
server string = Novell Open Enterprise Server
security = ads
encrypt passwords = Yes
socket options = TCP_NODELAY
local master = Yes
os level = 64
domain master = Yes
preferred master = Yes
domain logons = Yes
idmap backend = ad:ldapi://%2fvar%2fopt%2fnovell%2fxad%2frun%2fldapi
idmap uid = 1-4294967295
idmap gid = 1-4294967295
pid directory = /var/run/samba
use kerberos keytab = Yes
winbind use default domain = Yes
winbind nss info = rfc2307
dce funnel directory = /var/opt/novell/xad/rpc
nt acl support = No
load printers = No
server signing = auto # this is not default in OES2SP1
[netlogon]
comment = Network Logon Service
path = /var/opt/novell/xad/sysvol/sysvol/dsfw.local/scripts
writable = No
share modes = No
nt acl support = Yes
[sysvol]
comment = Group Policies
path = /var/opt/novell/xad/sysvol/sysvol
writable = Yes
share modes = No
nt acl support = No
[homes]
comment = Home Directories
valid users = %S, %D%w%S
browseable = No
read only = No
inherit acls = Yes
[profiles]
comment = Network Profiles Service
path = %H
read only = No
store dos attributes = Yes
create mask = 0600
directory mask = 0700
[www]
path = /srv/www
read only = No
inherit acls = yes
comment =
# Samba configuration file for Domain Services for Windows - Additional domain controller.
#
[global]
workgroup = DSFW
printing = cups
printcap name = cups
printcap cache time = 0
cups options = raw
map to guest = Bad User
include = /etc/samba/dhcp.conf
logon path = \\%L\profiles\.msprofile
logon home = \\%L\%U\.9xprofile
logon drive = P:
usershare allow guests = Yes
netbios name = SLES10-SP2-64-2
realm = dsfw.local
auth methods = guest winbind
server string = Novell Open Enterprise Server
security = ads
encrypt passwords = Yes
socket options = TCP_NODELAY
local master = Yes
os level = 64
domain master = Yes
preferred master = Yes
domain logons = Yes
idmap backend = ad:ldapi://%2fvar%2fopt%2fnovell%2fxad%2frun%2fldapi
idmap uid = 1-4294967295
idmap gid = 1-4294967295
pid directory = /var/run/samba
use kerberos keytab = Yes
winbind use default domain = Yes
winbind nss info = rfc2307
dce funnel directory = /var/opt/novell/xad/rpc
nt acl support = No
load printers = No
host msdfs = Yes
server signing = auto # this is not default in OES2SP1
[netlogon]
comment = Network Logon Service
path = /var/opt/novell/xad/sysvol/sysvol/dsfw.local/scripts
writable = No
share modes = No
nt acl support = Yes
[sysvol]
msdfs proxy = \SLES10-SP2-64-1.dsfw.local\sysvol
comment = Group Policies
msdfs root = Yes
[homes]
comment = Home Directories
valid users = %S, %D%w%S
browseable = No
read only = No
inherit acls = Yes
[profiles]
comment = Network Profiles Service
path = %H
read only = No
store dos attributes = Yes
create mask = 0600
directory mask = 0700