[samba-jp:18803] samba Workgroup → samba domain 移行について

Hideshi SAKUTA Hideshi.Sakuta @ otsuka-shokai.co.jp
2006年 7月 26日 (水) 15:18:43 JST


お世話になります。さくたです。

現在、WORKGROUP環境のsambaがあるのですがsambaDOMAIN環境に移行しようと
思っております。然しながら、本番稼動のsambaBAをいきなり上げる勇気がない
ので、同じネットワーク上に別途sambaDOMAINNのサーバをたてて検証をしてから
にしたいと思っています。検証期間中はWORKGROUPsambaとDOMAINsambaの二台の
サーバを存在させて、最終的にはWORKGROUPsambaをDOMAINsambaにアップグレー
ドするかWORKGROUPsambaを取り去って、DOMAINsambaのホスト名等を変更するか
のどちらかの方策を取りたいと思っております。

このような場合どうするのがスムーズに移行できるのか、パラメータ設定も含め
てご教授いただければと思います。

【サーバ構成】RedHat ES3
・OpenLdap2.x(Master) + sambaldap-tools	ldap1:10.254.1.5
・OpenLdap2.x(Slave)	ldap2:10.254.1.6
・samba3.x(workgroup)+外付けストレージ(/home,/pub) fs:10.254.1.7
・検証samba3.x(domain)	fs-test:10.254.1.8

【smb.conf】

[global]
 	dos charset = CP932
 	unix charset = EUCJP-MS
 	display charset = EUCJP-MS
 	workgroup = CS
 	server string =  CS File Server
 	passdb backend = "ldapsam:ldap://10.254.1.5 ldap://10.254.1.6"
 	log file = /var/log/samba/%m.log
 	max log size = 50
 	socket options = TCP_NODELAY SO_RCVBUF=8576 SO_SNDBUF=8576
 	wins support = Yes
 	ldap admin dn = cn=Manager,dc=cs,dc=xxxxxx,dc=ac,dc=jp
 	ldap group suffix = ou=Groups
 	ldap machine suffix = ou=Computers
 	ldap passwd sync = Yes
 	ldap suffix = dc=cs,dc=xxxxxx,dc=ac,dc=jp
 	ldap ssl = no
 	ldap user suffix = ou=Users
 	admin users = Administrator
 	cups options = raw

[homes]
 	comment = Home Directories
 	read only = No
 	browseable = No
 	available = No

[printers]
 	comment = All Printers
 	path = /var/spool/samba
 	printable = Yes
 	browseable = No

[pub]
 	path = /pub
 	read only = No

[student2005]
 	path = /home/2005
 	read only = No

[teacher]
 	path = /home/teacher
 	read only = No

[pr1]
 	comment = 10.130.1.11(linux)
 	path = /var/spool/samba
 	read only = No
 	printer name = pr1
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[pr2]
 	comment = 10.130.1.12(linux)
 	path = /var/spool/samba
 	read only = No
 	printer name = pr2
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[pr3]
 	comment = 10.130.1.13(linux)
 	path = /var/spool/samba
 	read only = No
 	printer name = pr3
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[pr4]
 	comment = 10.130.1.14(linux)
 	path = /var/spool/samba
 	read only = No
 	printer name = pr4
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[pr]
 	comment = Linux Printing Sapport
 	path = /var/spool/samba
 	read only = No
 	printer name = pr
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[print$]
 	comment = Printer Driver Download Area
 	path = /var/samba/printers
 	write list = Administrator
 	guest ok = Yes

[prw1]
 	comment = 10.130.1.11(win)
 	path = /var/spool/samba
 	read only = No
 	printer name = prw1
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[prw2]
 	comment = 10.130.1.12(win)
 	path = /var/spool/samba
 	read only = No
 	printer name = prw2
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[prw3]
 	comment = 10.130.1.13(win)
 	path = /var/spool/samba
 	read only = No
 	printer name = prw3
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[prw4]
 	comment = 10.130.1.14(win)
 	path = /var/spool/samba
 	read only = No
 	printer name = prw4
 	browseable = No
 	oplocks = No
 	share modes = No
 	available = No

[supportdesk]
 	path = /home/supportdesk
 	read only = No

[student2006]
 	path = /home/2006
 	read only = No

【slapd.conf】

include		/etc/openldap/schema/core.schema
include		/etc/openldap/schema/cosine.schema
include		/etc/openldap/schema/inetorgperson.schema
include		/etc/openldap/schema/nis.schema
include		/etc/openldap/schema/redhat/autofs.schema
include		/etc/openldap/schema/redhat/kerberosobject.schema

include		/etc/openldap/schema/samba.schema
include		/etc/openldap/schema/xylanauthenticationperson.schema

password-hash	{MD5}

loglevel	256

database	ldbm
suffix		"dc=cs,dc=xxxxxx,dc=ac,dc=jp"
rootdn		"cn=Manager,dc=cs,dc=xxxxxx,dc=ac,dc=jp"

rootpw			{MD5}xxxxxxxxxxxxxxxxxxxxxxxx

directory	/var/lib/ldap

index	objectClass,uidNumber,gidNumber,memberUid	eq
index	cn,mail,surname,givenname			eq,subinitial
index	uid						pres,eq

replogfile	/var/lib/ldap/master-slapd.replog
replica host=ldap2.cs.xxxxxx.ac.jp:389
	binddn="cn=Manager,dc=cs,dc=xxxxxx,dc=ac,dc=jp"
	bindmethod=simple
	credentials=xxxxxxxxxx



samba-jp メーリングリストの案内