[Watford] MS AD and Linux

Alain Williams addw at phcomp.co.uk
Thu Aug 23 09:49:28 BST 2007


On Thu, Aug 23, 2007 at 09:43:01AM +0100, Mark Stewart wrote:
> Hi Guys,
> 
> Any experience/advice on
> authenticatiing various Linux flavours against M$ Active Directory
> rather than OpenLDAP appreciated.

I have done it for email purposes - ie look up local email address in M$AD
to ensure that it is valid & which exchange server to deliver to.

> I gave heard
> M$ offer Unix Services that extends the AD schema to support Linux account
> authentication  but want to avoid this.

Why do you want to avoid it ?
One thing that you do need are the extra bits of Unixy stuff such as
values for $HOME, uid, groups, ... Where do you propose to get them from if
not from M$AD ? You could have parallel registration (ie both /etc/passwd
& M$AD) but that would be a complete pain if you have more than a few users.

-- 
Alain Williams
Linux Consultant - Mail systems, Web sites, Networking, Programmer, IT Lecturer.
+44 (0) 787 668 0256  http://www.phcomp.co.uk/
Parliament Hill Computers Ltd. Registration Information: http://www.phcomp.co.uk/contact.php
Chairman of UKUUG: http://www.ukuug.org/
#include <std_disclaimer.h>



More information about the Watford mailing list