LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise
User Name
Password
Linux - Enterprise This forum is for all items relating to using Linux in the Enterprise.

Notices


Reply
  Search this Thread
Old 02-23-2010, 02:22 PM   #1
hkg04
LQ Newbie
 
Registered: Feb 2010
Posts: 3

Rep: Reputation: 0
authenticate AD users to openldap


I think this question has been asked by many people but I still can't seem to find the answer for it. I would like to have my Windows Active Directory users, either logon to the domain using desktop or Termainal server, to authenticate to an Openldap server so that they can access resource on the linux machines. I tried Microsoft's Service for Unix 3.5 but it only support NIS or password file synchronization. I was also thinking about Kerberos cross realm trust, but it didn't seem to me as a single sign on solution.

Thanks
 
Old 02-23-2010, 09:21 PM   #2
custangro
Senior Member
 
Registered: Nov 2006
Location: California
Distribution: Fedora , CentOS , RHEL
Posts: 1,979
Blog Entries: 1

Rep: Reputation: 209Reputation: 209Reputation: 209
Quote:
Originally Posted by hkg04 View Post
I think this question has been asked by many people but I still can't seem to find the answer for it. I would like to have my Windows Active Directory users, either logon to the domain using desktop or Termainal server, to authenticate to an Openldap server so that they can access resource on the linux machines. I tried Microsoft's Service for Unix 3.5 but it only support NIS or password file synchronization. I was also thinking about Kerberos cross realm trust, but it didn't seem to me as a single sign on solution.

Thanks
What OS are you running on the Linux side? If you're using RHEL/CentOS...

http://www.linuxmail.info/active-dir...amba-centos-5/
http://www.linuxmail.info/active-dir...ingle-sign-on/
 
Old 02-23-2010, 10:12 PM   #3
hkg04
LQ Newbie
 
Registered: Feb 2010
Posts: 3

Original Poster
Rep: Reputation: 0
It is Redhat base distro. I do know winbind and SFU 3.0. But they don't authenticate domain user through openldap. I did try SFU but it only support NIS and password file synchronization. My intention is to allow Windows users to use Linux resource while they are logging onto the domain through think client or remote desktop session.
 
Old 02-23-2010, 10:31 PM   #4
custangro
Senior Member
 
Registered: Nov 2006
Location: California
Distribution: Fedora , CentOS , RHEL
Posts: 1,979
Blog Entries: 1

Rep: Reputation: 209Reputation: 209Reputation: 209
Quote:
Originally Posted by hkg04 View Post
It is Redhat base distro. I do know winbind and SFU 3.0. But they don't authenticate domain user through openldap. I did try SFU but it only support NIS and password file synchronization. My intention is to allow Windows users to use Linux resource while they are logging onto the domain through think client or remote desktop session.
You would need to set up replications between AD and OpenLDAP (RHDS or FDS/CDS)...

http://www.redhat.com/docs/manuals/d...ation_Overview

http://www.redhat.com/docs/manuals/d...onization.html



-C
 
Old 02-24-2010, 09:34 AM   #5
hkg04
LQ Newbie
 
Registered: Feb 2010
Posts: 3

Original Poster
Rep: Reputation: 0
Although our distro is RH base, but we don't use RHDS, only openldap.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Getting squid to authenticate to OpenLDAP Server fluff Linux - Networking 12 06-11-2010 05:20 PM
MySQL users to authenticate with Openldap server niraj.kumar Linux - Server 1 03-14-2009 11:19 AM
Samba authenticate against OpenLDAP? licht Linux - Networking 0 08-09-2007 05:50 PM
OpenLDAP authenticate against Kerberos? licht Linux - Server 0 07-31-2007 12:58 PM
getting a linux client to authenticate against OpenLDAP server mars_fun_size Linux - Software 1 03-15-2007 03:22 AM

LinuxQuestions.org > Forums > Enterprise Linux Forums > Linux - Enterprise

All times are GMT -5. The time now is 12:11 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration