Linux Domain Controller
- 
 CentOS and OpenSuse are always my "go to" choices before anything else. Lots of things are made for Ubuntu today, so that gets used a bit. ML is on Ubuntu, for example, because the NodeBB developers develop on Ubuntu so the testing is better. Sadly, no OpenSuse on CloudatCost, yet. I'm pushing them for that and for FreeBSD. 
- 
 Will I actually see the linux server in my windows AD when its working? 
- 
 @Sparkum said: Will I actually see the linux server in my windows AD when its working? Yes, Windows can't tell it isn't a Windows machine. It's a AD server, just like any other. 
- 
 Oh thats pretty sweet actually, that actually makes me not want to de-commission my windows based DC if they will actually talk to each other. I'll look into Pertino right now. 
- 
 @scottalanmiller said: @Sparkum said: Will I actually see the linux server in my windows AD when its working? Yes, Windows can't tell it isn't a Windows machine. It's a AD server, just like any other. More accurately, it's an LDAP server. Despite what people think, Microsoft kept up with proper standards for AD (the overarching product line). Active Directory encompasses a large scope of product lines, certificates, device integration, DNS, DHCP, etc. etc. etc. But at it's core, it's just an LDAP server. Not a super scalable one, but one none the less. What you get with Samba as a controller is an LDAP database. Given AD's ubiquity in the authentication scape, it's a good choice to use as it supports a broad base of OSes with little modification. You can't say the same thing about things like Netware's old eDirectory or straight OpenLDAP. 
- 
 Importantly, it is LDAP + Kerberos setup to the AD specks. 
- 
 So following this write up: 
 http://www.alexwyn.com/computer-tips/centos-samba4-active-directory-domain-controllerI get to step 8 and do the seft test cd samba-master 
 .\configure --enable-debug --enable-selftestand get met with the following error /root/samba-master/source4/lib/tls/wscript:37: error: Building the AD DC requires GnuTLS (eg libgnutls-dev, gnutls-devel) for ldaps:// support and for the BackipKey protocol. Would anyone be able to spread some light on that for me, Found and tried a few things but its not clearing up the message for me. As well when I do the next step make I get WAF_MAKE=1 python ./buildtools/bin/waf build 
 Project not configured (run "waf configure' first)again tried a few things and still hitting walls. Any light that could be shed would be awesome. Thanks guys. 
- 
 It sounds like some dependencies didn't get installed. You may want to try installing from a package instead of from source. CentOS has a pre-packaged option. Just do: yum install samba4That should install all the dependencies. 
- 
 If you want to continue you need to install GnuTLS' devel package. yum install libgnutls-devFrom the suggestion above. 
- 
 @scottalanmiller said: No PDC / BDC concepts in Active Directory. That's a SAM concept from NT 4 days and older. The DC concept replaced them in 2000 when AD was introduced. There is still a PDC emulator role. 
- 
 Keep in mind a linux domain is giving you authentication only (and authorization on the local system) no group policy as of yet. 
- 
 @thecreativeone91 said: @scottalanmiller said: No PDC / BDC concepts in Active Directory. That's a SAM concept from NT 4 days and older. The DC concept replaced them in 2000 when AD was introduced. There is still a PDC emulator role. I was going to mention that...LOL 
- 
 Tried this and get pages of errors stating cannot resolve to the mirror....Have I maybe just screwed something up with my box? As well when I do yum install libgnutls-dev I get not available. 
- 
 
- 
 That how to is for CentOS 6. Don't use that. Use the modern CentOS 7. It should have everything built in for you. Any how to that has you build from source should set of alarms like crazy. I know this is for home, so experiment all you want. But enterprise IT doesn't build from source, that's a hobbyist activity or a large IT department engineering group prepping packages with custom changes. That's not how RHEL / CentOS or any enterprise OS is meant to be used. 
- 
 @thecreativeone91 said: Keep in mind a linux domain is giving you authentication only (and authorization on the local system) no group policy as of yet. Group Policy has been available since day one with Samba4. That's never been lacking. 
- 
 Ya I definately went with 7 hoping and assuming this wouldnt change. I'll switch to 6.5 (Was gonna go 6.5 just for the larger amount of documentation) 
- 
 @thecreativeone91 said: There is still a PDC emulator role. Emulator rule, true. But no PDC. 
- 
 
- 
 @Sparkum said: Ya I definately went with 7 hoping and assuming this wouldnt change. I'll switch to 6.5 (Was gonna go 6.5 just for the larger amount of documentation) Don't switch to 6.5, stick with 7. There are built packages for 7 available, it just looks like your yum mirrors got messed up somehow. 



