User Documentation: Difference between revisions

From SambaWiki
(Changes in the 'share setup' section (adding new links, reordering, etc.))
(Add link to lmdb details page)
(234 intermediate revisions by 15 users not shown)
Line 1: Line 1:
* [[FAQ|Frequently Asked Questions (FAQ)]]
* '''[[Introduction]]'''
* [[Samba Release Planning]]
* [[Samba_Features_added/changed_(by_release)|Samba Release Notes]]
* [[Obtaining Samba]]
* [[Installing Samba]]
:* [[Operating System Requirements]]
::* [[Package Dependencies Required to Build Samba]]
::* [[File System Support]]
:* [[Build Samba from Source]]
:* [[Distribution-specific Package Installation]]
* [[Updating Samba]]




* '''[[General Information]]'''




* [[Domain Control]]
* '''[[Installation|Installation]]'''
:* [[Active Directory Domain Controller]]
** [[Samba_Release_Planning|Release planning]]
::* [[Active Directory Naming FAQ]]
** [[Samba_Features_added/changed_(by_release)|Features added/changed (by release)]]
::* [[Setting up Samba as an Active Directory Domain Controller]]
** [[Obtaining Samba]]
** [[Installing Samba]]
::* [[Joining a Samba DC to an Existing Active Directory]]
::* [[Joining a Windows Server 2008 / 2008 R2 DC to a Samba AD]]
*** [[OS_Requirements|Operating System Requirements]]
::* [[Joining a Windows Server 2012 / 2012 R2 DC to a Samba AD]]
*** [[Build_Samba|Build Samba from Source]]
::* [[Migrating a Samba NT4 Domain to Samba AD (Classic Upgrade)]]
*** [[Binary_Distribution_Packages|Distribution specific package installation]]
*** [[Updating Samba]]
::* [[Demoting a Samba AD DC]]
::* [[The Samba AD DNS Back Ends]]
:::* [[Samba Internal DNS Back End]]
:::* [[BIND9_DLZ DNS Back End]]
::::* [[Setting up a BIND DNS Server]]
::::* [[Configure DHCP to update DNS records with BIND9]]
:::* [[Testing Dynamic DNS Updates]]
::* [[Managing the Samba AD DC Service]]
::* [[Configuring Winbindd on a Samba AD DC]]
::* [[Time Synchronisation]]
::* [[Verifying the Directory Replication Statuses]]
::* [[Manually Replicating Directory Partitions]]
::* [[Running a Samba AD DC with MIT Kerberos KDC]]
::* [[Migrating the ntvfs File Server Back End to s3fs]]
::* [[Samba AD DC Port Usage]]
::* [[Samba AD DC Troubleshooting]]
::* [[Password Settings Objects]]
::* [[Running Samba AD Domain Controllers in large domains]]
::* [[Using the lmdb database backend]]




* '''[[The different server roles]]'''
** [[Difference between a DC and PDC/BDC]]
** [[Samba as an Active Directory Domain Controller]]
*** [[Samba_AD_DC_HOWTO|Set up a Samba DC]]
**** [[Domain Name best practice]]
*** [[Join_a_domain_as_a_DC|Join Samba as a DC to an existing Domain]]
*** [[Samba_Classic_Upgrade_(NT4-style_domain_to_AD)|Samba Classic Upgrade (NT4-style Domain to AD)]]
*** [[Using_RFC2307_on_a_Samba_DC|Using RFC2307 on a Samba DC]]
*** [[Demote_a_Samba_DC|Demote a Samba DC]]
*** [[Samba as a DC for FreeIPA domain]]
*** [[Samba AD DNS backend]]
**** [[Why DNS is essential for a working AD]]
**** [[DNS|General information on the internal DNS and BIND DLZ module]]
**** [[DNS_Backend_BIND|Set up BIND as backend for Samba AD]]
**** [[Changing_the_DNS_backend|Changing the DNS backend]]
**** [[DNS_Administration|DNS Administration]]
*** [[Replication]]
**** [[SysVol Replication]]
**** [[DRS]]
**** [[DFS]]
*** [[Backup_and_Recovery|Back up a Samba DC]]
*** [[Flexible Single-Master Operations (FSMO) roles]]
** [[Samba as a NT4-style Primary Domain Controller]]
*** [[Set up Samba as a PDC]]
*** [[Registry_changes_for_NT4-style_domains|Registry changes for Windows clients in a Samba NT4-style domain]]
** [[Samba as Domain Member Server]]
*** [[Setup_a_Samba_AD_Member_Server|Set up a Samba AD Member Server]]
*** [[Set up a Member Server in a NT4 Domain]]
*** [[Back up a Member Server]]
** [[Samba as a Standalone Server]]
*** [[Set up a Samba Standalone Server]]
*** [[Back up a Standalone Server]]
** [[Clustered Samba]]
*** [[Understanding Samba Clustering]]
*** [[CTDB_Project|The CTDB Project]]
*** [[CTDB_Setup|CTDB Setup Information]]
*** [[Samba_CTDB_GPFS_Cluster_HowTo|CTDB GPFS]]
*** [[GFS_CTDB_HowTo|CTDB GFS]]


:* [[NT4 Domains]]
::* [[Setting up Samba as an NT4 PDC (Quick Start)]]
:::* [[Samba NT4 PDC Port Usage]]
::* [[Setting up Samba as an NT4 BDC]]
::* [[Required Settings for Samba NT4 Domains]]


* '''[[Common administration tasks in a Samba AD]]'''
** [[Basic_share_setup_and_ACL_configuration|Basic share setup and ACL configuration]]
*** [[Understanding_the_difference_between_POSIX_and_Windows_ACLpermissions|Understanding the difference between POSIX and Windows ACL permissions]]
*** [[Setup_and_configure_file_shares_with_Windows_ACLs|Basic share configuration with Windows ACLs]]
**** [[Setup_and_configure_file_shares_with_Windows_ACLs#Change_permissions_on_folders_of_a_share|Configuring Windows ACLs on files and folders]]
**** [[Setup_and_configure_file_shares#Setup_share_permissions|Configuring ACLs on shares]]
*** [[Setup_and_configure_file_shares_with_POSIX_ACLs|Setup and configure file shares with POSIX ACLs]]
**** [[Setup_and_configure_file_shares_with_POSIX_ACLs#Change_permissions_on_folders_of_a_share|Configuring POSIX ACLs on files and folders]]
**** [[Setup_and_configure_file_shares_with_POSIX_ACLs#Setup_share_permissions|Configuring ACLs on shares]]
** [[Setting_up_a_home_share|Set up user homes]]
** [[Samba_%26_Windows_Profiles|Configuring roaming profiles]]
** [[Samba as a Print Server]]
*** [[Samba_as_a_print_server|Setting up a Samba Print Server]]
**** [[Samba_as_a_print_server#CUPS|Using Samba with CUPS backend]]
**** [[Using CUPS driver on server side, and Postscript driver (Universal PS driver) on client side]]
**** [[Using CUPS in passthrough mode, where the RIP image is generated on client side (will work if the printer does not have a linux driver)]]
*** [[Samba_as_a_print_server#Uploading_printer_drivers_for_Point.27n.27Print_driver_installation|Configuring Point'n'Click Automatic Printer Driver Deployment]]
*** [[Virtual_PDF_Printer|Set up a virtual PDF Printer]]
** [[Local_user_management_and_authentication|Making Domain users available locally on the server]]
*** [[Winbind|Winbind & pam_winbind]]
**** [[TDB backend]]
**** [[TDB2 backend]]
**** [[RID backend]]
**** [[RFC2307 backend (pulling user/group information from AD)]]
**** [[pam_winbind]]
*** [[Local_user_management_and_authentication/nslcd|nslcd & pam_ldap]]
*** [[Local_user_management_and_authentication/sssd|sssd & pam_sss]]
** [[Configuring DNS on client computers]]
*** [[DNS_Administration#Configuring_clients_to_use_your_AD_DNS_server|Windows]]
*** [[Linux]]
*** [[Mac OS X]]
*** [[Other Unix]]
** [[Joining client machines to the domain]]
*** [[Configuring_a_windows_client_for_AD|Windows]]
*** [[Linux]]
*** [[Mac OS X]]
*** [[Other Unix]]
*** [[Setup_FreeDOS_to_access_a_Samba_share|FreeDOS]]
** [[User and Group management]]
*** [[Using Windows RSAT]]
*** [[Using samba-tool]]
** [[Installing_RSAT_on_Windows_for_AD_Management|Installing RSAT on Windows for AD Management]]
** [[Restoring_deleted_AD_objects|Restoring deleted AD objects]]
** [[Raising_the_functional_levels|Raising the function levels]]
** [[Change IP address of the DC]]
** [[Samba_AD_Schema_Extenstions|Samba AD Schema Extensions]]
** [[Setup_LDAPS_on_a_DC|Configuring LDAP over SSL on a DC]]
** [[Time_Synchronisation|Time Synchronisation]]
** [[Delegating_Administration_Permissions|Delegating administrative jobs to non-admin-accounts]]
** [[Client_specific_Log|Client specific logging]]
** [[Authenticating_other_services_against_AD|Authenticating other services against AD]]
** [[Samba_AD_Smart_Card_Login|Samba Smart Card Login]]
** [[VPN_Single_SignOn_with_Samba_AD|Single Sign-On VPN]]


* [[Domain Membership]]
:* [[Joining a Windows Client or Server to a Domain]]
::* [[Windows DNS Configuration]]
:* [[Joining a Linux or Unix Host to a Domain]]
::* [[Linux and Unix DNS Configuration]]
::* [[Setting up Samba as a Domain Member]]
:::* [[Identity Mapping Back Ends]]
::::* [[idmap config ad]] (RFC2307)
::::* [[idmap config rid]]
::::* [[idmap config autorid]]
::::* [[Local accounts]]
:::* [[Authenticating Domain Users Using PAM]]
:::* [[PAM Offline Authentication]]
::* [[Samba Domain Member Port Usage]]
:* [[Joining a Mac OS X Client to a Domain]]
::* [[Mac OS X DNS Configuration]]
:* [[Configuring FreeDOS to Access a Samba Share]]
:* [[Troubleshooting Samba Domain Members]]


* '''[[VFS|Enhancing Samba with VFS modules]]'''


* [[Setting_up_Samba_as_a_Standalone_Server|Standalone Server]]
:* [[Setting up Samba as a Standalone Server]]


* '''[[Server-Side_Copy|Improve performance with server-side copy]]'''


* [[CTDB and Clustered Samba]]


* '''[[General information]]'''
** [[Samba port usage]]
** [[Understanding oplocks]]
** [[Tuning performance]]
** [[Reloading server configuration]]


* [[Advanced Configuration]]
:* [[Configuring Logging on a Samba Server]]
::* [[Setting up Audit Logging]]
:* [[DNS Administration]]
::* [[Changing the DNS Back End of a Samba AD DC]]
::* [[DNS administration]]
::* [[DNS troubleshooting]]
:::* [[Dns_tkey_negotiategss: TKEY is unacceptable]]
:* [[Setting up RFC2307 in AD]]
:* [[Print Server Support]]
::* [[Setting up Samba as a Print Server]]
::* [[Setting up Automatic Printer Driver Downloads for Windows Clients]]
::* [[Creating Custom Paper Sizes]]
::* [[Setting up Network Printer Ports]]
::* [[Virtual PDF Printer]]
:* [[Active Directory Sites]]
:* [[Samba AD Schema]]
::* [[AD Schema Version Support]]
::* [[Samba AD schema extensions]]
:* [[Virtual File System Modules]]
:* [[Generating Keytabs]]


* '''[[FAQ|Frequently Asked Questions (FAQ)]]'''




* '''[[Complete Guides|Complete Guides]]'''




* [[Replication]]
* '''[[Background information]]'''
** [[Samba Database files]]
:* [[Distributed File System (DFS)]]
::* [[SysVol replication (DFS-R)]]
*** [[LDB|LDB]]
:::* [[Rsync based SysVol replication workaround]] (Samba DCs only)
*** [[TDB|TDB]]
:::* [[Bidirectional Rsync/Unison based SysVol replication workaround]] (Samba DCs only)
*** [[TDB_Locations|TDB Locations]]
:::* [[Bidirectional Rsync/osync based SysVol replication workaround]] (Samba DCs only)
:::* [[Robocopy based SysVol replication workaround]] (Samba DCs -> Windows DCs)
:* [[Directory Replication Service (DRS)]]




* '''[[Known Issues]]'''
** [[incompatibility with realmd]]




* '''[[Troubleshooting]]'''
** [[Getting help]]
*** [https://lists.samba.org/mailman/listinfo/samba Samba Mailing List]
*** [http://www.samba.org/samba/support/ Commercial Support]


* [[Common Administration Tasks]]
:* [[The Windows remote server administration tools (RSAT)]]
::* [[Installing RSAT]]
:* [[Remote and local management of Samba]]
::* [[User and group management]]
:::* [[Maintaining Unix Attributes in AD using ADUC]]
:::* [[Administer Unix Attributes in AD using samba-tool and ldb-tools]]
:* [[Backup and restore]]
::* [[Back up and Restoring a Samba AD DC]]
::* [[Back up and Restoring a Samba Domain Member]]
:* [[Samba File Serving]]
::* [[Setting up a Share Using Windows ACLs]]
::* [[Setting up a Share Using POSIX ACLs]]
::* [[Special file shares]]
:::* [[User Home Folders]]
:::* [[Roaming Windows User Profiles]]
::::* [[Configuring Windows Profile Folder Redirections]]
:::* [[Setting up a Share Without Authentication]]
:* [[Flexible Single-Master Operations (FSMO) Roles]]
::* [[Transferring and Seizing FSMO Roles]]
:* [[The AD functional levels]]
::* [[Raising the Functional Levels]]
:* [[Changing the IP Address of a Samba AD DC]]
:* [[Configuring LDAP over SSL (LDAPS) on a Samba AD DC]]
:* [[Delegating administrative permissions to non-administrators]]
::* [[Delegation/Joining_Machines_to_a_Domain|Joining Machines to a Domain]]
::* [[Delegation/Account_management|Account management]]
:* [[Administer workstations]]
::* [[Managing local groups on domain members via GPO restricted groups]]
:* [[Working with Active Directory encoded LDAP values]]
:* [[Performance Tuning]]
:* [[Configure Samba to Bind to Specific Interfaces]]
:* [[Server-Side_Copy|Improving performance with server-side copy]]
:* [[Samba AD Smart Card Login]]
:* [[VPN Single SignOn with Samba AD]]
:* [[Authenticating other services against Samba AD]]
::* [[Authenticating Apache against Active Directory]]
::* [[OpenSSH Single sign-on]]
::* [[Authenticating Dovecot against Active Directory]]
:* [[openLDAP as proxy to AD]]
:* [[Client specific logging]]
:* [[Configure Samba to Work Better with Mac OS X]]


* '''[[Contribute|Contributing]]'''
** [[Bug_Reporting|Bug reporting]]
** [[Samba documentation team]]
** [[How_To_Write_Samba_Documentation|How To Write Samba Documentation]]





* '''[[Terms_and_abbreviations|Terms and abbreviations]]'''
* Security
:* [[Samba_Security_Documentation|Samba Security Documentation]]




* [[Terms and Abbreviations]]





* [[Getting Help]]
:* [https://lists.samba.org/mailman/listinfo/samba Samba Mailing List]
:* [https://www.samba.org/samba/support/ Commercial Support]





* [[Contribute]]
:* [[Bug Reporting]]
:* [[How To Write Samba Documentation]]

Revision as of 20:30, 31 March 2020














  • Security