<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://wiki.itcollege.ee/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Kvares</id>
	<title>ICO wiki - User contributions [en]</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.itcollege.ee/api.php?action=feedcontributions&amp;feedformat=atom&amp;user=Kvares"/>
	<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php/Special:Contributions/Kvares"/>
	<updated>2026-05-14T05:43:13Z</updated>
	<subtitle>User contributions</subtitle>
	<generator>MediaWiki 1.45.1</generator>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=32224</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=32224"/>
		<updated>2011-05-17T20:27:04Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Testimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
faili sisuks:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine ja bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Kontrollime, kas Samba töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30813</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30813"/>
		<updated>2011-05-09T08:52:08Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* skriptide modifitseerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
faili sisuks:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine ja bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Kontrollime, kas Samba töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30812</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30812"/>
		<updated>2011-05-09T08:51:07Z</updated>

		<summary type="html">&lt;p&gt;Kvares: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
faili sisuks:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine ja bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Kontrollime, kas Samba töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30809</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30809"/>
		<updated>2011-05-09T08:42:53Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* skriptide modifitseerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
faili sisuks:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine ja bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30808</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30808"/>
		<updated>2011-05-09T08:40:07Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* DNS seadistamine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine ja bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30807</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30807"/>
		<updated>2011-05-09T08:39:14Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* AppArmor */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine ja bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30806</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30806"/>
		<updated>2011-05-09T08:37:28Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 sudo -i&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get update&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee \&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
lisame SAMBAPID kontrolli rea  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;   alla:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &lt;br /&gt;
&lt;br /&gt;
#Lisame järgmised kolm rida&lt;br /&gt;
 if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
    then   mkdir -p $(dirname $SAMBAPID) &lt;br /&gt;
 fi&lt;br /&gt;
 &lt;br /&gt;
 if ...&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisada rida &lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
&amp;lt;source lang=&amp;quot;bash&amp;quot;&amp;gt;&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&amp;lt;/source&amp;gt;&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30653</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30653"/>
		<updated>2011-05-08T11:35:49Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* kokkuvõte */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
lisame read:&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
SAmba4 on keerulisem varasemast versioonist, silmas tuleb ka pidada, et tsoonifail genereeritakse töö käigus automaatselt . Probleem võib tekkida sellega, et bind9 on eelnevalt installeeritud, sel juhul tuleb bind9 confi faile käsitsi korrigeerida.. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30650</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30650"/>
		<updated>2011-05-08T11:30:40Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Testimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
lisame read:&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
Proovime, kas pääseme ligi jagatud kaustale&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
kui kõik on korras: (lõpetamiseks exit)&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30647</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30647"/>
		<updated>2011-05-08T11:26:47Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Kasutatud kirjandus */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
vastuseks on:&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasulikke viiteid=&lt;br /&gt;
1.http://blog.mycroes.nl/2010/09/installing-samba-4-on-ubuntu-maverick.html&lt;br /&gt;
&lt;br /&gt;
2.Samba4 [[https://wiki.samba.org/index.php/Samba4]]&lt;br /&gt;
&lt;br /&gt;
3.Samba4/HOWTO [[https://wiki.samba.org/index.php/Samba4/HOWTO]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30646</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30646"/>
		<updated>2011-05-08T11:21:41Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* kokkuvõte */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
vastuseks on:&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;br /&gt;
&lt;br /&gt;
= Kasutatud kirjandus=&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30645</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30645"/>
		<updated>2011-05-08T11:21:15Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Tulemüürimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
Küsitakse administraatori parooli &lt;br /&gt;
 &lt;br /&gt;
&amp;lt;br/&amp;gt;&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
vastuseks on:&lt;br /&gt;
 smb: \&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=Tulemüür=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30643</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30643"/>
		<updated>2011-05-08T11:20:39Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Testimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30642</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30642"/>
		<updated>2011-05-08T11:20:26Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Testimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
Tulemuseks on nimekiri jagatud failide nimekiri:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30641</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30641"/>
		<updated>2011-05-08T11:18:47Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Testimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketi krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30640</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30640"/>
		<updated>2011-05-08T11:18:08Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* AppArmor */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/* rw,&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;/var/lib/samba/private/dns/* rw,&#039;&#039;&#039;&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30639</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30639"/>
		<updated>2011-05-08T11:17:14Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* skriptide modifitseerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;#!/bin/sh&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&#039;&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30638</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30638"/>
		<updated>2011-05-08T11:15:53Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
==skriptide modifitseerimine==&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30637</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30637"/>
		<updated>2011-05-08T11:15:07Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Skoop */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  . Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja LDAP serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30636</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30636"/>
		<updated>2011-05-08T11:14:37Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Sissejuhatus */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud. Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  .Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30635</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30635"/>
		<updated>2011-05-08T11:14:22Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Sissejuhatus */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib. Samba4 sisaldab sisemist LDAP serverit,Kerberos serverit koos PAC toetusega, Bind9, Python toetust jmuud.Samba4 kasutab uut Virtual File System (VFS) mis toetab Acess Control List -i (ACL).&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  .Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.kena.kaalik.ee&lt;br /&gt;
&lt;br /&gt;
Loome kausta, mida jagada&lt;br /&gt;
 mkdir /data/test -p&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf lõppu share nimega test&lt;br /&gt;
&lt;br /&gt;
 nano /etc/samba/smb.conf&lt;br /&gt;
&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
 smbclient //kena.kaalik.ee/test -U%&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30632</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30632"/>
		<updated>2011-05-08T11:07:38Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Sissejuhatus */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
Samba4 ei ole veel valmis, arendus alles käib.&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  .Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili etc/samba/smb.conf lõppu share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme sambale restarti&lt;br /&gt;
 service samba4 restart&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30629</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30629"/>
		<updated>2011-05-08T10:40:28Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Skoop */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
Kasutame Samba 4.0.0alpha12  .Juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 &lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
Testimiseks installeerime paketti krb5-user&lt;br /&gt;
 apt-get install krb5-user&lt;br /&gt;
&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30625</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30625"/>
		<updated>2011-05-08T10:32:11Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&#039;&#039;&#039;&lt;br /&gt;
 &#039;&#039;&#039;then   mkdir -p $(dirname $SAMBAPID)&#039;&#039;&#039;  &lt;br /&gt;
 &#039;&#039;&#039;fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano /etc/bind/named.conf.local&lt;br /&gt;
&lt;br /&gt;
Lisada lõppu rida&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.conf&lt;br /&gt;
&lt;br /&gt;
Lisada rida &lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30624</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30624"/>
		<updated>2011-05-08T10:25:02Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30623</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30623"/>
		<updated>2011-05-08T10:24:25Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Testimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
&amp;lt;pre&amp;gt; Sharename       Type       Comment&lt;br /&gt;
	---------       ----       -------&lt;br /&gt;
	printers        Printer    All Printers&lt;br /&gt;
	print$          Disk       Printer Drivers&lt;br /&gt;
	IPC$            IPC        IPC Service (%h server (Samba, Ubuntu))&lt;br /&gt;
	ADMIN$          Disk       DISK Service (%h server (Samba, Ubuntu))&lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30622</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30622"/>
		<updated>2011-05-08T09:53:51Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30621</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30621"/>
		<updated>2011-05-08T09:23:17Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Tulemüürimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba4 kasutades peavad olema tulemüüris avatud järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30620</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30620"/>
		<updated>2011-05-08T09:21:47Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Kerberos */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
Vajalik on veel Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30619</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30619"/>
		<updated>2011-05-08T09:21:14Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* AppArmor */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
==Kerberos==&lt;br /&gt;
VAjalik on Kerberose confifaili tõstmine&lt;br /&gt;
&lt;br /&gt;
 cp /var/lib/samba/private/krb5.conf /etc/&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30618</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30618"/>
		<updated>2011-05-08T09:15:10Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* AppArmor */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
 }&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 nano /etc/resolv.con&lt;br /&gt;
 ...&lt;br /&gt;
 nameserver 127.0.0.1&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30617</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30617"/>
		<updated>2011-05-08T09:13:30Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* AppArmor */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib AppArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,&lt;br /&gt;
}&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 /etc/resolv.con&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30616</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30616"/>
		<updated>2011-05-08T09:11:50Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* APPArmor= */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
==AppArmor==&lt;br /&gt;
Järgmine probleem tekib APPArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,}&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 /etc/resolv.con&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30615</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30615"/>
		<updated>2011-05-08T09:10:54Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* DNS seadistamine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
Alustuseks tuleb korrigeerida confi faili&lt;br /&gt;
 nano named.conf.local&lt;br /&gt;
&lt;br /&gt;
 // /etc/bind/named.conf.local...&lt;br /&gt;
 //include &amp;quot;/etc/bind/zones.rfc1918&amp;quot;;&lt;br /&gt;
 include &amp;quot;/var/lib/samba/private/named.conf&amp;quot;;&lt;br /&gt;
&lt;br /&gt;
=APPArmor==&lt;br /&gt;
Järgmine probleem tekib APPArmoriga, kes kaitseb samba4 faile Bindi eest. Lahenduseks on:&lt;br /&gt;
&lt;br /&gt;
 nano /etc/apparmor.d/usr.sbin.named&lt;br /&gt;
 ...&lt;br /&gt;
 /var/lib/samba/private/* rw,&lt;br /&gt;
 /var/lib/samba/private/dns/* rw,}&lt;br /&gt;
&lt;br /&gt;
AppArmor profiilide laadimine and bindile restart:&lt;br /&gt;
&lt;br /&gt;
 /etc/init.d/apparmor reload&lt;br /&gt;
 /etc/init.d/bind9 restart&lt;br /&gt;
&lt;br /&gt;
 /etc/resolv.con&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30614</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30614"/>
		<updated>2011-05-08T08:55:47Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
==DNS seadistamine==&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30613</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30613"/>
		<updated>2011-05-08T08:54:25Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba töötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]:&lt;br /&gt;
 Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30611</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30611"/>
		<updated>2011-05-08T08:53:14Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba tötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
Kui tulemuseks on järgnev teade, siis töötab&lt;br /&gt;
 Password for [SAMDOM\Administrator]&lt;br /&gt;
 : Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30609</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30609"/>
		<updated>2011-05-08T08:52:04Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
Nüüd kontroll, kas samba tötab:&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
 smbclient -UAdministrator -Llocalhost&lt;br /&gt;
 Password for [SAMDOM\Administrator]&lt;br /&gt;
 : Sharename       Type       Comment &lt;br /&gt;
 ---------       ----       ------- &lt;br /&gt;
 netlogon        Disk        &lt;br /&gt;
 sysvol          Disk        &lt;br /&gt;
 IPC$            IPC        IPC Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 ADMIN$          Disk       DISK Service (Samba 4.0.0alpha12-GIT-UNKNOWN)&lt;br /&gt;
 REWRITE: list servers not implemented&lt;br /&gt;
Kui tuleb selline pilt, siis töötab&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30606</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30606"/>
		<updated>2011-05-08T08:39:50Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Skoop */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu Maverick 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit. Meil on kasutada näidisdomeen nimega&#039;&#039; kena.kaalik.ee &#039;&#039;.&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30605</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30605"/>
		<updated>2011-05-08T08:35:59Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendame tarkvara nimekirja&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30604</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30604"/>
		<updated>2011-05-08T08:34:18Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib Ubuntu 10.10 jaoks, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
Töö alustamiseks on soovitav logida sisse administraatorina&lt;br /&gt;
&lt;br /&gt;
 sudo -i&lt;br /&gt;
Seejärel uuendada&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
installime vajalikud paketid&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9 krb5-user&lt;br /&gt;
&lt;br /&gt;
salvestame vana konfiguratsiooni faili teise nimega&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
Loome bind9 kofiguratsiooni faili. Parool peab olema vähemalt 7 sümbolit, meie näites:Kaalika55&lt;br /&gt;
  LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=kena.kaalik.ee&lt;br /&gt;
 --domain=KAALIK --adminpass=Kaalika55 --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Samba4 ei kontrolli samba kataloogi olemasolu /var/run ja see tuleb samba4 skripti ise lisada.&lt;br /&gt;
&lt;br /&gt;
 nano /etc/init.d/samba4&lt;br /&gt;
&lt;br /&gt;
 &#039;&#039;...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  &#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;&#039;if [ ! -d $(dirname $SAMBAPID) ];&lt;br /&gt;
 then   mkdir -p $(dirname $SAMBAPID)  &lt;br /&gt;
 fi&#039;&#039;&#039;&lt;br /&gt;
 &lt;br /&gt;
 &#039;&#039;if...&#039;&#039;&lt;br /&gt;
&lt;br /&gt;
Veel tuleb luua fail /usr/local/sbin/samba. Ka seda võib teha, kasutades käsku nano&lt;br /&gt;
 nano  /usr/local/sbin/samba&lt;br /&gt;
 &lt;br /&gt;
 #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
Tekkitame  eelnevale ka lingid&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Samba4 käivitamine &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&amp;lt;br/&amp;gt;Versiooni kontrollimine:&lt;br /&gt;
 smbclient --version&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas töötab:&lt;br /&gt;
 smbclient -L localhost -U%&lt;br /&gt;
&lt;br /&gt;
That should show you a list of shares available on your server. For example:&lt;br /&gt;
 xxxxxxx&lt;br /&gt;
 xxxxxx&lt;br /&gt;
&lt;br /&gt;
Kontrollime, kas kerberos-server töötab&lt;br /&gt;
 kinit Administrator&lt;br /&gt;
küsitakse salasõnat&lt;br /&gt;
&lt;br /&gt;
&amp;lt;br/&amp;gt;Testime dns serverit&lt;br /&gt;
 host -t SRV _kerberos._udp.samdom.example.com&lt;br /&gt;
&lt;br /&gt;
Lisame faili smb.conf share nimega test&lt;br /&gt;
 [test]&lt;br /&gt;
       path = /data/test&lt;br /&gt;
       read only = no&lt;br /&gt;
teeme restarti&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
Samba 4 kasutab järgmised pordid&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp             :139                 &lt;br /&gt;
&amp;gt; tcp             :464       &lt;br /&gt;
&amp;gt; tcp             :88             &lt;br /&gt;
&amp;gt; tcp             :636              &lt;br /&gt;
&amp;gt; tcp             :445          &lt;br /&gt;
&amp;gt; tcp             :1024          &lt;br /&gt;
&amp;gt; tcp             :3268           &lt;br /&gt;
&amp;gt; tcp             :389                &lt;br /&gt;
&amp;gt; tcp             :135              &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30464</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30464"/>
		<updated>2011-05-07T07:59:15Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib 10.10, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
apt-get&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Bind modif&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9&lt;br /&gt;
&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
  sudo LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=samdom.example.com --domain=SAMDOM --adminpass=SOMEPASSWORD --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
 # /etc/init.d/samba4...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  if [ ! -d $(dirname $SAMBAPID) ]; then   mkdir -p $(dirname $SAMBAPID)  fi  if !...&lt;br /&gt;
&lt;br /&gt;
 Create /usr/local/sbin/samba: #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:139             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
8a12,13&lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
10a16,21&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:636             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:445             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:1024            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:3268            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:389             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:135             0.0.0.0:*               LISTEN  &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30463</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30463"/>
		<updated>2011-05-07T07:58:27Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Installeerimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib 10.10, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
apt-get&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Bind modif&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
 apt-get update&lt;br /&gt;
&lt;br /&gt;
 apt-get install samba4 samba4-clients bind9&lt;br /&gt;
&lt;br /&gt;
 mv /etc/samba/smb.conf{,.old}&lt;br /&gt;
&lt;br /&gt;
  sudo LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/share/samba/setup/provision --realm=samdom.example.com --domain=SAMDOM --adminpass=SOMEPASSWORD --server-role=&#039;domain controller&#039;&lt;br /&gt;
&lt;br /&gt;
 # /etc/init.d/samba4...  log_daemon_msg &amp;quot;Starting Samba 4 daemon&amp;quot; &amp;quot;samba&amp;quot;  if [ ! -d $(dirname $SAMBAPID) ]; then   mkdir -p $(dirname $SAMBAPID)  fi  if !...&lt;br /&gt;
&lt;br /&gt;
 Create /usr/local/sbin/samba: #!/bin/sh&lt;br /&gt;
 LD_PRELOAD=/usr/lib/libdcerpc.so.0.0.1 /usr/sbin/$(basename $0)&lt;br /&gt;
 &lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_dnsupdate}&lt;br /&gt;
 ln -s /usr/local/sbin/samba{,_spnupdate}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
  sudo /etc/init.d/samba4 start&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:139             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
8a12,13&lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
10a16,21&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:636             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:445             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:1024            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:3268            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:389             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:135             0.0.0.0:*               LISTEN  &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30448</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30448"/>
		<updated>2011-05-06T17:45:25Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* kokkuvõte=4 on keerulisem */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib 10.10, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
apt-get&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Bind modif&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:139             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
8a12,13&lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
10a16,21&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:636             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:445             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:1024            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:3268            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:389             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:135             0.0.0.0:*               LISTEN  &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=kokkuvõte=&lt;br /&gt;
4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30447</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30447"/>
		<updated>2011-05-06T17:43:12Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Tulemüürimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib 10.10, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
apt-get&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Bind modif&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:139             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
8a12,13&lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
10a16,21&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:636             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:445             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:1024            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:3268            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:389             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:135             0.0.0.0:*               LISTEN  &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=kokkuvõte=4 on keerulisem=&lt;br /&gt;
(-tsoonifail oli olemas)&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:IT infrastruktuuri teenused]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30431</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30431"/>
		<updated>2011-05-06T15:06:01Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Tulemüürimine */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib 10.10, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
apt-get&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Bind modif&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
&amp;lt;pre&amp;gt;&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:139             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
8a12,13&lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
10a16,21&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:636             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:445             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:1024            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:3268            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:389             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:135             0.0.0.0:*               LISTEN  &lt;br /&gt;
&amp;lt;/pre&amp;gt;&lt;br /&gt;
=kokkuvõte=4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30430</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30430"/>
		<updated>2011-05-06T15:05:44Z</updated>

		<summary type="html">&lt;p&gt;Kvares: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares AK31 ja Maksim Kornejev AK31&lt;br /&gt;
&lt;br /&gt;
=Sissejuhatus=&lt;br /&gt;
&lt;br /&gt;
=Skoop= &lt;br /&gt;
juhend kehtib 10.10, kuhu pole installeeritud bind9, kerberos-serverit ja ldap -serverit&lt;br /&gt;
&lt;br /&gt;
=Installeerimine=&lt;br /&gt;
apt-get&lt;br /&gt;
skriptide modifitseerimine&lt;br /&gt;
Bind modif&lt;br /&gt;
aptArmori muutmine&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=Testimine=&lt;br /&gt;
kinit Administrator&lt;br /&gt;
Smbd-client&lt;br /&gt;
&lt;br /&gt;
=Tulemüürimine=&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:139             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:464       0.0.0.0:*               LISTEN     &lt;br /&gt;
8a12,13&lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.201:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 192.168.7.101:88        0.0.0.0:*               LISTEN     &lt;br /&gt;
10a16,21&lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:636             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:445             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:1024            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:3268            0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:389             0.0.0.0:*               LISTEN     &lt;br /&gt;
&amp;gt; tcp        0      0 0.0.0.0:135             0.0.0.0:*               LISTEN  &lt;br /&gt;
&lt;br /&gt;
=kokkuvõte=4 on keerulisem&lt;br /&gt;
(-tsoonifail oli olemas)&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30429</id>
		<title>Samba4 installeerimine</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Samba4_installeerimine&amp;diff=30429"/>
		<updated>2011-05-06T14:53:40Z</updated>

		<summary type="html">&lt;p&gt;Kvares: Created page with &amp;#039;See artikkel on pooleni.  Autorid Kaie Vares ja Maksim Kornejev&amp;#039;&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;See artikkel on pooleni.&lt;br /&gt;
&lt;br /&gt;
Autorid Kaie Vares ja Maksim Kornejev&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Talk:Apt&amp;diff=22778</id>
		<title>Talk:Apt</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Talk:Apt&amp;diff=22778"/>
		<updated>2011-01-26T11:07:28Z</updated>

		<summary type="html">&lt;p&gt;Kvares: &lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;Tekst on vajalik ja arusaadav. Arvutisse sisestav on selgelt eristuv.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Veidi virinat:&lt;br /&gt;
&lt;br /&gt;
Tuleks kasutajat teavitada, kui korraldused tuleb käivitada administraatori õigustes.&lt;br /&gt;
&lt;br /&gt;
Kui kasutaja kopeerib näiteks järgneva rea oma bash shelli siis ei toimu midagi, kuna rida algab kommentaarimärgiga. Sama probleem on teiste koodinäidetega.&lt;br /&gt;
# apt-file search apache2.conf&lt;br /&gt;
&lt;br /&gt;
Peatükk Failid pole arusaadav ja sisaldab vigu. &lt;br /&gt;
&lt;br /&gt;
Pakun hetkel 4p&lt;br /&gt;
&lt;br /&gt;
[[User:Mernits|Mernits]] 15:01, 12 January 2011 (EET)&lt;br /&gt;
&lt;br /&gt;
===Vastus===&lt;br /&gt;
Kohendasin natuke kogu teksti, eemaldasin eksitavad kommentaarimärgid. Lisandus eraldi punkt apt-file kohta ja kokkuvõte.&lt;br /&gt;
&lt;br /&gt;
--[[User:Kvares|Kvares]] 13:07, 26 January 2011 (EET)&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
	<entry>
		<id>https://wiki.itcollege.ee/index.php?title=Apt&amp;diff=22777</id>
		<title>Apt</title>
		<link rel="alternate" type="text/html" href="https://wiki.itcollege.ee/index.php?title=Apt&amp;diff=22777"/>
		<updated>2011-01-26T10:59:21Z</updated>

		<summary type="html">&lt;p&gt;Kvares: /* Kokkuvõte */&lt;/p&gt;
&lt;hr /&gt;
&lt;div&gt;==Ajalugu==&lt;br /&gt;
&lt;br /&gt;
„Aegade alguses“  oli  .tar.gz. Kasutajad pidid  ise kompileerima igat programmi mida nad soovisid kasutada oma GNU/Linux süsteemis. Debiani loomisel peeti  vajalikuks et süsteemis endas oleks olemas  vahendid  tarkvara pakettide haldamiseks. Sellise vahendi nimeks sai dpkg. Red Hati loojad otsustasid luua  oma programmi, rpm paketihalduse süsteemi. &lt;br /&gt;
&lt;br /&gt;
GNU/Linuxi loojate järgmine vajadus oli leida viis pakettide installimiseks, mis oleks kiire ja tõhus nii sõltuvuste automaatseks haldamiseks kui ka hoolitseks  konfigureerimisfailide eest uuenduste ajal. Jällegi  näitas siin teed Debian ja nii sündiski APT.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=APT=&lt;br /&gt;
&lt;br /&gt;
APT (&#039;&#039;Advanced Packaging Tool&#039;&#039;) on pakihalduse süsteem, mis suudab lahendada sõltuvused, võimaldab otsida uut tarkvara, annab infot tarkvara pakettide kohta. Pakettide haldamiseks on kasutusel mitmed käsurea programmid. Neist enim kasutusel apt-get, apt-cache. Apti võib oma funktsionaalsuselt võrrelda &#039;&#039;dpkg&#039;&#039;-ga, põhiline erinevus seisneb apt-i suutlikkuses hallata ka kõiki seotud tarkvara pakette, samal ajal  kui dpkg toimetab ainult konkreetse tarkvara paketi endaga.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==Failid==&lt;br /&gt;
&lt;br /&gt;
*/etc/apt/apt.conf                               &lt;br /&gt;
apti konfiguratsioonifail &lt;br /&gt;
*/etc/apt/sources.list                            &lt;br /&gt;
varamute nimekiri, kust  saab allalaadida sobivaid tarkvara pakette. &#039;&#039;source.list&#039;&#039; on võimalik lisada juurde soovi korral varamuid. Seda saab teha tekstiredaktori, näit. &#039;&#039;nano&#039;&#039; abil. Enne sellist tegevust on soovitav teha &#039;&#039;source.list&#039;&#039; -st koopia ja pärast muutmist ka &#039;&#039;apt-get update&#039;&#039;.&lt;br /&gt;
*/var/cache/apt/archives/                         &lt;br /&gt;
kataloog, kus hoitakse allalaetud pakette&lt;br /&gt;
*/var/lib/apt/lists/  &lt;br /&gt;
koht kus on üldine info iga paketti kohta, mis on määratletud &#039;&#039;source.list&#039;&#039; -is&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=apt-get=&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;&#039;apt-get&#039;&#039;&#039; võimaldab installeerida uusi tarkvara pakette, uuendada olemasolevaid, värskendada tarkvara nimekirja ja uuendada ka Ubuntu versiooni. Enim kasutatud apt-get käsud on  &#039;&#039;apt-get install pakinimi&#039;&#039;, &#039;&#039;apt-get update&#039;&#039;, &#039;&#039;apt-get upgrade&#039;&#039; ja &#039;&#039;apt-get dist-upgrade.&#039;&#039; Apt-get käsku saab kasutada administraatori õigustes. &lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
 SÜNTAKS (ver.10.10)&lt;br /&gt;
       apt-get [-sqdyfmubV] [-o= config_string ] [-c= config_file ]&lt;br /&gt;
               [-t= target_release] {update | upgrade | dselect-upgrade |&lt;br /&gt;
               dist-upgrade |&lt;br /&gt;
               install pkg [ { =pkg_version_number | /target_release } ] ...&lt;br /&gt;
               | remove pkg...  | purge pkg...  |&lt;br /&gt;
               source pkg [ { =pkg_version_number | /target_release } ] ...  |&lt;br /&gt;
               build-dep pkg...  | check | clean | autoclean | autoremove |&lt;br /&gt;
               {-v | --version} | {-h | --help}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*Update- uuendab tarkvara nimekirja infot failis /etc/apt/sources.list.&lt;br /&gt;
*Upgrade- kõigi installeritud pakettide versioonid uuendatakse&lt;br /&gt;
*Install – installeeritakse pakett koos oma sõltuvustega&lt;br /&gt;
*Dist-upgrade - op.süsteemi versiooni uuendus &lt;br /&gt;
*Remove – pakett koos oma sõltuvustega eemaldatakse&lt;br /&gt;
*Purge – sama mis remove, aga eemaldatakse ka paketi konfiguratsiooni fail&lt;br /&gt;
*Check – diagnostiline vahend katkenud sõltuvuste kontrolliks&lt;br /&gt;
*Clean ja autoclean –kustutab tarkvara instaleerimiseks kasutatud paketid&lt;br /&gt;
*Autoremove – eemaldab automaatselt installitud paketid, mida rohkem ei vajata&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Võtmed===&lt;br /&gt;
&lt;br /&gt;
-h abi&lt;br /&gt;
&lt;br /&gt;
-d  ainult allalaadida, ilma installeerimiseta&lt;br /&gt;
&lt;br /&gt;
-f  parandada sõltuvused&lt;br /&gt;
&lt;br /&gt;
-m  ignoreerida puuduvaid pakette&lt;br /&gt;
&lt;br /&gt;
-s  ainult simuleerida tegevust&lt;br /&gt;
&lt;br /&gt;
-u  näita uuendatud pakette&lt;br /&gt;
&lt;br /&gt;
-v  versioon&lt;br /&gt;
&lt;br /&gt;
==näiteid kasutusest==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Hea ülevaade &#039;&#039;apt-get&#039;&#039; kasutamisest on teemas:[https://wiki.itcollege.ee/index.php/Tarkvara_haldus_apt-get_baasil tarkvarahaldus apt-get baasil]&lt;br /&gt;
&lt;br /&gt;
Toon lisaks veel mõne näite:&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
Mngit programmi installeerides on võimalik kokku hoida kettamahus, kui keelata ära soovitatavate (&#039;&#039;recommends&#039;&#039;) programmide installeerimine.&lt;br /&gt;
  apt-get --no-install-recommends install perl&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
  apt-get install nautilus gnome-panel-      &lt;br /&gt;
Sama käsuga paigaldab &#039;&#039;apt-get&#039;&#039; nautilus programmi ja eemaldadab (&#039;&#039;remove&#039;&#039;) gnome-paneli. Eemaldamist märgib &amp;quot;-&amp;quot; paketi taga.&lt;br /&gt;
&lt;br /&gt;
  apt-get --reinstall install perl&lt;br /&gt;
Pakett Perl saab uuesti paigaldatud. (kui on tekkinud mingi probleem)&lt;br /&gt;
 &lt;br /&gt;
  apt-get -u upgrade&lt;br /&gt;
uuendatakse kõiki pakette viimasele versioonile. Võti -u tulemusena näidatakse nimekirja tarkvarast, mida uuendati.&lt;br /&gt;
&lt;br /&gt;
  apt-get --purge remove gnome-panel nautilus+&lt;br /&gt;
Sarnaselt &#039;&#039;install&#039;&#039; käsuga, saab ka &#039;&#039;remove&#039;&#039; käsuga samaaegselt ühte paketti eemaldades teist paigaldada. Paigaldamise märgiks on &amp;quot;+&amp;quot; paketi lõpus. &#039;&#039;--purge&#039;&#039; tähendus on, et eemaldatakse ka pakettide conf failid.&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=apt-cache=&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;Apt-cache&#039;&#039; võimaldab otsida ja genereerida erinevaid väljundeid pakettide andmetest.&lt;br /&gt;
&lt;br /&gt;
 SÜNTAKS (ver.10.10)&lt;br /&gt;
       apt-cache [-hvsn] [-o=config string] [-c=file] {[add file...] |&lt;br /&gt;
                 [gencaches] | [showpkg pkg...] | [showsrc pkg...] | [stats] |&lt;br /&gt;
                 [dump] | [dumpavail] | [unmet] | [search regex] |&lt;br /&gt;
                 [show pkg...] | [depends pkg...] | [rdepends pkg...] |&lt;br /&gt;
                 [pkgnames prefix] | [dotty pkg...] | [xvcg pkg...] |&lt;br /&gt;
                 [policy pkgs...] | [madison pkgs...]}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
*Showpkg – info küsitud paki versiooni ja sõltuvuste kohta&lt;br /&gt;
*Dump – tulemuseks nimekiri olemaolevatest pakkidest&lt;br /&gt;
*Stats – kuvab erinevaid statistilisi aruandeid&lt;br /&gt;
*Search – otsib etteantud nime järgi pakette &lt;br /&gt;
*Depends – näitab paketi le vajalikke sõltuvusi&lt;br /&gt;
*Rdepends – näitab paketti vajavaid sõltuvusi&lt;br /&gt;
*Pkgnames – väljastab pakettide nimed, mis sisaldavad etteantud tähtede kombinatsiooni&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
===Võtmed:===&lt;br /&gt;
-h  abi&lt;br /&gt;
&lt;br /&gt;
-v näitab programmi versiooni&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
==näiteid kasutusest==&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
   apt-cache stats&lt;br /&gt;
Näitab põhilisi andmeid paigaldatud pakettide kohta kogused, mahud jne.&lt;br /&gt;
&lt;br /&gt;
  apt-cache depends openssh-server&lt;br /&gt;
  apt-cache rdepends openssh-server&lt;br /&gt;
&lt;br /&gt;
Näitab paketi &#039;&#039;openssh-server&#039;&#039; sõltuvusi&lt;br /&gt;
&lt;br /&gt;
  apt-cache show openssh-server | grep Version&lt;br /&gt;
Tulemuseks on rida paketi versiooninumbriga.&lt;br /&gt;
Kui kasutada sama käsku ilma  &#039;&#039;|grep Version&#039;&#039; -ita, on tulemuseks kogu info paketi kohta.&lt;br /&gt;
&lt;br /&gt;
  apt-cache policy apache2&lt;br /&gt;
Näitab, kas programm on paigaldatud,versiooni jm.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
=apt-file=&lt;br /&gt;
&lt;br /&gt;
&#039;&#039;apt-file&#039;&#039; on kasutusel paketis olevate failid vaatamiseks ilma paketi installeerimise ja allalaadimiseta. Enne kasutamist on vaja&#039;&#039; apt-file&#039;&#039; installeerida.&lt;br /&gt;
 &lt;br /&gt;
&lt;br /&gt;
 &lt;br /&gt;
   sudo apt-get istall apt-file&lt;br /&gt;
   sudo apt-file update&lt;br /&gt;
&lt;br /&gt;
On võimalik otsida paketi nime seal sees oleva faili nime järgi&lt;br /&gt;
  apt-file search apache2.conf&lt;br /&gt;
Tulemuseks on nimekiri pakettidest, mis sisaldavad faili apache2.conf&lt;br /&gt;
&lt;br /&gt;
   apt-file list apache2 | more&lt;br /&gt;
Tulemuseks on paketti kuuluvate failide nimekiri&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
=Kokkuvõte=&lt;br /&gt;
Apt on mugav ja kasutajasõbralik vahend tarkvara pakettide haldamiseks. Apt-get käsuga on lihtne pakette paigaldada ja eemaldada. Hea võimalus on kasutada võtit -s, et simuleerida olukorda enne reaalset tegevust. Apt-cache  ja apt-file annavad piisavalt infot.&lt;br /&gt;
Ja kui midagi läheb meelest on alati hea võimalus toksida sisse käsk:&lt;br /&gt;
&lt;br /&gt;
 man apt-get&lt;br /&gt;
 man apt-cache&lt;br /&gt;
&lt;br /&gt;
=Kasutatud kirjandus=&lt;br /&gt;
&lt;br /&gt;
1. http://manpages.ubuntu.com/&lt;br /&gt;
&lt;br /&gt;
2. http://www.linuxtopia.org/online_books/linux_system_administration/managing_debian_software_with_apt/ch1.en.html &lt;br /&gt;
 &lt;br /&gt;
3. http://www.debian.org/doc/manuals/apt-howto/&lt;br /&gt;
&lt;br /&gt;
4. http://www.thegeekstuff.com/2009/10/debian-ubuntu-install-upgrade-remove-packages-using-apt-get-apt-cache-apt-file-dpkg/&lt;br /&gt;
&lt;br /&gt;
5. http://mirror1.atrpms.net/ccrma/man/man8/apt-cache.8.html&lt;br /&gt;
&lt;br /&gt;
6. http://en.wikipedia.org/wiki/Advanced_Packaging_Tool&lt;br /&gt;
&lt;br /&gt;
=Autor=&lt;br /&gt;
&lt;br /&gt;
Kaie Vares&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
[[Category:Operatsioonisüsteemide administreerimine ja sidumine]]&lt;/div&gt;</summary>
		<author><name>Kvares</name></author>
	</entry>
</feed>