HP CIFS Server Administrator Guide Version A.02.04.04 (5070-6710, October 2011)

Running Logon Scripts When Logging On.............................................................................66
Home Drive Mapping Support..................................................................................................66
Trust Relationships...................................................................................................................67
Configuring smb.conf for Trusted Users.................................................................................67
Establishing a Trust Relationship on an HP CIFS PDC With Another Samba Domain....................67
Establishing a Trust Relationship on an HP CIFS PDC With an NT Domain.................................68
Trusting an NT Domain from a Samba Domain.................................................................68
Trusting a Samba Domain from an NT Domain.................................................................68
Establishing a Trust Relationship on an HP CIFS Member Server of a Samba Domain or an NT
Domain............................................................................................................................68
5 Windows 2003 and Windows 2008 Domains............................................69
Introduction............................................................................................................................69
HP CIFS and Other HP-UX Kerberos Applications Co-existence.....................................................69
HP-UX Kerberos Client Software and LDAP Integration Software Dependencies................................69
Strong Authentication Support .................................................................................................70
Steps to install Certification Authority (CA) on a Windows ADS Server......................................70
Steps to Download the CA Certificates From Windows CA Server............................................71
Configuring HP CIFS Server to Enable startTLS.......................................................................71
Joining an HP CIFS Server to a Windows 2000, Windows 2003, and Windows 2008 Domain.......72
Configuration Parameters....................................................................................................72
Setting Permissions for a User..............................................................................................73
Step-by-step Procedure........................................................................................................74
Trust Relationships...................................................................................................................76
Establishing External Trust Relationships between HP CIFS PDCs and Windows 2003 and Windows
2008 Domains..................................................................................................................76
Establishing a Trust Relationship on an HP CIFS Member Server of a Windows 2003 or Windows
2008 Domain...................................................................................................................78
6 LDAP Integration Support...........................................................................79
Overview..............................................................................................................................79
HP CIFS Server Advantages................................................................................................80
Network Environments.............................................................................................................80
Domain Model Networks....................................................................................................80
CIFS Server Acting as the Primary Domain Controller (PDC)................................................80
CIFS Server Acting as the Member Server........................................................................80
CIFS Server Acting as Backup Domain Controller (BDC) to Samba PDC................................80
CIFS Server acting as an Active Directory Service (ADS) Member Server..............................80
Workgroup Model Networks...............................................................................................81
UNIX User Authentication - /etc/passwd, NIS Migration.........................................................81
The CIFS Authentication with LDAP Integration.......................................................................81
Summary of Installing and Configuring......................................................................................82
Installing and Configuring Your Directory Server.........................................................................82
Installing the Directory Server..............................................................................................82
Configuring Your Directory Server........................................................................................83
Verifying the Directory Server..............................................................................................83
Installing LDAP-UX Client Services on an HP CIFS Server..............................................................83
Configuring the LDAP-UX Client Services....................................................................................83
Quick Configuration...........................................................................................................84
Enabling Secure Sockets Layer (SSL)..........................................................................................86
Configuring the Directory Server to enable SSL......................................................................86
Configuring the LDAP-UX Client to Use SSL............................................................................86
Configuring HP CIFS Server to enable SSL.............................................................................87
Extending the Samba Subschema into Your Directory Server........................................................88
Samba Subschema Differences Between HP CIFS Server Versions.............................................88
Procedures to Extend the Samba Subschema into Your Directory..............................................88
Contents 5