Creating a Windows AD using Samba 4 on Ubuntu 22.04

Поделиться
HTML-код
  • Опубликовано: 9 ноя 2022
  • In this video we explore the cost effective solution of running a Windows Active Directory on Linux using Samba 4, Then we connect to it from a Window and Linux client
    All commands are available here:
    links.considerednormal.com/Ia...
    #activedirectory #samba4 #ubuntu
  • НаукаНаука

Комментарии • 69

  • @user-rp9om4td7d
    @user-rp9om4td7d 10 месяцев назад +31

    Warning for people setting this up .... never use something.local as your domain name. ".local" is reserved by the ietf and used by multicast DNS. I learned this the hard way so you don't have to.

    • @annako5240
      @annako5240 10 месяцев назад +3

      .lan is great ?

    • @user-rp9om4td7d
      @user-rp9om4td7d 10 месяцев назад

      Yes. .LAN is fine.@@annako5240

    • @alexfrench3748
      @alexfrench3748 9 месяцев назад +1

      I tend to use .internal, .local and bonjour don't play nice.

    • @BenediktHauer
      @BenediktHauer 2 месяца назад

      In case you didn’t know, the ICANN proposes to use .internal… It was published recently - you can check it out here: itp.cdn.icann.org/en/files/root-system/identification-tld-private-use-24-01-2024-en.pdf

    • @mitsukiyouko
      @mitsukiyouko Месяц назад

      oof i scrolled down too late RIP

  • @dimram2005
    @dimram2005 6 месяцев назад +9

    Great tutorial sir. Works 100%.
    Just for those who have ufw in their system, you need to open ports 53 for DNS and 135 for the Domain Controller

    • @dawnS33ker
      @dawnS33ker 3 месяца назад +2

      I found this out the hard way. I had pihole running in my test VM 😃

  • @colram
    @colram 10 месяцев назад +1

    you made my night!
    thank you very much for this great description!
    greetings from bavaria

  • @dawnS33ker
    @dawnS33ker 3 месяца назад

    I have been looking for a video like this for ages. Thank you very much for this.

  • @kosak46
    @kosak46 Год назад +7

    Thank you very very much. It is the first time, when I've launched AD in my Ubuntu server and this is the video that showed me the right way to do that!
    By the way, after I've installed RSAT, the icons didn't apper in the control panel.
    And I cannot create any samba group in WebMin anymore.

  • @denisgreshnyakov8551
    @denisgreshnyakov8551 Год назад

    thank you for this video! this video really helped me!

  • @philmennenoh5946
    @philmennenoh5946 7 месяцев назад

    Thank you for your time.

  • @jcspaziano
    @jcspaziano 3 месяца назад

    Excellent Tutorial!! Thank you!

  • @theniceboss_yt1214
    @theniceboss_yt1214 5 месяцев назад

    Great Tutorial Thank you man

  • @Mikesco3
    @Mikesco3 9 месяцев назад

    Totally worth my subscription!!!
    I would love to see a video setting up a mail server hosted locally with a VPS serving as a proxy / VPN gateway

    • @considerednormal
      @considerednormal  3 месяца назад

      Sorry for the late reply. Intriguing idea. Might make it happen

  • @ilyakul2200
    @ilyakul2200 10 месяцев назад +1

    Thanks you, men! 😀

  • @monsterhuntfreak2011
    @monsterhuntfreak2011 Год назад

    thank you so much for this :)

  • @giannicarafone2677
    @giannicarafone2677 7 месяцев назад

    Grazie, tutorial eccezionale.

  • @justask6686
    @justask6686 Месяц назад

    For what it's worth, I just followed this with Ubuntu 24.04 and it worked great.

  • @madserge11
    @madserge11 3 месяца назад

    Nathan Fillion doing tech guides, nice!

  • @O_Jiisan
    @O_Jiisan Год назад +1

    Thank you for this great tutorial. 2 question tho. If I added a user, how to assign a location (on the server?) for the home dir? And how to also have shares? Or should another samba server be built seperate for shares?

  • @medaey
    @medaey Год назад

    Greating

  • @nikolatepavac2539
    @nikolatepavac2539 9 месяцев назад

    You have explained every step very clearly. Thanks for making such a useful vedeo!
    Can you maybe create a video where you'll explain how to update sabma to the latest version?

    • @considerednormal
      @considerednormal  3 месяца назад

      That is a possibility for a future video, for sure.

  • @dressyspider
    @dressyspider Год назад +1

    Thank you for creating this amazing tutorial.
    Do you have any plans to create a domain joined file server via Ubuntu or Debian? Specifically, one that can have its shares managed via ACL? That is something I have not been able to find a good tutorial for.

    • @considerednormal
      @considerednormal  Год назад +2

      A nice idea. Currently my VM server is offline, bit the dust about a month after I created this tutorial. But once it is back up I might take a run at this.

  • @jhartlov
    @jhartlov Год назад +3

    This is a really awesome tutorial. Thank you so much for adding this. Can you use this, or similar methodology to join an existing Windows domain?

    • @considerednormal
      @considerednormal  Год назад +2

      I have not tried on Ubuntu. I know Fedora has native joining capability, although I personally have never tried it. Not sure about other distros. I don't have a windows server readily available to test. If I ever manage to get one, I will definitely test this out.

    • @sinon_simp
      @sinon_simp 10 месяцев назад +1

      ​@@considerednormal You can use windows server evaluation to test that

  • @gendisayuningtyas1343
    @gendisayuningtyas1343 Год назад

    Hi nice work sir.. i try after failed before, but how to make replicate this AD ?

  • @nomad3846
    @nomad3846 Год назад

    Upon searching multiple tutorial in creating ad this is the best and easiest, i hope you can make also tutorial on how to make a file server or activate the file server after creating the ad, i tried but there seems an error.

    • @considerednormal
      @considerednormal  Год назад

      Thank you for the kind words and thank you for the idea. That might be my next video

  • @meilleur102
    @meilleur102 2 месяца назад

    any way to encrypt the DNS with this solution?

  • @accessdenied5998
    @accessdenied5998 12 дней назад

    I'm stucked at the administrator login after adding the computer to the dns

  • @common_man4857
    @common_man4857 7 месяцев назад

    AD Users groups working, but Group policy not working.

  • @Barryleunge
    @Barryleunge Год назад +2

    Please note that RSTAT only installs if system language is ENGLISH

  • @takatoekoe
    @takatoekoe 6 месяцев назад

    If I follow this, would this also work in Fedora instead of Ubuntu? I already know to use dnf instead of apt EDIT : nvm, you are also showing Fedora at the end ;)

  • @tokoiaoben3842
    @tokoiaoben3842 Год назад

    I have pfsense in my LAN acting as a DNS server. Do I still need to set my samba AD as the DNS for Windows LAN clients that will the domain?

    • @considerednormal
      @considerednormal  Год назад +1

      Yes you should, because it keeps records of all the machines by name automatically they get added to the DNS when you join the domain.

    • @danielchristie6546
      @danielchristie6546 2 месяца назад

      make your ad domains recursive resolver your pfsense firewall

  • @julius_fucking_cesar
    @julius_fucking_cesar Год назад +1

    My DNS Address is configured correctly but I can ping the server domain.

    • @B20C0
      @B20C0 Год назад

      Did you allow ICMP through your firewall?

  • @coderrquitsreality_
    @coderrquitsreality_ Год назад +1

    I cannot get past the domain provisioning. It keeps telling me invalid DNS backend

    • @considerednormal
      @considerednormal  Год назад

      You might wanna take a look at the following documentation to help fix it. wiki.samba.org/index.php/Changing_the_DNS_Back_End_of_a_Samba_AD_DC

    • @coderrquitsreality_
      @coderrquitsreality_ Год назад +1

      @@considerednormal I got past that part now, however I ran into another issue. the DC and kerberos is not being found when host -t is run.

  • @LMLecho
    @LMLecho 2 месяца назад

    so I domain join and it worked but its not resolving names like windows based one was

    • @considerednormal
      @considerednormal  2 месяца назад

      Sadly with most proprietary paid software. The open source replacements are limited compared to the counterpart they replace. You need to compare your needs to what each offers and choose the right solution that suits your needs.

  • @josecabrera5632
    @josecabrera5632 9 месяцев назад

    In windows 11, for the ping cmds I get:
    Ping request could not find host dc1.cn.lan. Please check the name and try again.
    Ping request could not find host cn.lan. Please check the name and try again.
    Any suggestions?

    • @you_tube754
      @you_tube754 9 месяцев назад +2

      Configure the DNS on your computer with the ip of the domain controller

  • @TheTF01
    @TheTF01 6 месяцев назад

    Would you be able to configure a read only domain controller similarly?

    • @considerednormal
      @considerednormal  6 месяцев назад

      Sadly I do not have an answer for this.

    • @TheTF01
      @TheTF01 5 месяцев назад

      @@considerednormal I appreciate the quick response. This video blew my mind how straightforward it was! I would love to be able to setup small Linux boxes as rodc machines in remote offices. Guess I’ll have to wait for someone smarter than I to test it on Linux.
      Is this an actual Microsoft ADDC or an ldap from another company?

  • @user-jy9jk8it4z
    @user-jy9jk8it4z Год назад

    sorry sir... when i unlink resolv.conf and touch resolv.conf .. apt update is failure
    and when i disable systemd-resolv apt update is failure too
    why ? please help me

    • @considerednormal
      @considerednormal  Год назад

      What are the contents of your resolv.conf?

    • @apex_byte
      @apex_byte 2 месяца назад

      @@considerednormal I have the same issue and follow the tutorial as is . . the only different is I am on a 192.168.1.0/24 subnet

  • @ericespino7361
    @ericespino7361 Год назад

    Great video. Can't accss the link, it asks for user/password.

  • @husseinameen7210
    @husseinameen7210 9 месяцев назад

    can i use commands of ubuntu on mint?

    • @considerednormal
      @considerednormal  9 месяцев назад

      If I am not mistaken Mint is an Ubuntu based flavour, so the commands should work out of the box.

    • @considerednormal
      @considerednormal  9 месяцев назад

      If you are using the LMDE version, which is Debian based, the commands should still run as well, as Ubuntu is based on Debian.

  • @bokdcutie
    @bokdcutie 3 месяца назад

    Will windows 11 work ?

    • @considerednormal
      @considerednormal  3 месяца назад

      It should. I did not test it personally, but it should work much the same way in regards to joining the domain. But I cannot speak on the part of controlling the policies and such with windows tools as I did not investigate what tools are available for Win11

  • @Disrupterds
    @Disrupterds 8 месяцев назад

    Yew bun too? Oo bun too? Nothing matters...

  • @SaarlaneKretiin
    @SaarlaneKretiin 2 месяца назад

    thanks for wasting 7 hours of my life with this.