Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Installation

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 06-12-2007, 04:24 PM
Advanced Member
 
Posts: 185
Default Zimbra + Samba as a BDC

I found an excellent Zimbra + Samba PDC config guide at:

UNIX and Windows Accounts in Zimbra LDAP and Zimbra Admin UI - ZimbraWiki

,but I need to replace an existing Exchange 5.5/NT 4.0 BDC.

I've searched for that but come up empty. Has anyone ever tried that or could I somehow modify the steps in the link above to do so?

Also, I think I've read in a couple of places that I really should run Zimbra by itself on the server. Would running Samba as a BDC on the same box violate that?

Thanks In Advance for any ideas, hints or tips!
Reply With Quote
  #2 (permalink)  
Old 06-13-2007, 07:47 PM
Zimbra Employee
 
Posts: 127
Default

Quote:
Originally Posted by bubarooni View Post
I found an excellent Zimbra + Samba PDC config guide at:

UNIX and Windows Accounts in Zimbra LDAP and Zimbra Admin UI - ZimbraWiki
Thanks!

Quote:
,but I need to replace an existing Exchange 5.5/NT 4.0 BDC.
What is your Primary Domain Controller? If your Primary Domain Controller is NT and you, for some reason want to keep it and do not want to replace it with Samba, than you would have to use NT for creating accounts.
Ideally, you would can use the guide from the wiki to replace the PDC with Samba and than also configure a second Samba instance as a BDC. You can get all the information you need for configuring Samba as a BDC in Official Samba HOWTO mentioned in our wiki guide.

Quote:
Also, I think I've read in a couple of places that I really should run Zimbra by itself on the server. Would running Samba as a BDC on the same box violate that?
While this is possible and both will work together, this is going to be very hard on your hardware, because PDC (and even more so BDC) is a very busy machine and Zimbra is even busier. So, I would recommend getting separate machines for performance purpose. If you are going to run both on the same machine and you are going to use user authentication against LDAP through pam_ldap, make sure that you configure your pam_ldap to fallback to /etc/passwd or add your zimbra user to your LDAP.


Quote:
Thanks In Advance for any ideas, hints or tips!
You're welcome
__________________
Bugzilla - Wiki - Downloads - Before posting... Search!
P.S.: don't forget to vote on this bug
add Samba LDAP entries to Exchange Migration Tool

Last edited by Greg; 06-13-2007 at 07:49 PM..
Reply With Quote
  #3 (permalink)  
Old 02-13-2009, 07:30 AM
Member
 
Posts: 11
Default Zimbra Samba PDC and Samba slave LDAP BDC

Hi folks

I also followed the wiki and I am now happy with my Samba server authenticating users against zimbra user base.

next step in my mind would be to use others foreign offsite samba servers to auth against this very same Zimbra user base. (BDC)

To ensure extra reliability even if the WAN link went down between Zimbra LDAP and foreign Sambas, I will use master/slave LDAP scheme, the master LDAP being Zimbra, and the slaves ldaps will be hosted on foreign samba servers. (slapd)

I believe I'll have to add some lines to add slaves in
/opt/zimbra/conf/slapd.conf.in like :
Code:
replica uri=ldap://ldap-2.example.com:389 binddn="cn=Manager,dc=example,dc=com" bindmethod=simple credentials=secret

replogfile      /var/lib/ldap/replog
I also think I'll have to add samba ldap schemas to every foreign samba ldap servers


does it sounds good to zimbra gods?
Reply With Quote
  #4 (permalink)  
Old 03-11-2009, 08:55 AM
Member
 
Posts: 11
Default Got it working

I finally got a zimbra PDC + samba BDC setup working

Primary site : zimbra 5.0.9 Centos 5.2 quad Xeon workhorse (PDC)

Office sites : Debian Samba on stock PC computer ("BDC")

the goal is to use the same user base from every sites AND some WAN failover security if WAN went down. (aka BDC)

I did a "LDAP only" zimbra setup on offices following this doc
Multiple-Server Installation

and told the samba server to auth against its own ip adress (localhost won't work)
following this (neat) link
Multiple-Server Installation

this seems to work fine except the slave zimbra LDAP keeps complaining about:

Unable to determine enabled services from ldap.
Unable to determine enabled services. Cache is out of date or doesn't exist.

this is I think because no other zimbra service is running (correct?)

Is there any way to get rid of those alerts (it fills mail and log)

Thank you in advance
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.