HP CIFS Server 3.0d Administrator's Guide version A.02.02 (Edition 5)

Windows 2000/2003 Domains
Joining an HP CIFS Server to a Windows 2000/2003 Domain
Chapter 5106
Configuration Parameters
The following is a description of the smb.conf paramters shown in
“Step-by-step Procedure” on page 106:
realm This parameter specifies the name of the ADS kerberos
realm which has the fully qualified domain name. It
must be set the same as the kerberos realm value in
krb5.conf.
workgroup This parameter specifies the name of domain in which
the HP CIFS Server is a domain member server.
security When the HP CIFS Server joins to Windows 200x as an
ADS native member server, you must set this
parameter to ADS.
password server This parameter defines the NetBIOS name of the
Windows ADS PDC machine that performs the user
name authentication and validation.
encrypt passwords If this parameter is set to yes, the passwords used
to authenticate users are encrypted.
netbios name Set this parameter to the NetBIOS name by which a
member server is known.
Step-by-step Procedure
Use the following instructions to join an HP CIFS Server to a Windows
2000/2003 Domain as an ADS native member server:
Step 1. Verify that LDAP-UX Integration product has been installed on your HP
CIFS Server:
swlist | grep J4269AA
Consult “Installing LDAP-UX Client Services on an HP CIFS Server” on
page 123 in Chapter 6, "LDAP Integration Support" if necessary.
Step 2. On your HP CIFS Server, you need to create the Kerberos configuration
file, /etc/krb5.conf, which specifies the default realm, the location of a
Key Distribution Center (KDC) server and the logging file names. The
Kerberos client depends on the configuration to locate the realm’s KDC.