Slashdot Mirror


User: Zombie+Ryushu

Zombie+Ryushu's activity in the archive.

Stories
0
Comments
670
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 670

  1. Re:Samba 4 changes everythying on Ask Slashdot: Is Samba4 a Viable Alternative To Active Directory? · · Score: 1

    I am not saying that. I am saying Samba 4 OpenLDAP backward compatibility because it uses OpenLDAP Internally. You would just change how the LDAP files are configured.

    Before with OpenLDAP:
    nss_base_passwd ou=People,dc=domain,dc=com?sub
    nss_base_shadow ou=People,dc=domain,dc=com?sub
    nss_base_group ou=Group,dc=domain,dc=com?sub
    nss_base_hosts ou=Hosts,dc=domain,dc=com?sub
    sudoers_base ou=People,dc=domain,dc=com?sub

    With Samba 4:
    nss_base_passwd CN=users,dc=domain,dc=com?sub
    nss_base_shadow CN=users,dc=domain,dc=com?sub
    nss_base_group CN=users,dc=domain,dc=com?sub
    nss_base_hosts CN=Computers,dc=domain,dc=com?sub
    sudoers_base CN=users,dc=domain,dc=com?sub

    The object class data types all have to be imported from OpenLDAP.

  2. Re:Something LIKE AD for linux desktops... on Ask Slashdot: Is Samba4 a Viable Alternative To Active Directory? · · Score: 2

    You don't understand. AD IS LDAP. The Samba 4 AD Server runs OpenLDAP and Heimdal Kerberos.The file /etc files direct the machine to look to LDAP for configuration and policy instructions.

  3. Re:Something LIKE AD for linux desktops... on Ask Slashdot: Is Samba4 a Viable Alternative To Active Directory? · · Score: 1

    Samba 4 is backward compatible with OpenLDAP.

  4. What "Group Policy is" on Ask Slashdot: Is Samba4 a Viable Alternative To Active Directory? · · Score: 4, Interesting

    Keep in mind that "Group Policy" is, truly, is merely Windows Registry keys stored in the LDAP database in Active Directory. Samba 4 will store these in it's LDAP database. Something Samba 3.x+OpenLDAP Couldn't do.

    Linux has no Registry, Linux approaches the Group policy concept differently by having application level Sub-Schemas that have to be imported into the tree. Linux applications then have to be configured to call on the LDAP Database instead of using it's local files. There are OpenLDAP Schemas for:

    Sudoers
    Evolution
    eGroupware/phpGroupware
    DHCP
    Samba 3 of course
    Bind (Deprecated)
    Posix Accounts (/etc/password, NIS and NFS related)
    CUPS (Printers)
    Kerberos
    Posix
    Puppet
    urpmi (Exclusive to Mandriva)
    Apache (Can store httpd cluster information)
    Zimbra ...and more.

    When Samba 4 is released, you have to import all these OpenLDAP entries into the Samba 4 LDAP tree.

  5. Re:All-Linux network on Ask Slashdot: Is Samba4 a Viable Alternative To Active Directory? · · Score: 1

    Yes, For all Linux networks, Samba does change things. Samba 4 is backward compatible with all of OpenLDAP's and Heimdal Kerberos's clients. In a purely Linux network, Linux machines would connect to the Samba 4 Active Directory as Open Directory Clients.

  6. Samba 4 changes everythying on Ask Slashdot: Is Samba4 a Viable Alternative To Active Directory? · · Score: 5, Informative

    Since 2005, The combination of OpenLDAP, Heimdal Kerberos, and Samba 3 has been a staple in the Linux Infrastructure, with other services such as FreeRadius, NFSv4, and AFS being tacked on for good measure.
    Many if not most Linux based utilities support LDAP. Unlike Samba 3, which functioned as an OpenLDAP based application, Samba 4 completely replaces OpenLDAP, and Heimdal Kerberos. Consider the following. Samba 3, while far beyond what Windows NT4 was ever capable of, expanded the NT4 Domain concept far beyond it' design limiations. In the most recent era, Samba 3.5 and 3.6, created an enhanced form of NT Domain Authentication just for interoperability with Windows 7. (This is very fascinating because it uses Windows 2003 Sign and Seal with NT4 Authentication, something NT4 never could do.) So it can be be said, while Windows 7 expressly drops support for Windows NT4, Windows 7 has express support for Samba 3.

    Yet the sword of Damoclese has swung over the head of Samba 3.x for a long while. Vista dropped support for NT4 Style System Policies, requiring administrators to resort to registry Trickery with Wine and third party policy tools such as NitroBit.

    Samba 3 brought about a form of NT Domain that supported LDAP as a backend, could use Kerberos for Authentication both for file shares and joining the Domain. (Although only other Samba clients could utilize the Kerberos aspects of Samba 3.) Could delf out policy by OU. With help from OpenLDAP, Samba 3 could overcome the single PDC limitation, and all Samba Domain Controllers could be writable PDCs because OpenLDAP supported Multi-master Replication.

    Beyond Samba, FreeRadius could use LDAP for authentication, Evolution could garner configuration information from OpenLDAP, for IMAP and SMTP settings (CalDAV Support was never added, even though there were feilds in the OpenLDAP schema for the three CalDAV based Calendar, Addressbook, and Task List.) This cooperated with eGroupware. Sudo could draw Sudoers from OpenLDAP, as could NSS. Each had their own unique Schemas.

    Unlike when Windows moved from NT4 Domains too AD, the movement was simple, before, you had no Directory Service, and now, boom! you do. In the Linux world LDAP has been a reality for a long time. Many applications are built to participate in Open Directory based Domains based on OpenLDAP Schemas. What happens if the Schemas conflict definitions? How will this be resolved?"

  7. Linux users have to know the game exists. on Will the Star Citizen Project Fund Linux and Mac Ports For CryENGINE 3? · · Score: 2

    The Linux Gaming community is a different audience than the Windows Gaming community. It has to be marketed to Linux gamers properly.

  8. Re:Expect to see more of this sort of thing. on JPL Employee's Firing Wasn't Due To Intelligent Design Advocacy, Says Judge · · Score: 1

    I said Christianity. Not the existence of God.

  9. Expect to see more of this sort of thing. on JPL Employee's Firing Wasn't Due To Intelligent Design Advocacy, Says Judge · · Score: 2

    Expect to see more of this sort of thing. Here is the thing. In my estimation/opinion, Christianity is 'done'. There is no good reason for anyone to follow this religion anymore. The reason for that is that it has been scientifically disproved. So what you are seeing now is, people whose entire lives have been raised on this belief system we now have concrete evidence to debunk, attempting to use the legal system like a bludgeon to cover up the evidence.

    What we are in right now with situations like the ID movement is denial. There are people out there who Christianity has been all they've known there entire lives. They will go through all manner of mental gymnastics to try and fit this bronze age myth into the scientific world as much as possible. Here's the problem. It's going to kill us if we don't stop this.

    For one thing, we have severe environmental issues that are getting worse by the day, and we have diseases that are getting more difficult to treat. People who believe in Christianity, are also to some extent rejecting modern medical science. There was a US Congressman who advocated not vaccinating females against a kind of cervical cancer because the Bible said so.. Many children die in the US due to things like faith healing.

    Are you entitled to your religion? Sure. But you are not allowed to ban science you don't like because it goes against your religion. The supernatural claims of the Bible just patently false. There is no Holy spirit, there is no salvation by Jesus, or any other such insanity. You can think that if you want too, but you are not allowed to tell other people what they can do, and create and invent. You aren't allowed to impose your religion on other people.

  10. What does this server actually do? on Ask Slashdot: Finding Legacy UnixWare Installation Media? · · Score: 2

    What does this server actually do? Can you tell me? Is it a Sun Yellow Pages server?

  11. Re:I am a Linux gamer, X-mas LAN party on Ask Slashdot: Securing a Windows Laptop, For the Windows Newbie? · · Score: 1

    I had a second idea.

    You say your son has a friend that plays Wow, right?

    Easy fix. Have him copy the friends WoW directory over Samba to an arbitrary directory in Linux. Boom, instantly, you have a complete WoW installation with all the proper settings. (Wow is literally completely selfcontained.)

  12. Re:I am a Linux gamer, X-mas LAN party on Ask Slashdot: Securing a Windows Laptop, For the Windows Newbie? · · Score: 1

    Make sure you use Wine 1.4.1 (The stable version.) The Wine versions in 1.5.x have messed up install scripting.

    Make absolutely sure your Video cards are Nvidia, and make absolutely sure you use the Closed source Nvidia driver. Intel GMA Won't work. ATI MAY work depending on the card. But the best way to get the best results, is Nvidia.

    As for your problem with the servers, you have to modify the realmlist.wtf files (yes they really are called that) in your WoW directory to point to the Euro-Zone servers. Then WoW will work.

    http://www.wowwiki.com/World_of_Warcraft_functionality_on_Wine

  13. Re:I am a Linux gamer, X-mas LAN party on Ask Slashdot: Securing a Windows Laptop, For the Windows Newbie? · · Score: 1

    One more thing. Make sure yuo use Nvidia Cards. ATI and Intel GMA cards WILL NOT Work!

  14. Re:I am a Linux gamer, X-mas LAN party on Ask Slashdot: Securing a Windows Laptop, For the Windows Newbie? · · Score: 1

    I just told you that Wow Works out of the box with a dirty prefix. It's an install and run situation there,.

  15. I am a Linux gamer, X-mas LAN party on Ask Slashdot: Securing a Windows Laptop, For the Windows Newbie? · · Score: 1

    Every year I host a LAN party on X-mas Day. On Linux.

    2006 - Duke Nukem 3D
    2007 - Urban Terror
    2008 - Warzone 2100
    2009 - Doom 3 and Unreal Tournament
    2010 - WoW
    2011 - Enemy Territory Quake Wars
    This year will be Borderlands or Halo. (Under Wine) Not sure which.

    So the idea this kid needs Windows 7 is doubly rediculous. I make it my business to host contained LAN wars for Friends and Family.

  16. I don't believe you. on Ask Slashdot: Securing a Windows Laptop, For the Windows Newbie? · · Score: 4, Informative

    WoW runs perfectly under Wine, even under a dirty prefix, and has for like 5 years, maybe longer. League of Legends you must clean Prefix, and install dx9, dotnet2.0, and vcrun2008. Then LoL will work. I know from experience that this shit works.

  17. This has been covered before. on Ask Richard Dawkins About Evolution, Religion, and Science Education · · Score: 1

    Dawkins is a horrible

    For Christianity to be true, and the Jesus Crucifixion to have had any purpose, that particular story is the most important story after the story of Jesus. Without Creationism, Christianity collapses entirely because Yahweh has no original sin with Which to condemn us all to Hell from the start.

    Paul provided Christianity with the rope to hang itself. Because he created the clause in the Bible that requires the initial original sin of Adam to take place for any of this to mean anything. The Original sin of Adam is the PRIMARY reason for the Crucifixion in Jesus, ordinary Human failings are SECONDARY.

    I understand what Paul was trying to do, he was looking for a way to make the laws of the Torah invalid for salvation. He wanted to be able to go to the Jews of his time, and say "Yahweh doesn't care if you follow the laws of Moses any longer. You were bad followers so he no longer wants you because you have the audacity to reject the sacrifice of the savior. So, see you in Hell."

    We know the world is not 6000 years old, we know that the Genesis myths were allegory because those desert nomads didn't know how the world began, Paul hedged the entire religion on the foundation of that myth.

    So in conclusion, Christianity is the cult of Paul. This only applies to Christianity. But it is the critical fault in Christianity that disproves it. Thats why creationists cling tp the creation myth more than any other myth in the Bible. It's the corner stone that collapses the whole religion.

    Dawkins doesn't understand what he's up against. He is asking people to give up going yo a magical fantasy land when they die, he is asking people to give up centuries of religious supremacy.

  18. Re:LDAP support? on Notification UI Overhauled in KDE 4.10 (And a Plan For Modernized Notifications) · · Score: 4, Interesting

    I was being factious. OpenLDAP support has been a requested feature of KDE since KDE 3.5 was around. It has been repeatedly rejected, even back in 2006 when Buchan Mline was a Mandriva employee and made a KDE to OpenLDAP Schema for Mandriva Corporate Server.

  19. LDAP support? on Notification UI Overhauled in KDE 4.10 (And a Plan For Modernized Notifications) · · Score: -1, Offtopic

    Is there any chance that KDE could get OpenLDAP auto-configuration some time this century?

  20. I hear all these people switching to OSX. on GNOME 3.6 To Include Major Revisions · · Score: 4, Informative

    And I start to wonder if these are just Apple Trolls. Listen, It's easy enough to switch to KDE or XFCE. I run Mandriva 2011. I use KDE. I have my own custom KDE theme installed with rpm. It works fine. There is no reason to abandon Linux because Gnome sucks, just run whatever programs you please under XFCE or KDE if Gnome is so awful.

    You are an idiot if you switch to OSX or Windows over this.

  21. Re:Open office on The True Challenges of Desktop Linux · · Score: 1

    Evolution is a viable Outlook replacement, if configured right. Trust me, I have experience with eGroupware and Evolution. It works.

  22. Someone needs to tell the Linux distro creators... on The True Challenges of Desktop Linux · · Score: 3, Insightful

    No more "New Distros". No more new package managers, If you have applications, make meta-packages. What really needs to happen is, DEB and RPM need to talk to each other. Stop making "New Distro that changes everything needlessly again."

    Make applications that solve problems, make meta-packages for large suites of applications, make it so RPM distros can talk to DEB databases and vice versa. Agree on a system. And give the "I'm going to make a new distro where the Wallpaper is blue rather than brown" a big glass of shut-up juice. There needs to be one overlording Linux.

  23. Whis is this not a meta-package? on GNOMEbuntu Set To Arrive In October · · Score: 4, Interesting

    Why is is this not a meta-package? Why is it necessary to have a completely different Ubuntu for Gnome?

  24. You are somewhat correct and yet not. on How Apple Killed the Linux Desktop · · Score: 3, Informative

    There was more to it than that. OSX was a serious problem. The Linux community was so wrapped up in competing with Windows for survival that we didn't see OSX coming.

    Linux's core APIs don't change as violently as most people say. SDL 1.2 is still SDL, OpenGL is still OpenGL. At the Kernel level, there is resistance to inter-Kernel compatibility to try and prevent unscrupulous vendors from tainting hardware level code. I don't think I have seen a glibc double free error that was not caused by a real bug in the program since 2005/2006.

    Package Management boils down to RPM and DEB. And those should be the only two possibilities.

    So the core of Linux is like the core of the Earth. It runs, and if you have drivers for it, it's fine. The Surface of Linux is like the surface of the Earth. Utter Pandemonium. KDE and Gnome and it's various tool kits and it's extensions created a situation where endless pandemonium abound. Honestly, they acted like a bunch of 13 year olds playing with Windows 3.1. (If you were 12, or 13, you constantly wanted to re-arrange icons, change the colors, on and on and on. And people got so frustrated such that they didn't want to do it anymore. And moved to OSX.

    There needs to be some iron and steel level discipline (with a lower case d) in desktop development. We need to stop creating a situation where everything on the surface is totally different every other version and nobody can find anything.

    Another problem is the networking and communication issues with various networking protocols and whatnot. At the command line level, Linux is completely network transparent, even with X.org itself. But the moment you try and utilize desktop level CalDAV Calenders, or Samba shares, it takes a bunch of trial and error to get things working. An example.

    Lets say that I have a file on one machine, and I want to get it on another machine via the network. I can of course use Secure shell (SSH) to do that. But what if I want to use Samba to do that. (One Linux box to another Linux box.). because Samba is supported as an overlay by Gnome and KDE. Will it work? Well if I use the command line smbclient yes it will. Under Gnome and KDE, it's a bit more complex. If the Samba Overlay was not installed in Nautilus (Gnome) or Dolphin (KDE), either one of those will throw an error. Additionally, if specific credentials are required to do such a thing, it would require they be setup in KDE or Gnome System Settings before hand. I garuntee you won't know where that Samba mount point is as an ordinary user even if it DOES work.

    Another example. This one not involving LibreOffice, KDE, and evolution. We use KDE as the desktop, LibreOffice as the Office Suite and Evolution as E-mail. Why? Well, LibreOffice for obvious reasons is the most compatible Office Suite. Evolution for some rather odd reasons.

    1. Evolution is the only Linux Mail and Groupware client that can be autoconfigured from our Open Directory Infrastructure. (LDAP). Only Evolution can get user information from LDAP with reguard to WebDAV, CalDAV, GroupDAV, and IMAP without having to edit it by hand.(like AD does with Microsoft Office and Outlook.)

    2. Evolution is the only Groupware Client that can interoperate with eGroupware's iCal based services. in addition to Offsite Outlook Web Services. Thunderbird Lightning, and Kontact technically work, but not as bug free as Evolution does.

    So, this creates the following simple problem:

    I have users that are used to being able to "edit attachments" under Outlook with real Outlook Servers. (This is a functionality microsoft is getting ready to remove due to numerous security holes in doing this.) but using "Save As" is time consuming, sometimes my users don't know what directory they saved it in etc. So I introduced them to LibreOffice's "Send as E-mail feature." guess what. If you don't go into LibreOffice and over ride the defaults, it launches ThunderBird of Kontact.

  25. OpenAFS+Samba on Ask Slashdot: Best *nix Distro For a Dynamic File Server? · · Score: 1

    Use OpenAFS with Samba's modules. Distribution doesn't matter.