Tso tawm Samba 4.11.0

Xa los ntawm tso tawm Samba 4.11.0, leej twg txuas ntxiv kev txhim kho ntawm ceg Samba 4 nrog rau kev siv tag nrho ntawm tus tswj hwm sau npe thiab cov kev pabcuam Active Directory, sib xws nrog kev ua haujlwm ntawm Windows 2000 thiab muaj peev xwm ua haujlwm rau txhua tus qauv ntawm Windows cov neeg siv khoom txhawb nqa los ntawm Microsoft, suav nrog Windows 10. Samba 4 yog cov khoom siv ntau yam khoom siv server uas tseem muab cov kev siv ntawm ib tug neeg rau zaub mov cov ntaub ntawv, luam cov kev pab cuam thiab tus kheej server (winbind).

Ntsiab hloov hauv Samba 4.11:

  • Los ntawm lub neej ntawd, "prefork" txheej txheem tso tawm qauv yog qhib, uas tso cai rau koj kom tswj tau lub pas dej ua ke ntawm cov txheej txheem ua ntej pib ua haujlwm. Thaum pib Samba, qhov kev xaiv '-- qauv' tam sim no siv tus nqi 'prefork' tsis yog 'tus qauv'. Yav dhau los, cov txheej txheem me nyuam cais tau pib rau txhua qhov LDAP thiab NETLOGON cov neeg siv khoom sib txuas, uas ua rau muaj kev nco tseem ceeb thaum muaj kev sib txuas tsis tu ncua. Thaum siv tus qauv 'prefork' rau LDAP, NETLOGON thiab KDC cov kev pabcuam, cov txheej txheem ruaj khov tau pib ua haujlwm uas ua haujlwm sib koom ua ke ntawm cov neeg siv khoom sib txuas thiab faib lawv ntawm cov neeg tuav haujlwm (los ntawm lub neej ntawd, 4 tus neeg tuav haujlwm tau pib);
  • Winbind xyuas kom meej tias PAM_AUTH thiab NTLM_AUTH kev lees paub cov xwm txheej raug cawm hauv lub cav, thiab tseem ntxiv qhov kev xav hauv cov ntaub ntawv pov thawj thiab xa mus rau SamLogon ntawm "logonId" tus cwj pwm uas muaj tus ID nkag mus tsim rau PAM_AUTH thiab NTLM_AUTH thov;
  • Lub tswv yim ntawm LDAP txuas rov qab (xa mus) tam sim no qhia txog cov tswv yim los ntawm qhov kev thov thawj, piv txwv li, cov kev sib txuas tau txais los ntawm ldap yog ua ntej nrog "ldap: //", thiab los ntawm ldaps - "ldaps://";
  • Ntxiv lub peev xwm los teev lub sijhawm ntawm DNS kev ua haujlwm ua los ntawm Bind 9. Cov zis tau qhib los ntawm kev qhia lub cav qib β€œdns:10” hauv smb.conf;
  • Lub default Active Directory schema tau hloov kho rau
    2012_R 2.
    Cov qub schema tuaj yeem xaiv tau siv qhov kev sib cav '--base-schema'. Txhawm rau txhim kho cov kev teeb tsa uas twb muaj lawm, koj tuaj yeem siv samba-tool "domain schemaupgrade" hais kom ua.

  • Yuav tsum muaj kev vam khom muaj xws li GnuTLS 3.2 cryptographic tsev qiv ntawv, uas hloov Samba's built-in cryptographic functions;
  • Ntxiv "samba-tool contact" hais kom tshawb nrhiav thiab kho cov ntawv nkag hauv phau ntawv chaw nyob khaws cia hauv LDAP;
  • Cov "samba-tool [neeg siv | pab pawg | khoos phis tawj | pab pawg | tiv tauj] hloov kho" cov lus txib tau txhim kho kev txhawb nqa rau kev ua haujlwm nrog lub teb chaws encodings;
  • Samba tau ua kom zoo rau kev ua haujlwm hauv cov koom haum loj heev nrog txog 100 txhiab tus neeg siv thiab 120 txhiab khoom;
  • Txhim kho kev ua tau zoo ntawm reindexing ("samba-tool dbcheck β€”reindex") thiab domain koom ua haujlwm ("samba-tool domain join") rau AD domains loj;
  • LDAP neeg rau zaub mov tau txhim kho kev nco zoo thaum tsim cov lus teb LDAP loj (piv txwv li, thaum tshawb nrhiav txhua yam khoom) los ntawm kev tshem tawm cov ntaub ntawv luam tawm hauv lub cim xeeb;
  • Qhov kev xaiv "--backend-store-loj" tau muab ntxiv rau "samba-tool" los txiav txim siab qhov siab tshaj plaws tau tso cai database loj (lmdb daim ntawv qhia);
  • Qhov kev xaiv "batch_mode" tau ntxiv rau LDB, uas tso cai rau koj los txhim kho kev ua tiav ntawm kev ua haujlwm batch los ntawm kev ua tiav hauv ib qho kev lag luam. Kev tshawb nrhiav kev ua tau zoo hauv LDBs loj kuj tau txhim kho thiab subtree renaming kev ua tau zoo dua;
  • Ntxiv rau ceph_snapshots VFS module, uas siv kev txhawb nqa rau CephFS snapshots rau kev ua haujlwm nrog cov ntaub ntawv dhau los;
  • Txoj kev khaws cov Active Directory database ntawm disk tau hloov pauv. Cov hom ntawv tshiab yuav tau txais kev thov tom qab hloov kho kom tso tawm 4.11, tab sis nyob rau hauv cov ntaub ntawv ntawm downgrading ntawm Samba 4.11 mus rau cov laus tshaj tawm koj yuav xav tau hloov dua siab tshiab hom ntawv manually;
  • Los ntawm lub neej ntawd, kev txhawb nqa rau SMB1 raws tu qauv yog neeg xiam (tus 'neeg siv min raws tu qauv' thiab 'server min raws tu qauv' teeb tsa rau SMB2_02), uas tau raug txiav tawm thiab tsis siv los ntawm Microsoft lawm;
  • Feem ntau cov kab lus hais kom siv, xws li smbclient thiab smbcacls, tau ntxiv qhov tshiab '--kev xaiv' kev xaiv uas tso cai rau koj hla dhau smb.conf chaw. Piv txwv li, hloov qhov tsawg kawg nkaus kev txhawb nqa raws tu qauv, koj tuaj yeem qhia "-option = 'client min raws tu qauv = NT1'" kom rov qab SMB1;
  • LanMan thiab plaintext authentication txoj kev tau tshaj tawm tias tsis siv lawm. Kev them nyiaj yug rau NTLM, NTLMv2 thiab Kerberos txoj kev tseem tsis hloov pauv;
  • BIND9_FLATFILE DNS backend tau raug tshem tawm thiab yuav raug tshem tawm hauv kev tso tawm yav tom ntej. Tsis tas li ntawd deprecated qhov "rndc hais kom ua" kev xaiv hauv smb.conf;
  • Cov cai ntawm tus neeg rau zaub mov built-in http (Python WSGI), uas yav tas los siv los xyuas kom meej tias kev ua haujlwm ntawm SWAT web interface, tau raug tshem tawm;
  • Los ntawm lub neej ntawd, Python 2 kev txhawb nqa yog neeg xiam thiab Python 3 tau qhib (kom rov qab Python 2 kev txhawb nqa, koj yuav tsum teeb tsa ib puag ncig hloov pauv 'PYTHON = python2' ua ntej khiav ./configure' thiab 'ua' thaum lub samba tsim txheej txheem.

Tau qhov twg los: opennet.ru

Ntxiv ib saib