[389-users] sync Active Directory Computer Accounts to 389?

Techie techchavez at gmail.com
Tue May 4 01:33:09 UTC 2010


2010/5/3 Gregory A Fuller <gregory.fuller at oswego.edu>:
>
> I have Windows Active Directory to 389 Directory Server syncronization working.  I can create an account in AD and it gets synced to the 389 LDAP server and the password is synced also.  This only works for "User" accounts in Active Directory though.
>
> Is there a way that I can sync my Active Directory "machine trust" accounts from AD to the 389 directory server?  A machine trust account is just a user account that is a computer from what I can tell.  I'm looking to get the computer username and password that is set in Active Directory into the 389 server so I can do machine based RADIUS authentication directly against the 389 LDAP server rather than directly through Active Directory.
>
> Is it possible to sync the computer accounts from AD->389?  Any ideas?
I'd also wondered about this, the error I see in the log in my case
anyway, is that they are missing the required "sn:" attribute, not
sure how to get around that..

>
> --greg
>
>
> Gregory A. Fuller - CCNA
> Network Manager
> State University of New York at Oswego
> Phone: (315) 312-5750
> http://www.oswego.edu/~gfuller
>
>
> --
> 389 users mailing list
> 389-users at lists.fedoraproject.org
> https://admin.fedoraproject.org/mailman/listinfo/389-users
>



More information about the 389-users mailing list