Copy pam_sso.rhl from the unix/bins directory in the SFU disk to /lib/security/pam_sso.so
chmod 755 on /lib/security/pam_sso.so
Copy sso.cfg from the unix/bins directory in the SFU disk to /etc/sso.conf
chmod 600 on /etc/sso.conf
Edit SYNC_HOSTS to reflect the windows NIS Server
Use a UNIX text editor to open the etc/pam.d/system-auth file, and then locate the following line:
password required /lib/security/pam_cracklib.so retry=3
After locating the line, add the following line:
password required /usr/lib/security/pam_sso.so.1
Locate and then delete the following line:
password required /usr/lib/security/pam_deny.so
Now you can change the password using "passwd username"
Thursday, September 29, 2005
NIS client on Linux - Fedora Core4
We will be using NIS server from Windows that is previously installed and configured
edit /etc/yp.conf to include domain line Ex."domain techvim server 192.168.0.50"
check if the domainname matches your domain name Ex."techvim"
else insert a domainname line in /etc/init.d/ypbind
Ex."domainname techvim"
restart the ypbind service
check "ypcat passwd"
modify /etc/nsswitch.conf to include nis
modify /etc/passwd by typing in "+::::::" as the last line
To automatically create home directories on the machine include the line
session required pam_mkhomedir.so skel=/etc/skel/ umask=0077
in /etc/pam.d/system-auth before all the session lines
edit /etc/yp.conf to include domain line Ex."domain techvim server 192.168.0.50"
check if the domainname matches your domain name Ex."techvim"
else insert a domainname line in /etc/init.d/ypbind
Ex."domainname techvim"
restart the ypbind service
check "ypcat passwd"
modify /etc/nsswitch.conf to include nis
modify /etc/passwd by typing in "+::::::" as the last line
To automatically create home directories on the machine include the line
session required pam_mkhomedir.so skel=/etc/skel/ umask=0077
in /etc/pam.d/system-auth before all the session lines
Installing MS Services For UNIX 3.5 on Windows 2003 Server Std
Install with default settings
In Password Synchronization inselect Windows to UNIX sync and select UNIX to Windows sync. In Advanced, add the computer name and IP address of the UNIX machine.
Open up Microsoft Windoes Services for UNIX console and click on Server for NIS -> techvim and Apply the settingsNote:* Passwords for users should be reset after unix attributes for the user are
set
In Password Synchronization inselect Windows to UNIX sync and select UNIX to Windows sync. In Advanced, add the computer name and IP address of the UNIX machine.
Change Password Web Part for WSS on Windows 2003 Server Std
For Installing and configuring Web Part
Install ITaCS Change Password Web Part
Create a new Web Part Page
Browse to Virtual Server Gallery and add Change Password Web Part
Click on "Offnen Sie den Toolbereich"
Under Settings enter the Domain Name and change the Language
Add a link to the home page
For changing the Security Policy Settings
Go to Active Directory Users and Computers -> right-click on the domain and select properties -> Go to Group Policy and select Default Domain Policy -> Edit... -> Browse to Computer Configuration -> Windows Settings -> Security Settings -> Account Policies -> Password Policy
and modify the settings to
Enforce password history 1
Maximum password age 0
Minimum password age 0
Minimum password length 7
Password must meet complexity requirements Enabled
Store passwords using reversible encryption Disabled
Install ITaCS Change Password Web Part
Create a new Web Part Page
Browse to Virtual Server Gallery and add Change Password Web Part
Click on "Offnen Sie den Toolbereich"
Under Settings enter the Domain Name and change the Language
Add a link to the home page
For changing the Security Policy Settings
Go to Active Directory Users and Computers -> right-click on the domain and select properties -> Go to Group Policy and select Default Domain Policy -> Edit... -> Browse to Computer Configuration -> Windows Settings -> Security Settings -> Account Policies -> Password Policy
and modify the settings to
Enforce password history 1
Maximum password age 0
Minimum password age 0
Minimum password length 7
Password must meet complexity requirements Enabled
Store passwords using reversible encryption Disabled
Asterisk | The Open Source PBX
Asterisk | The Open Source PBX A IP Telephony site is worth taking a look at using the inexpensive Intel hardware.
Wednesday, September 28, 2005
RyanVM's MSFN Files Page
RyanVM's Windows Updates has all the updates and service packs released til date in a convenient package that can be slipstreamed using nLite software to make a Windows Install CD
Home of nuhi - nLite homepage
nLite for slipstreaming Service packs, Hotfixes, Drivers, Tweaks and Uninstalled Installs for Windows 2000, XP and Server Operating Systems.
This is a great tool for making bootable Windows Installation CD's and goes with the RyanVM's Update Packs.
This is a great tool for making bootable Windows Installation CD's and goes with the RyanVM's Update Packs.
Windows 2003 Std Server w/PDC and WSS
Install 2003 with default options except for Networking settings.
Select Custom Settings, set a static IP for the ethernet.
After installation make sure that you set the primary DNS suffix
Go to Start -> My Computer -> Properties -> Computer Name -> Change -> More and type in the primary DNS suffix Ex. "techvim.com" Click OK 4 times and restart the PC
Install all the available updates to Windows 2003 Server
Select Custom Settings, set a static IP for the ethernet.
After installation make sure that you set the primary DNS suffix
Go to Start -> My Computer -> Properties -> Computer Name -> Change -> More and type in the primary DNS suffix Ex. "techvim.com" Click OK 4 times and restart the PC
Install all the available updates to Windows 2003 Server
Installing a DNS Server
- In Manage Your Server Console, Click Add or Remove a role
- Select DNS Server
- Make sure that youve set a Static IP for the machine, have the primary DNS suffix set to the domain name and DNS server pointing to the local machine
Configure a DNS Server Wizard will start
- Select Create forward and reverse lookup zones
- Select Yes, create a forward lookup zone now
- Select Primary zone
- Type in your domain name Ex. "techvim.com" in the Zone name
- accept the default for the Zone File
- Select allow both nonsecure and secure dynamic updates (for AD to register itself)
- Select Yes, create a reverse lookup zone now
- Select Primary zone
- Type in Network ID Ex. "192.168.0"
- accept the default for the Zone File
- Select allow both nonsecure and secure dynamic updates (for AD to register itself)
- Select No, it should not forward queries
Promoting the server to a Domain Controller
- In Manage Your Server Console, Click Add or Remove a role
- Select Domain controller (Active Directory)
The Active Directory Installation Wizard will start
- Select Domain controller for a new domain
- Select Domain in a new forest
- Type in the Full DNS name for new domain Ex. "techvim.com"
- Type in the NetBIOS name Ex. "TECHVIM"
- Leave defaults for the Database and Log folders
- Leave defaults for the Shared System Volume
- Select Permissions compatible only with Windows 2000 or Windows 2003 Server operating systems
- Enter a restore mode password
- It will take a while to populate the AD
Installing Application Server for WSS
- In Manage Your Server Console, click Add or Remove a role
- Select Application Server
- Select Enable ASP.NET
Install Windows SharePoint Services
- Select Typical Installation
Sunday, March 20, 2005
Highpoint 1640 v2.12 on Linux 2.6 kernel with RAID5 array
From now on I am planning to put up my experiences with installation and configuration of devices/software under linux
I will describe the procedure to set up the Highpoint 1640 RAID card under Fedora Core3 running 2.6.10 series kernel
Download driver source here. Extract it to a directory named "hpt374" with the commands
From the directory (usually home dir) type the following
I will describe the procedure to set up the Highpoint 1640 RAID card under Fedora Core3 running 2.6.10 series kernel
Download driver source here. Extract it to a directory named "hpt374" with the commands
From the directory (usually home dir) type the following
mkdir hpt374
cd hpt374
tar xzf ../hpt374-opensource-v2.12.tgz
Download kernel source here.
untar it to /usr/src/linux-2.6.10 using
tar xjf linux-2.6.10.tar.bz2 /usr/src
Before starting to compile, copy scsi.h, scsi_obsolete.h, scsi_module.c, scsi_typedefs.h from /usr/src/linux-2.6.10/drivers/scsi/ and scsi_host.h from /usr/src/linux-2.6.10/include/scsi/
Also make sure to remove the lines 23 and 24 from hpttempl.h in hpt374 source.
Change the include file hosts.h to scsi_host.h on line 49 of hpt.c
Run
make KERNELDIR=/lib/modules/($KERNELVER)/build
You can safely ignore the warning "could not find .raid.obj.cmd"
Now copy the module hpt374.ko to /lib/modules/($KERNELVER)/kernel/drivers/scsi
Add the following line /lib/modules/($KERNELVER)/modules.dep to load up the module at boot time.
/lib/modules/($KERNELVER)/kernel/drivers/scsi/hpt374.ko: /lib/modules/($KERNELVER)/kernel/drivers/scsi/scsi_mod.ko
cd hpt374
tar xzf ../hpt374-opensource-v2.12.tgz
Download kernel source here.
untar it to /usr/src/linux-2.6.10 using
tar xjf linux-2.6.10.tar.bz2 /usr/src
Before starting to compile, copy scsi.h, scsi_obsolete.h, scsi_module.c, scsi_typedefs.h from /usr/src/linux-2.6.10/drivers/scsi/ and scsi_host.h from /usr/src/linux-2.6.10/include/scsi/
Also make sure to remove the lines 23 and 24 from hpttempl.h in hpt374 source.
Change the include file hosts.h to scsi_host.h on line 49 of hpt.c
Run
make KERNELDIR=/lib/modules/($KERNELVER)/build
You can safely ignore the warning "could not find .raid.obj.cmd"
Now copy the module hpt374.ko to /lib/modules/($KERNELVER)/kernel/drivers/scsi
Add the following line /lib/modules/($KERNELVER)/modules.dep to load up the module at boot time.
/lib/modules/($KERNELVER)/kernel/drivers/scsi/hpt374.ko: /lib/modules/($KERNELVER)/kernel/drivers/scsi/scsi_mod.ko
Reboot and Enjoy!!!
Note: You may need to re-compile the module when a new kernel is installed.
Thursday, January 27, 2005
Been a long time since the first
Just two days seems to be so long that I haven't written down something.
Nothing seems to go further on Netegrity, a Linux machine to work on LDAP, Java is sleeping since a week.
Willt ry to add more later....
Nothing seems to go further on Netegrity, a Linux machine to work on LDAP, Java is sleeping since a week.
Willt ry to add more later....
Monday, January 24, 2005
What is it anyway?
Browsing through the web about blogs led me to some interesting links. After going thru some of those, wanted to try out posting. Let me see how far it goes.
Subscribe to:
Posts (Atom)
