Installing Samba Vicki Insixiengmay Jonathan Krieger.

Slides:



Advertisements
Similar presentations
1 Objectives Configure Network Access Services in Windows Server 2008 RADIUS 1.
Advertisements

Homework 5b: Samba. Computer Center, CS, NCTU 2 Network-based File Sharing (1)  NFS (UNIX-based) mountd is responsible for mount request nfsd and nfsiod.
Linux+ Guide to Linux Certification, Second Edition Chapter 14 Network Configuration.
Hands-On Microsoft Windows Server 2003 Administration Chapter 11 Administering Remote Access Services.
This work is supported by the National Science Foundation under Grant Number DUE Any opinions, findings and conclusions or recommendations expressed.
Samba Integrating SMB file systems with UNIX. Samba Provides a file server compatible with Windows 9x and NT.. SMB Can function in NETBIOS name browsing.
How Clients and Servers Work Together. Objectives Learn about the interaction of clients and servers Explore the features and functions of Web servers.
Lesson 19: Configuring Windows Firewall
Hussain Ali Department of Computer Engineering KFUPM, Dhahran, Saudi Arabia Microsoft Networking.
IIS and PWS. What is IIS and PWS? Microsoft Internet Information Server (IIS) and Peer Web Services (PWS) enable Windows NT servers with the ability to.
Linux Networking CIS Why Linux/Unix? Configurability ▫Customizable System to satisfy unique needs. Scalability ▫Able to serve an increasing number.
1 Chapter Overview Introduction to Windows XP Professional Printing Setting Up Network Printers Connecting to Network Printers Configuring Network Printers.
CMSC 691X – Summer 2002 Project By Pravin D’Souza.
1 COP 4343 Unix System Administration Unit 16: file server – samba.
UNIT - III. Installing Samba Windows uses Sever Message Block(SMB) to communicate with each other using sharing services like file and printer. Samba.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 10: Remote Access.
Network Services Lesson 6. Objectives Skills/ConceptsObjective Domain Description Objective Domain Number Setting up common networking services Understanding.
VPN Plus Samba Making My Home Computing Environment Identical to My Work Computing Environment.
Course 201 – Administration, Content Inspection and SSL VPN
NAT, Samba. Network Address Translation (NAT) Enables reuse of IP addresses, gets around IP’s limited 32-bit address space TCP-level semantic knowledge.
1 SAMBA. 2 Module - SAMBA ♦ Overview The presence of diverse machines in the network environment is natural. So their interoperability is critical. This.
Microsoft Windows 2003 Server. Client/Server Environment Many client computers connect to a server.
© 2007 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.1 ISP Responsibility Working at a Small-to-Medium Business or ISP – Chapter 8.
Guide to Operating System Security Chapter 9 Web, Remote Access, and VPN Security.
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
Module 7: Configuring TCP/IP Addressing and Name Resolution.
Hands-On Microsoft Windows Server 2008
Chapter 7: Using Windows Servers to Share Information.
Hands-On Microsoft Windows Server Security Enhancements in Windows Server 2008 Windows Server 2008 was created to emphasize security –Reduced attack.
VsFTP in Linux. Introduction to FTP The File Transfer Protocol (FTP) is used as one of the most common means of copying files between servers over the.
Ferry Astika Saputra Workshop Administrasi Jaringan SAMBA PROTOCOL.
SAMBA Integrating Linux and Window. What is Samba? Free suite of programs that enables flavors of UNIX to work with other operating systems such as OS/2.
Network Operating Systems versus Operating Systems Computer Networks.
Windows Interoperability. What can Samba do? Allow for peaceful coexistence between Windows and Linux/UNIX systems regarding: File sharing Printer sharing.
1 Understanding the TCP/IP Protocol Suite Industry standard Enables enterprise networking and connectivity.
Objectives Configure routing in Windows Server 2008 Configure Routing and Remote Access Services in Windows Server 2008 Network Address Translation 1.
OV Copyright © 2013 Logical Operations, Inc. All rights reserved. Network Security  Network Perimeter Security  Intrusion Detection and Prevention.
Samba Advanced System Administration Course James Lwali University computing Centre Ltd, University of Dar es salaam,
Samba version What is the Samba? Samba is a suite of programs which work together to allow clients to access to a server's filespace and printers.
OV Copyright © 2011 Element K Content LLC. All rights reserved. Network Security  Network Perimeter Security  Intrusion Detection and Prevention.
Linux+ Guide to Linux Certification, Second Edition Chapter 14 Network Configuration.
MCTS Guide to Microsoft Windows Server 2008 Applications Infrastructure Configuration (Exam # ) Chapter Four Windows Server 2008 Remote Desktop Services,
1 Objectives Windows Firewalls with Advanced Security Bit-Lock Update and maintain your clients using Windows Server Update Service Microsoft Baseline.
1 Linux Networking and Security Chapter 5. 2 Configuring File Sharing Services Configure an FTP server for anonymous or regular users Set up NFS file.
Windows-Linux Interconnection Campus-Booster ID : **XXXXX Copyright © SUPINFO. All rights reserved Samba.
Network Infrastructure Microsoft Windows 2003 Network Infrastructure MCSE Study Guide for Exam
ITGS Network Architecture. ITGS Network architecture –The way computers are logically organized on a network, and the role each takes. Client/server network.
WebCCTV 1 Contents Introduction Getting Started Connecting the WebCCTV NVR to a local network Connecting the WebCCTV NVR to the Internet Restoring the.
Linux Operations and Administration
SAMBA (ORIGINAL SLIDES BY DR. JAMES WALDEN, NKU) CT320: Advanced Network and System Administration Slide #1 CT320 : Advanced Network and System Administration.
Active Directory. Computers in organizations Computers are linked together for communication and sharing of resources There is always a need to administer.
(ITI310) By Eng. BASSEM ALSAID SESSIONS 9: Dynamic Host Configuration Protocol (DHCP)
Unit 2 Personal Cyber Security and Social Engineering Part 2.
MCSA Windows Server 2012 Pass Upgrading Your Skills to MCSA Windows Server 2012 Exam By The Help Of Exams4Sure Get Complete File From
Samba Server Samba is used for *share a linux FS with windows-95,98 &NT. *Share printers connected to either linux or Windows systems. *Samba is based.
Unit –III CHAP-I 1 Created By Asst. Prof. Ashish Shah, J.M.Patel College of Commerce.
LINUX - SAMBA
Microsoft OS Vulnerabilities April 1, 2010 MIS 4600 – MBA © Abdou Illia.
Working at a Small-to-Medium Business or ISP – Chapter 8
Module 8: Networking Services
Network Administration Module 09
Exercise 7 Samba.
LINUX ADMINISTRATION 1
Workshop Administrasi Jaringan
Chapter 3: Windows7 Part 4.
Network Services.
Lesson 16-Windows NT Security Issues
Samba.
Cooperating with Windows
Presentation transcript:

Installing Samba Vicki Insixiengmay Jonathan Krieger

Samba  "Samba is an Open Source/Free Software suite that provides seamless file and print services to SMB/CIFS clients." Source:  Installed on any other platform than Microsoft Windows  Make use of TCP/IP protocol installed on Host server  Allows Host to interact with Windows Client/Server

Four Samba Elements  File and Print Services  Authentication and Authorization  Name Resolution  Service Announcement (Browsing)

Model Samba Network Source: “Using Samba” by Robert Eckstein, David Collier-Brown, Peter Kelly

What Samba Does  Samba runs on Unix platforms. It speaks to Windows clients.  It allows a Unix system to move into a Windows “Network Neighborhood”.  Windows users can access file and print services.

SMBD  File and print services are provided by smbd, the SMB Daemon.  Handles "share mode" and "user mode" authentication and authorization. You can protect shared file and print services by requiring passwords.  Each user has their own username and password and the System Administrator can grant or deny access.

NMBD  The other two CIFS (Common Internet File System) pieces, name resolution and browsing, are handled by nmbd.  These two services basically involve the management and distribution of lists of NetBIOS (Network Basic Input Output System) names. NetBIOS is software loaded into memory.  Provides an interface between programs and the network hardware.

Name Resolution  Name resolution takes two forms: broadcast and point-to-point.  Client shouts out the name of the service it is looking for and waits for the machine with that name to answer with an IP address.  It is restricted to the local LAN so it doesn't cause too much trouble.

Name Resolution  Point-to-point includes use of an NBNS (NetBIOS Name Service) server  The clients send their NetBIOS names & IP addresses to the NBNS server, which keeps the information in a database.  When a client wants to talk to another client, it sends the other client's name to the NBNS server. If the name is on the list, the NBNS hands back an IP address.

Service Announcement (Browsing)  Ability to examine the servers and shares available on the network  A browse list keeps a list of current, active servers. This is stored on one machine in a network.  A local master browser updates the information in the browse list as computers sign on and off. This can be any server on the network.

smb.conf file  [global]  [home]  [printers]  Each section describes the accessibility for users

SWAT  SWAT  Samba Web Administration Tool  Locates parameters supported by Samba  Always up to date as Samba parameters change  Provides context-sensitive help for each configuration parameter  Stores only parameters settings other than defaults  Port 901  Uses ISS RealSecure

Installing Samba  Downloaded latest version from samba.org  Configured /etc/xinted.conf Enable SWAT service SWAT   Configured smb.conf Add IP addresses of Windows machines Password server – lab2.research.cs.uofs.edu

Problems  Windows machine recognizes Samba server, but does not allow access.  Solution: Different encryption/decryption systems for Windows and Unix. Find enableplaintextpassword and disenable Windows encryption.

Adding Samba Users  Each user must be added adduser –g 100 plishka  Create passwords for user passwd plishka  Create Samba domain login passwords In /usr/bin smbpasswd –a plishka

References   les/Samba.html les/Samba.html  hn/samba.htm#_Toc hn/samba.htm#_Toc  r/book/

Browsing Elections  A computer becomes a local master browser by holding a browsing election.  Samba can rig a browsing election for a variety of outcomes,including always becoming the local master browser of the subnet or never becoming it.  In smb.conf, [global] #Browsing election options os level = 34 local master = yes

Browsing Elections  Each machine in the election broadcasts information. Version of election protocol Operating system Amount of time client has been signed on Host name of client

Browsing Elections  How elections are decided Operating system is assigned a binary value according to version Each computer is assigned a value according to its role The machine with the highest election protocol version wins OR The machine with the highest operating system values In case of tie, machine with setting of preferred master browser wins OR client signed on the longest wins OR client name that comes first alphabetically wins

ISS RealSecure  RealSecure provides an intrusion detection system that monitors suspicious behavior, making changes to the system in real time, such as terminating sessions or changing the firewall  The current versions of RealSecure Network Sensor include the ability to decode SAMBA/CIFS protocols for Windows networking.  Comprised of Network Sensor, OS Sensor, and Console

ISS RealSecure  Network Sensors work by comparing the traffic on the network against a set of rules defined in a number of policies.  OS Sensors runs as a process on the server that is being monitored. Every time a new log-file entry is generated by the operating system, OS Sensor reads it, and compares it against the signatures currently in force. If a match is found, it initiates the appropriate response. OS Sensor is able to detect local attacks and abuses that would normally be missed by the Network Sensor.  Console and the Sensors communicate with each other. The console defines the policy for each sensor. Includes: Network Sensor security events connection events, OS Sensor security events

Synchronization of Usernames and Passwords  The Unix password sync global option allows Samba to update Unix password file when user changes his/her password. The password is stored on a Samba server in the smbpasswd file, located in / usr/local/samba/private by default.  [global] unix password sync = yes  Samba changes the encrypted password and attempts to change the standard Unix password by passing the username and new password to the program specified by the passwd program option.

Synchronization of Usernames and Passwords  Samba does not necessarily have access to the plaintext password for the user, so the password changing program must be invoked as root.