AD Integration On RHEL 7/CentOS 7
- If YUM is configured, add the repository details, Otherwise subscribe RHEL 7 to the REDHAT.
- # yum install sssd realmd oddjob oddjob-mkhomedir adcli samba-common samba-common-tools krb5-workstation openldap-clients policycoreutils-python -y
- # yum install samba* -y
- # setup
- Select Authentication Configuration
- Select Only Kerberos (no need to enable to Winbind and Use Winbind Authentication)
- Add the Domain Name – <Domain_Name> and Enable Use DNS to resolve Hosts and KDCs
- Finish
- Add the resolv.conf details of nameserver and search domain
data:image/s3,"s3://crabby-images/0c928/0c928f2c874e40b4886e53ff7fc07aeed7c5bad5" alt=""
- # realm join -v -U <Username> –computer-name=<Computername> <Domain_Name>
- After joining a new file sssd.conf gets created automatically in /etc/sssd/sssd.conf
- Edit the File and do the following change
- Change the use_fully_qualified_names from True to False
- Save and exit
data:image/s3,"s3://crabby-images/e059c/e059c63f252ab40b1143395c673c03ef8dc52a0a" alt=""
# systemctl daemon-reload
# systemctl restart sssd
Make sure the services start without any errors – systemctl status sssd
Also, check the /etc/nsswitch.conf file for sss authentication
data:image/s3,"s3://crabby-images/09575/095751cc3f9141c799de22223f37a91a58562521" alt=""
data:image/s3,"s3://crabby-images/6e297/6e2971ffd7437671d474f4d700d6ac1352b2edf2" alt=""