Board logo

标题: CentOS8_Samba用户验证 [打印本页]

作者: admin    时间: 2020-5-30 14:46     标题: CentOS8_Samba用户验证

安装相关软件: yum -y install samba samba-client 查看Samba的版本信息: rpm -qi samba 图片1.png 启动Samba: systemctl start smb systemctl enable smb 防火墙配置:(TCP端口:139,445 UDP端口:137,138) [root@centos8 ~]# firewall-cmd --zone=public --add-port={139/tcp,445/tcp} --permanent success [root@centos8 ~]# firewall-cmd --zone=public --add-port={137/udp,138/udp} --permanent success [root@centos8 ~]# firewall-cmd --reload success 查看所有打开的防火墙端口:(虽然看不见TCP 22端口,但默认是可以访问的) [root@centos8 ~]# firewall-cmd --zone=public --list-ports 80/tcp 139/tcp 445/tcp 137/udp 138/udp 必须要关闭SELinux:(否则客户端将无法访问共享文件夹的) setenforce 0 sed -i 's/SELINUX=enforcing/SELINUX=disabled/g' /etc/selinux/config 查看配置文件: [root@centos8 ~]# cat /etc/samba/smb.conf |grep -v "^#"|grep -v ^"$" [global] workgroup = SAMBA security = user passdb backend = tdbsam printing = cups printcap name = cups load printers = yes cups options = raw [homes] comment = Home Directories valid users = %S, %D%w%S browseable = No read only = No inherit acls = Yes [printers] comment = All Printers path = /var/tmp printable = Yes create mask = 0600 browseable = No [print$] comment = Printer Drivers path = /var/lib/samba/drivers write list = @printadmin root force group = @printadmin create mask = 0664 directory mask = 0775 ###### 用户验证共享: 修改samba的配置文件: [root@centos8 ~]# vi /etc/samba/smb.conf workgroup = SAMBA 修改为:(WORKGROUP是Windows默认的工作组名字) workgroup = WORKGROUP “security”指定samba的安全等级。用户验证默认就是user了 security = user [global]下面加上 (不加的话,XP客户端可能会连接不上) ntlm auth = yes ### 不加载打印机: sed -i 's/load printers = yes/load printers = no/g' /etc/samba/smb.conf 人员: 财务部:c1(组长),c2(组员) 市场部:s1(组长),s2(组员) 主管:zhuohua 共享文件夹: 财务部,市场部,public 要求: 组员对自己部门的共享文件夹只有读取权限,对public文件夹只有读取权限 组长对自己部门的共享文件夹有完全权限,对public文件夹只有读取权限 所以人员都有自己的家目录,并且对家目录有完全权限 主管对所有共享文件夹都具有完全权限(但看不到其他人员的家目录的) Samba用户必须先是系统用户,还必须有Samba密码(与系统用户的密码无关的) 管理Samba用户的两个命令: smbpasswd --help pdbedit --help 创建Samba用户: useradd -s /sbin/nologin zhuohua smbpasswd -a zhuohua 图片2.png groupadd caiwu useradd -g caiwu -s /sbin/nologin c1 useradd -g caiwu -s /sbin/nologin c2 smbpasswd -a c1 smbpasswd -a c2 图片3.png groupadd shichang adduser -g shichang -s /sbin/nologin s1 adduser -g shichang -s /sbin/nologin s2 smbpasswd -a s1 smbpasswd -a s2 图片4.png 查询所有的Samba用户: pdbedit -L 图片5.png 新建共享文件夹 mkdir -p /share/shichang mkdir -p /share/caiwu mkdir -p /share/public 权限必须为 777 chmod -R 777 /share/shichang/ chmod -R 777 /share/caiwu/ chmod -R 777 /share/public/ 在配置文件中创建共享: cat >>/etc/samba/smb.conf<< EOF [财务部] comment = caiwu path = /share/caiwu public = no writeable = yes valid users = @caiwu,zhuohua read list = @caiwu write list = c1,zhuohua EOF cat >>/etc/samba/smb.conf<< EOF [市场部] comment = shichang path = /share/shichang public = no writeable = yes valid users = @shichang,zhuohua read list = @shichang write list = s1,zhuohua EOF cat >>/etc/samba/smb.conf<< EOF [public] comment = public path = /share/public public = no writeable = yes valid users = @shichang,@caiwu,zhuohua read list = @shichang,@caiwu write list = zhuohua EOF 测试配置的smb.conf是否正确,用下面的命令: [root@centos8 ~]# testparm 图片6.png 修改了配置文件后,记得重新启动Samba服务: [root@centos8 ~]# systemctl restart smb 加上任务计划: [root@centos8 ~]# crontab -e 追加: */1 * * * * chmod -R 777 /share/ 客户端测试: 图片7.png 图片8.png 备注:实验达到要求 ^_^ ^_^ 笺注: 要是不想显示用户的宿主目录,可以修改配置文件(/etc/samba/smb.conf),把下面6行代码删除,再重启Samba服务即可 [homes] comment = Home Directories valid users = %S, %D%w%S browseable = No read only = No inherit acls = Yes ######### 修改Samba用户的密码: 图片9.png 锁定Samba用户:(用户无法访问共享) 图片10.png 解锁Samba用户: 图片11.png 删除Samba用户: 图片12.png 相关文章: CentOS8_Samba匿名共享 CentOS6_Samba用户验证(一)

图片附件: 图片1.png (2020-5-30 14:40, 67.22 KB) / 下载次数 164
http://blog.zhuohua.store/attachment.php?aid=7806&k=57d5f631a4d28b14444c2aa99371541a&t=1714352342&sid=BP990B



图片附件: 图片2.png (2020-5-30 14:42, 8.06 KB) / 下载次数 132
http://blog.zhuohua.store/attachment.php?aid=7807&k=78c84a93574d5f090397dea0324db14a&t=1714352342&sid=BP990B



图片附件: 图片3.png (2020-5-30 14:42, 62.51 KB) / 下载次数 145
http://blog.zhuohua.store/attachment.php?aid=7808&k=9322da5c24e1be10837a7d7d3a57e6e6&t=1714352342&sid=BP990B



图片附件: 图片4.png (2020-5-30 14:42, 64.34 KB) / 下载次数 145
http://blog.zhuohua.store/attachment.php?aid=7809&k=dea94803ea76e8065647a6233706e046&t=1714352342&sid=BP990B



图片附件: 图片5.png (2020-5-30 14:43, 3.68 KB) / 下载次数 156
http://blog.zhuohua.store/attachment.php?aid=7810&k=1c9a7e730e60420e862c0d1761cc576f&t=1714352342&sid=BP990B



图片附件: 图片6.png (2020-5-30 14:43, 51.46 KB) / 下载次数 144
http://blog.zhuohua.store/attachment.php?aid=7811&k=efaf3357533d12f29bf035cedc9ab0b5&t=1714352342&sid=BP990B



图片附件: 图片7.png (2020-5-30 14:44, 22.04 KB) / 下载次数 141
http://blog.zhuohua.store/attachment.php?aid=7812&k=aca64c5039db53133ea6e4f317beb352&t=1714352342&sid=BP990B



图片附件: 图片8.png (2020-5-30 14:44, 55.98 KB) / 下载次数 145
http://blog.zhuohua.store/attachment.php?aid=7813&k=15d344c8687c1937c30a9199e3f86c6e&t=1714352342&sid=BP990B



图片附件: 图片9.png (2020-5-30 14:45, 3.82 KB) / 下载次数 146
http://blog.zhuohua.store/attachment.php?aid=7814&k=5cb4b33eec08f2b7459d3e4d11e0a465&t=1714352342&sid=BP990B



图片附件: 图片10.png (2020-5-30 14:45, 3.15 KB) / 下载次数 126
http://blog.zhuohua.store/attachment.php?aid=7815&k=1706816eaca4225f052d4519eacf11e0&t=1714352342&sid=BP990B



图片附件: 图片11.png (2020-5-30 14:45, 3.08 KB) / 下载次数 156
http://blog.zhuohua.store/attachment.php?aid=7816&k=9af392ad68335376db9f7606f9aeed5b&t=1714352342&sid=BP990B



图片附件: 图片12.png (2020-5-30 14:45, 3.07 KB) / 下载次数 141
http://blog.zhuohua.store/attachment.php?aid=7817&k=055842f994283f94aa213bbc4b861b8e&t=1714352342&sid=BP990B






欢迎光临 blog.zhuohua.store (http://blog.zhuohua.store/) Powered by Discuz! 7.2