[root@f29 ~]# kinit administrator Password for administrator@TEST.JP: [root@f29 ~]# samba-tool user add chibi Note: samba-tool user add is deprecated. Please use samba-tool user create for the same function. New Password: Retype Password: User 'chibi' created successfully [root@f29 ~]# wbinfo -u TEST\administrator TEST\guest TEST\krbtgt TEST\chibi [root@f29 ~]# wbinfo -n chibi S-1-5-21-1241336019-1914047146-3476861537-1103 SID_USER (1) [root@f29 ~]# net ads info LDAP server: 192.168.1.7 LDAP server name: f29.test.jp Realm: TEST.JP Bind Path: dc=TEST,dc=JP LDAP port: 389 Server time: 月, 03 6月 2019 17:48:20 JST KDC server: 192.168.1.7 Server time offset: 0 Last machine account password change: 月, 03 6月 2019 17:43:44 JST [root@f29 ~]# host -4 f29 f29.test.jp has address 192.168.1.7 f29.test.jp has IPv6 address 2400:4052:46e0:b700:98e0:fa65:8f0:f13 [root@f29 ~]# host -t SRV _ldap._tcp.test.jp _ldap._tcp.test.jp has SRV record 0 100 389 f29.test.jp. [root@f29 ~]# host -t SRV _kerberos._udp.test.jp _kerberos._udp.test.jp has SRV record 0 100 88 f29.test.jp. [root@f29 ~]# host -t A f29.test.jp. f29.test.jp has address 192.168.1.7 [root@f29 ~]# smbclient -L localhost -U% Sharename Type Comment --------- ---- ------- netlogon Disk sysvol Disk IPC$ IPC IPC Service (Samba 4.9.8) Reconnecting with SMB1 for workgroup listing. Server Comment --------- ------- Workgroup Master --------- ------- [root@f29 ~]# cat /etc/redhat-release Fedora release 29 (Twenty Nine) [root@f29 ~]# samba -V Version 4.9.8 [root@f29 ~]# dig test.jp ; <<>> DiG 9.11.5-P4-RedHat-9.11.5-4.P4.fc29 <<>> test.jp ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 25193 ;; flags: qr aa rd ra ad; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;test.jp. IN A ;; ANSWER SECTION: test.jp. 900 IN A 192.168.1.7 ;; AUTHORITY SECTION: test.jp. 3600 IN SOA f29.test.jp. hostmaster.test.jp. 1 900 600 86400 3600 ;; Query time: 0 msec ;; SERVER: 192.168.1.7#53(192.168.1.7) ;; WHEN: 月 6月 03 17:51:04 JST 2019 ;; MSG SIZE rcvd: 92 [root@f29 ~]# net ads lookup Information for Domain Controller: 192.168.1.7 Response Type: LOGON_SAM_LOGON_RESPONSE_EX GUID: 08e8cd04-f504-4a6d-a9b0-9e8819b68335 Flags: Is a PDC: yes Is a GC of the forest: yes Is an LDAP server: yes Supports DS: yes Is running a KDC: yes Is running time services: yes Is the closest DC: yes Is writable: yes Has a hardware clock: yes Is a non-domain NC serviced by LDAP server: no Is NT6 DC that has some secrets: no Is NT6 DC that has all secrets: yes Runs Active Directory Web Services: no Runs on Windows 2012 or later: no Forest: test.jp Domain: test.jp Domain Controller: f29.test.jp Pre-Win2k Domain: TEST Pre-Win2k Hostname: F29 Server Site Name : Default-First-Site-Name Client Site Name : Default-First-Site-Name NT Version: 5 LMNT Token: ffff LM20 Token: ffff [root@f29 ~]# wbinfo -t checking the trust secret for domain TEST via RPC calls succeeded [root@f29 ~]# wbinfo -g TEST\cert publishers TEST\ras and ias servers TEST\allowed rodc password replication group TEST\denied rodc password replication group TEST\dnsadmins TEST\enterprise read-only domain controllers TEST\domain admins TEST\domain users TEST\domain guests TEST\domain computers TEST\domain controllers TEST\schema admins TEST\enterprise admins TEST\group policy creator owners TEST\read-only domain controllers TEST\dnsupdateproxy [root@f29 ~]#