[root@f32 ~]# ip a 1: lo: mtu 65536 qdisc noqueue state UNKNOWN group default qlen 1000 link/loopback 00:00:00:00:00:00 brd 00:00:00:00:00:00 inet 127.0.0.1/8 scope host lo valid_lft forever preferred_lft forever inet6 ::1/128 scope host valid_lft forever preferred_lft forever 2: eth0: mtu 1500 qdisc fq_codel state UP group default qlen 1000 link/ether 00:0c:29:00:5e:3b brd ff:ff:ff:ff:ff:ff altname enp2s1 altname ens33 inet 192.168.1.2/24 brd 192.168.1.255 scope global noprefixroute eth0 valid_lft forever preferred_lft forever inet6 fe80::132e:32e8:4fa3:d222/64 scope link noprefixroute valid_lft forever preferred_lft forever [root@f32 ~]# kinit administrator Password for administrator@TEST.JP: [root@f32 ~]# net ads info LDAP server: 192.168.1.2 LDAP server name: f32.test.jp Realm: TEST.JP Bind Path: dc=TEST,dc=JP LDAP port: 389 Server time: 金, 21 2月 2020 14:01:41 EST KDC server: 192.168.1.2 Server time offset: 0 Last machine account password change: 金, 21 2月 2020 13:58:06 EST [root@f32 ~]# wbinfo -u TEST\administrator TEST\guest TEST\krbtgt [root@f32 ~]# samba-tool user add chibi Note: samba-tool user add is deprecated. Please use samba-tool user create for the same function. New Password: Retype Password: User 'chibi' created successfully [root@f32 ~]# host -4 f32 f32.test.jp has address 192.168.1.2 [root@f32 ~]# host -t SRV _ldap._tcp.test.jp _ldap._tcp.test.jp has SRV record 0 100 389 f32.test.jp. [root@f32 ~]# host -t SRV _kerberos._udp.test.jp _kerberos._udp.test.jp has SRV record 0 100 88 f32.test.jp. [root@f32 ~]# host -t A f32.test.jp. f32.test.jp has address 192.168.1.2 [root@f32 ~]# smbclient -L localhost -U% Sharename Type Comment --------- ---- ------- sysvol Disk netlogon Disk IPC$ IPC IPC Service (Samba 4.12.0rc3) SMB1 disabled -- no workgroup available [root@f32 ~]# smbclient //localhost/netlogon -Uadministrator Enter TEST\administrator's password: Try "help" to get a list of possible commands. smb: \> ls . D 0 Fri Feb 21 13:58:03 2020 .. D 0 Fri Feb 21 13:58:05 2020 41921540 blocks of size 1024. 38895508 blocks available smb: \> exit [root@f32 ~]# smbclient //localhost/sysvol -Uadministrator Enter TEST\administrator's password: Try "help" to get a list of possible commands. smb: \> ls . D 0 Fri Feb 21 13:58:06 2020 .. D 0 Fri Feb 21 14:01:09 2020 test.jp D 0 Fri Feb 21 13:58:05 2020 41921540 blocks of size 1024. 38895488 blocks available smb: \> exit [root@f32 ~]# klist Ticket cache: FILE:/tmp/krb5cc_0 Default principal: administrator@TEST.JP Valid starting Expires Service principal 2020-02-21T14:01:32 2020-02-22T00:01:32 krbtgt/TEST.JP@TEST.JP renew until 2020-02-22T14:01:27 [root@f32 ~]# net ads lookup Information for Domain Controller: 192.168.1.2 Response Type: LOGON_SAM_LOGON_RESPONSE_EX GUID: 4c716a33-eb4b-40be-9d8b-5b34e2c63e67 Flags: Is a PDC: yes Is a GC of the forest: yes Is an LDAP server: yes Supports DS: yes Is running a KDC: yes Is running time services: yes Is the closest DC: yes Is writable: yes Has a hardware clock: yes Is a non-domain NC serviced by LDAP server: no Is NT6 DC that has some secrets: no Is NT6 DC that has all secrets: yes Runs Active Directory Web Services: no Runs on Windows 2012 or later: no Forest: test.jp Domain: test.jp Domain Controller: f32.test.jp Pre-Win2k Domain: TEST Pre-Win2k Hostname: F32 Server Site Name: Default-First-Site-Name Client Site Name: Default-First-Site-Name NT Version: 5 LMNT Token: ffff LM20 Token: ffff [root@f32 ~]# dig test.jp ; <<>> DiG 9.11.14-RedHat-9.11.14-5.fc32 <<>> test.jp ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 5200 ;; flags: qr aa rd ra ad; QUERY: 1, ANSWER: 1, AUTHORITY: 1, ADDITIONAL: 0 ;; QUESTION SECTION: ;test.jp. IN A ;; ANSWER SECTION: test.jp. 900 IN A 192.168.1.2 ;; AUTHORITY SECTION: test.jp. 3600 IN SOA f32.test.jp. hostmaster.test.jp. 1 900 600 86400 3600 ;; Query time: 0 msec ;; SERVER: 192.168.1.2#53(192.168.1.2) ;; WHEN: 金 2月 21 14:05:36 EST 2020 ;; MSG SIZE rcvd: 92 [root@f32 ~]# wbinfo -t checking the trust secret for domain TEST via RPC calls succeeded [root@f32 ~]# wbinfo -g TEST\cert publishers TEST\ras and ias servers TEST\allowed rodc password replication group TEST\denied rodc password replication group TEST\dnsadmins TEST\enterprise read-only domain controllers TEST\domain admins TEST\domain users TEST\domain guests TEST\domain computers TEST\domain controllers TEST\schema admins TEST\enterprise admins TEST\group policy creator owners TEST\read-only domain controllers TEST\dnsupdateproxy [root@f32 ~]# smbclient -L localhost -U% Sharename Type Comment --------- ---- ------- sysvol Disk netlogon Disk IPC$ IPC IPC Service (Samba 4.12.0rc3) SMB1 disabled -- no workgroup available [root@f32 ~]# cat /etc/redhat-release Fedora release 32 (Thirty Two) [root@f32 ~]# samba -V Version 4.12.0rc3 [root@f32 ~]#