jamesbondi
(usa Outra)
Enviado em 24/04/2012 - 08:40h
meu smb.conf esta assim:
#======================= Global Settings =======================
[global]
comment = Dominio Empresa(SAMBA Server)
workgroup = empresa
logon script = LOGON.BAT
security = user
server string = empresa<SAMBA Server - Dominio>
announce as = NT Server
netbios name = servidor
admin users =jamesbondi
wins support = yes
smb ports = 139
wins proxy = yes
dns proxy = no
name resolve order = host wins bcast
log file = /var/log/samba/log.%m
max log size = 1000
syslog only = no
syslog = 0
panic action = /usr/share/samba/panic-action %d
nt acl support = yes
map acl inherit = Yes
browse list = yes
lanman auth = yes
####### Authentication #######
security = user
encrypt passwords = yes
smb passwd file = /etc/samba/smbpasswd
passdb backend = tdbsam
# obey pam restrictions = yes
utmp = yes
guest account = nobody
unix password sync = yes
passwd program = /usr/bin/smbpasswd %u
password level = 0
os level = 255
passwd chat = *Enter\snew\sUNIX\spassword:* %n\n *Retype\snew\sUNIX\spassword:* %n\n .
pam password change = no
########## Printing ##########
load printers = no
# printing = bsd
# printcap name = /etc/printcap.cups
# printing = cups
# printcap name = cups
# printer admin = @ntadmin
######## File sharing ########
preserve case = yes
short preserve case = yes
############ Misc ############
socket options = TCP_NODELAY SO_SNDBUF=8192 SO_RCVBUF=8192
message command = /bin/sh -c '/usr/bin/linpopup "%f" "%m" %s; rm %s' &
domain master = yes
domain logons = yes
local master = yes
os level = 255
prefered master = yes
# logon path = \\%L\profiles\%U
logon home = \\%L\%U
logon drive = H:
template shell = /bin/bash
# security mask = 0770
# force security mode = 0
# directory security mask = 2770
# force directory security mode = 0
## LIXEIRA DO SAMBA
recycle:exclude = *.tmp *.temp *.o *.obj ~$*
recycle:keeptree = True
recycle:touch = True
recycle:versions = True
recycle:noversions = .doc|.xls|.ppt
recycle:repository = .recycle
recycle:maxsize = 10000000
vfs objects = recycle
add machine script = /usr/sbin/adduser -n -r -g estacoes -c "servidor" -d /dev/null -s /bin/false %u
#======================= Share Definitions =======================
[homes]
comment = Home Directories
veto files = /*.cda/*.mp3/*.bat/*.wma/
browseable = no
writable = yes
create mask = 0600
directory mask = 0700
hide unreadable = no
#[netlogon]
# comment = NETLOGON
# writable = yes
# browseable = no
# public = no
# path = /home/samba/netlogon
[netlogon]
comment = Network Logon Service
path = /home/samba/netlogon
guest ok = yes
browseable = no
share modes = no
read only = yes
[profiles]
comment = %U
veto files = /*.cda/*.mp3/*.bat/*.wma/
path =/home/profiles
public = no
writable = yes
browseable = no
printable = no
create mask = 0600
directory mask = 0700
#[printers]
# comment = All Printers
# browseable = no
# path = /tmp
# printable = yes
# public = no
# writable = no
# create mode = 0700
#[Mdoc-Jamir]
# comment = Jamir
# writable = yes
# browseable = yes
# public = no
# path = /home/compartilhamentos/pcp/mdocjamir
# valid users = root jamir jamess patricia marcelol
# create mask = 0777
# directory mask = 0777
#[pcp-jamess]
# comment = jamess
# writable = yes
# browseable = yes
# public = no
# path = /home/pcp-jamess
# valid users = jamir jamess patricia
[Home]
comment = Para Backup
writable = no
browseable = yes
public = no
path = /home
valid users = jamesbondi
#[Backup]
comment = Pasta Backup
writable = no
browseable = no
public = no
path = /backup
[Diretorios]
comment = Active Directory
veto files = /*.cda/*.mp3/*.pif/*.bat/*.{*}/
path = /home/activedirectory/diretory/
# hide unreadable = yes
browseable = yes
writable = yes
create mask = 660
directory mask = 3770
unix charset = iso8859-1
vfs object = extd_audit
## LIXEIRA DO COMPARTILHAMENTO
recycle:exclude = *.mp3 *.cda *.wma *.pif *.bat *.tmp *.temp *.o *.obj ~$*
recycle:keeptree = True
recycle:touch = True
recycle:versions = True
recycle:noversions = .doc|.xls|.ppt
recycle:repository = .recycle
recycle:maxsize = 10000000
vfs objects = recycle
#======================= DICIONARIO - TI =======================
# DICIONARIO - TI EMPRESA#
# utmp = yes
# Isso permitirá que visualizemos os dados inseridos no arquivo utmp(login/logout de usuários, com programas como o who)
#
# obey pam restrictions = yes
# Isso fará com que o Samba passe a seguir as restrições aplicadas pelo PAM.
# No diretório /etc/pam.d, arquivo samba deve conter a seguinte linha:
# session required /lib/security/pam_limits.so
# Configuracao das limitacoes em /etc/security/limits.conf
# Limitar numero de logins para todos os usuarios:
# * hard maxlogins 1
# Para um grupo expecifico:
# @usuarios hard maxlogins 1