Configuring Samba 4 as Active Directory Domain Controller

Hello,

I’d like to configure Samba 4 on my Linux box to act as an AD DC for my NAS (QNAP TS-451+). So far, the NAS does not find the domain controller.

Is there a good step-by-step guide on how to setup Samba 4 as a domain controller on openSUSE? Especially, because there is no samba-tool available on openSUSE.

I am not aware of anything specifically for openSUSE but https://wiki.samba.org/index.php/Setup_a_Samba_Active_Directory_Domain_Controller gives a reasonable account.

Again, it refers to samba-tool. Where do I find this tool on openSUSE?

As it isn’t provided, my guess is that the functionality it provides is provided by YaST.

There’s a rather ancient Change Request in Bugzilla – originally posted in 2012 and reopened in 2014:
<794744 – samba4 package is missing the 'samba-tool';
It seems that the MIT Kerberos implementation needs to be patched before it makes much sense to include the Active Directory / Domain Controller administration.
[HR][/HR]Patrick, the following Ubuntu Wiki may help you:
<https://wiki.ubuntuusers.de/Howto/Samba4-Server_als_Active-Directory_Domain-Controller/&gt;
The equivalent English version is here:
<Setting up Samba as an Active Directory Domain Controller - SambaWiki;
Please note that the Ubuntu Wiki mentions that you will have to rebuild Samba yourself – take a look here for possibly unstable openSUSE Builds which may possibly contain the samba-tool:
<https://software.opensuse.org/package/samba&gt;

That issue applies only for DCs to replicate data between themselves.
Is not relevant if you are setting up a single DC.

So, the critical question seems to be whether you’re setting up this SAMBA to be added to an existing AD or whether you’re setting up new. IIRC a long time ago “samba-tools” was deprecated for unknown reasons (at least to me). You’ll find other threads in these openSUSE forums (search the Install and Application forums as well) where this is discussed, awhile back I found an alternative free tool which had fallen into neglect but might be revivable.

TSU