‰PNG  IHDRÛ¤;œˆŽIDATxÚíÜģn¤0€áŧ˙KĄ• Š)(ĻpAá‚Â… –ąĮ7†LeG{ũ§ Â§ãģĸ|ŦīذaÆ 6lذaÆ 6lذaÆ 6lomûķ$^ūyŋúŨذag“5bÆ 6lذaÆ 6lذa{‘íŧ 6lذaÆ ›`›ĩįã´}HĪFkm,›mļĐûŦĶĒņŅęôŌô!Ũ ‹xÛ|'Üĸ˟;ˇE:—Ôõ9­&áļ’ļ}Ž{žv]™n&Ņ6į íhíÕ_õ÷t¨Ú Íĩ-Ō̝šēZ;ú´Z$Û.žPÔÄøkíÅž)ē!§oĄĄˆ>}lŗeQfJÕTą—u Ņ–ĩō•›åچĒ×\âŨX=8ŨîRŲ†4`Vwōlž>ëÃ×ún•Gū^›ėižsŠĖ"msŲ$×uņŨiģˆ?wĄbs[mŠ6ŗK4áãįO†‰š.Ŗ4›Ū%ēЏ×/õĀßĪbëC%Šįt û‰MŸ×–– ú-lîG6ąmrz2–ôļs%ģ9Ā•s@˜šė-âkģ9 =ėæî)ÎŨõĖåâkģB5ÕËÂ×\Ãņš+͂įZsŲ˛ åĩōRnÚÂ~G§…ÉRϝ•CŸŠí¨É ›wIcIīén7jJ°åčhۛNCS|ėâĶj0æĒō8yŊiHKۛÖļĐkōɈ+;Sz°ļú¨áL/ĩ­FĐ*\įÆÔ”Ë#"5¯Âmë2Üī[SÅ­ĢģÍú‹Ŗ=Šg¯În‹aķP…eÚŌ“ûî‘ŦLÛ˙ lذaÆ 6lØ^kãīĖąaÆ 6lذaÆ 6lذa;˙Š ļ_ÚÎذaÆ 6lذaÆ 6lذaÆ ļá¨ëœRĸĮÆIENDŽB` Ū•(\ œĐNŅ "#(#L/p$ #Å!é( !4V[du~…Ž– ŸfŠGIX ĸ Žš É×é‘ŽŊ_Ú:(?hq…—ž´xÆ;?+{§ ŊÉßķ "*Mj …dĻ  E& @l ­ š Æ Ķ Ų %č e!t!gƒ!ë!ō! " ""1"H"M"V"h"z"" •" Ŗ"ą" Å"Ķ"!į" # ## # *# 7# D#Q#V#Y#k#n#€# ‰#“#›#ĸ#RĀ#$ $ '$5$E$hM$°ļ$g%x%€ˆ%5 &1?&0q&,ĸ&/Ī&0˙&+0'!\'-~'ÄŦ'Îq(Õ@);*"R*!u*"—*#ē*Ū* õ* ˙* ++-+?+G+\+td+ Ų+å+,6 ,W,h,[p,Ė,Ô,č,--'-'>-]f-Ä-Õ-LŲ-&...J.e.u.|.…. ĸ.­.ž. Ī.Ú.(ō.0/0L/1}/¯/ˇ/.Ī/)ū/[(0_„0+ä061G1#\1€1“1Ļ1š1Ė1á1˙152 L2m2@‚2*Ã2,î2 3+<3Th3VŊ3:41O4#46Ĩ4.Ü4. 5*:5%e5(‹5*´5Cß5'#6-K6/y6$Š6<Î65 7=A717:ą7#ė718-B87p81¨8-Ú8+9>49?s9)ŗ9+Ũ9 :*):MT:Oĸ:9ō:0,;"];5€;Xļ;-<)=<$g<'Œ<)´<BŪ<&!=,H=.u=#¤=&Č=%ī=>> T>1u>D§>;ė>(?1E?(w?; ?DÜ?3!@)U@(@6¨@2ß@6A0IA)zAX¤A(ũA*&B0QB‚B’B-˛BāBGnCļCÕCDõC4:DoDƒDĸD4ļD+ëD2E'JEČrE¨;GäGæGQėG]>H^œHcûHT_I?´IwôITlJÁJÆJĪJāJéJđJųJK K K5LĶL dMpM@…M,ÆM'ķMNM.NE|O:ÂO.ũOA,PÔnPCQ—SQëQ"R8%R^R7nR+ĻR ŌRžāSgŸT+U.3U&bU8‰U+ÂUîU?˙Ux?Vo¸V|(W[ĨW'X7)YaYÅiY‚/Z˛ZĖZæZ[! [N.[Ņ}[O\én\*X]ƒ]Tœ]Cņ]65^Dl^ą^ļ^4ŋ^!ô^_3_0O_ €_Ą_Ā_5Ū_>`S`j`‚`/†`ļ`Đ`đ` a a'$aLa<`aaˇaŅaįaZøa¯Sb/c(3cG\c&¤cËcâcĐûd.Ėf#ûf+gfKhO˛haiJdi`¯iFjIWj3Ąj^Õjø4kŖ-mEŅn˛q–Ęqarōr„rsW÷s%Ot0ut,ĻtBĶtDu+[uM‡u+ÕuJv/LwE|woÂwŦ2xJßx*yŪ=yz!$zEFz3ŒzĀz!ŪzA{ēB{ ũ{|Ķ%| ų|G}5b}+˜} Ä}Ī}@ë},~K~+k~—~\¯~Ž –›2€¤Â€&gYށlčyU‚äĪ‚į´ƒ’œ„ /…(ЅZų…/T†5„†&ē†&á†(‡P1‡4‚‡lˇ‡“$ˆ6¸ˆÂīˆ˛‰Š@Š抍j‹õŒ ČŽĀێ|œĀÍÚĢ¨‘T’ˆÖ’†_“’擞y”g8• •Ŧ1–{Ū–ŨZ—n8˜Ļ§˜N™‘Ü™dnšq͚kE›Ėą›q~œRđœOCŸ“ŋ3žŠķžĻ~Ÿ|% Ĩĸ æHĄö/ĸÅ&ŖŗėŖy ¤ŊĨØĨ¨áĻ~Ч… ¨ƒ¨ŠģŖŠd_ĒÄĒŠRĢxüĢVuŦkĖŦ–8­EĪ­ĢŽŖÁŽe¯Qķ¯zE°^°´ąœÔą‹q˛Ŗũ˛hĄŗu ´o€´uđ´Öfĩo=ļL]ˇ„ǎj/¸%š¸l`-šYŽšéčē(Ōģ;ûģļ7ŧ`îŧ.OŊK~Ŋ:ĘŊ”žešž|ŋ€}ŋ'bG8 ĮųŲ$?ZŦv /w"phãr¨ ˙Ā•ō€æ&gƒJmרˆ“q-Ä!AŌ´â} đ ;!ûŊ˜fa˛ũîÆ÷3Í#`įNĩjDŽ:ķ_œøEā @|ģĄ%ÛÜÂ*5úüĶ’ölącęĖÖ]§e\¸Y,Hī ”.(OKčëdÔ¯X ‘TF uŨĪ䖾ėÕIšôŗV~=R­ËĢPé#å6ĒßB Đõ áŒLÚÅ "xēiz…ˇŠU)'%™¤$ŋ1WSŠ„yŅļ&Ÿ2ĸ›—°‹ÁMžūĻ(79s0t>C4^íŧQ<‚k‰ÎĨŪ n†‡š[ÃŖĘÉ{Č+ņoŽ / between elements | selects | next screen*Authentication ConfigurationLocal Authentication OptionsMaximal Consecutive Character RepetitionMinimal Password RequirementsOther Authentication OptionsRequired Character ClassesSmart Card Authentication OptionsUser Account ConfigurationTip: Smart cards support logging into both local and centrally managed accounts.Tip: These checks are disabled if the value is 0.Tip: This is managed via /etc/security/access.conf.ADS Realm:Ad_min Servers:Admin Server:Advanced _OptionsAlertAll configuration files which were modified by the previous authentication configuration change will be restored from backup. Revert the changes?Allow offline _loginAut_hentication Method:AuthenticationAuthentication ConfigurationAuthentication module %s/pam_%s.so is missing. Authentication process might not work correctly.BackBad smart card removal action specified.Base DN:C_haracter Classes:Cache InformationCancelCard Re_moval Action:Certificate _URL:Click this button if you did not download a CA certificate yet or you have not set the CA certificate up by other means.Control how the system verifies users who attempt to log inCreate _home directories on the first loginDo not configure _NTPDo_n't SaveDomain Administrator:Domain Controllers:Domain _administrator:Domain:Download CA CertificateEnable _fingerprint reader supportEnable _local access controlEnable _smart card supportError downloading CA certificateFingerprint authentication allows you to log in by scanning your finger with the fingerprint reader.Fingerprint readerFreeIPAHashing or crypto algorithm used for storing passwords of local usersHostname or ldap:// or ldaps:// URI pointing to the LDAP server.IPA R_ealm:IPA _Domain:IPA _Server:IPAv2IPAv2 SettingsIPAv2 domain join was not successful.IPAv2 domain join was not successful. The ipa-client-install command failed with the following error:IPAv2 passwordIf the home directory of an user doesn't exist yet it will be created automatically on his first login.IgnoreInvalid LDAP URI.Join DomainJoin SettingsJoining IPA DomainJoining Winbind DomainKDC:KerberosKerberos SettingsKerberos passwordLDAPLDAP Search _Base DN:LDAP SettingsLDAP _Server:LDAP authenticationLDAP passwordLocal accounts onlyLocal authorization is sufficientLockLow_ercaseNISNIS SettingsNIS _Domain:NIS _Server:NIS passwordNextNoO_ther charactersOkPass_word OptionsPasswordPassword:R_ealm:Realm:Require smart car_d for loginRestore the configuration files backed up before the previous configuration changeRevertSa_me Class:Save SettingsSecurity Model:Server:Smart card authentication allows you to log in using a certificate and key associated with a smart card.Some of the configuration changes you've made should be saved to disk before continuing. If you do not save them, then your attempt to join the domain may fail. Save changes?Te_mplate Shell:Template Shell:The %s file was not found, but it is required for %s support to work properly. Install the %s package, which provides this file.The passmaxclassrepeat option value is not an integerThe passmaxclassrepeat value must not be negativeThe passmaxrepeat option value is not an integerThe passmaxrepeat value must not be negativeThe passminclass option value is not an integerThe passminclass value must not be higher than 4The passminclass value must not be negativeThe passminlen minimum value is 6The passminlen option value is not an integerTo connect to a LDAP server with TLS protocol enabled you need a CA certificate which signed your server's certificate. Copy the certificate in the PEM format to the '%s' directory. Then press OK.To verify the LDAP server with TLS protocol enabled you need a CA certificate which signed the server's certificate. Please fill in the URL where the CA certificate in the PEM format can be downloaded from.Unable to initialize graphical environment. Most likely cause of failure is that the tool was not run using a graphical environment. Please either start your graphical user interface or set your DISPLAY variable. Unknown password hashing algorithm specified, using sha256.Use DNS to _locate KDCs for realmsUse DNS to locate KDCs for realmsUse DNS to resolve hosts to realmsUse D_NS to resolve hosts to realmsUse Fingerprint readerUse IPAv2Use KerberosUse LDAPUse LDAP AuthenticationUse MD5 PasswordsUse NISUse Shadow PasswordsUse TLSUse Transport Layer Security extension for LDAP as defined by RFC-2830. It must not be ticked with ldaps server URI.Use WinbindUse Winbind AuthenticationUse _TLS to encrypt connectionsUse the "Join Domain" button to join the IPAv2 domain.User InformationWarningWhen enabled /etc/security/access.conf will be consulted for authorization of users access.WinbindWinbind ADS R_ealm:Winbind Domain Co_ntrollers:Winbind SettingsWinbind _Domain:Winbind authenticationWinbind domain join was not successful.Winbind domain join was not successful. The net join command failed with the following error:Winbind passwordYesYou must provide ldaps:// server address or use TLS for LDAP authentication._Digits_Download CA Certificate..._Identity & Authentication_Join Domain..._KDCs:_Length:_Password Hashing Algorithm:_Password:_Same Character:_Security Model:_Uppercase_User Account Database:action to be taken on smart card removalauthenticate system accounts by local files onlyauthenticate system accounts by network servicesauthorize local users also through remote servicecachingcan only be run as rootcheck access.conf during account authorizationconfigures winbind to allow offline loginconfigures winbind to assume that users with no domain in their user names are domain usersconfigures winbind to assume that users with no domain in their user names are not domain usersconfigures winbind to prevent offline logincreate home directories for users on their first logindefault LDAP base DNdefault LDAP server hostname or URIdefault NIS domaindefault NIS serverdefault hesiod LHSdefault hesiod RHSdefault kerberos KDCdefault kerberos admin serverdefault kerberos realmdefault realm for samba and winbind when security=adsdefault smart card module to usedialog was cancelleddisable IPAv2 for user information and authentication by defaultdisable LDAP for authentication by defaultdisable LDAP for user information by defaultdisable MD5 passwords by defaultdisable NIS for user information by defaultdisable SSSD for authentication by default (still used for supported configurations)disable SSSD for user information by default (still used for supported configurations)disable authentication with fingerprint readers by defaultdisable authentication with smart card by defaultdisable automatic per-user ecryptfsdisable caching of user credentials in SSSD by defaultdisable caching of user information by defaultdisable hesiod for user information by defaultdisable kerberos authentication by defaultdisable shadowed passwords by defaultdisable use of DNS to find kerberos KDCsdisable use of DNS to find kerberos realmsdisable use of RFC-2307bis schema for LDAP user information lookupsdisable use of TLS with LDAP (RFC-2830)disable winbind for authentication by defaultdisable winbind for user information by defaultdisable wins for hostname resolutiondisplay Back instead of Cancel in the main dialog of the TUIdo not check access.conf during account authorizationdo not create home directories for users on their first logindo not display the deprecated text user interfacedo not prefer dns over wins or nis for hostname resolutiondo not require digits in a passworddo not require lowercase characters in a passworddo not require other characters in a passworddo not require smart card for authentication by defaultdo not require uppercase characters in a passworddo not setup the NTP against the IPAv2 domaindo not start/stop portmap, ypbind, and nscddo not update the configuration files, only print new settingsenable IPAv2 for user information and authentication by defaultenable LDAP for authentication by defaultenable LDAP for user information by defaultenable MD5 passwords by defaultenable NIS for user information by defaultenable SSSD for authentication by default with manually managed configurationenable SSSD for user information by default with manually managed configurationenable authentication with fingerprint readers by defaultenable authentication with smart card by defaultenable automatic per-user ecryptfsenable caching of user credentials in SSSD by defaultenable caching of user information by default (automatically disabled when SSSD is used)enable hesiod for user information by defaultenable kerberos authentication by defaultenable shadowed passwords by defaultenable use of DNS to find kerberos KDCsenable use of DNS to find kerberos realmsenable use of RFC-2307bis schema for LDAP user information lookupsenable use of TLS with LDAP (RFC-2830)enable winbind for authentication by defaultenable winbind for user information by defaultenable wins for hostname resolutionhash/crypt algorithm for new passwordsjoin the IPAv2 domain as this accountjoin the winbind domain or ads realm now as this administratorload CA certificate from the URLlocal authorization is sufficient for local usersmaximum number of consecutive characters of same class in a passwordmaximum number of same consecutive characters in a passwordminimum length of a passwordminimum number of character classes in a passwordnames of servers to authenticate againstnever use SSSD implicitly even for supported configurationsopposite of --test, update configuration files with changed settingsprefer dns over wins or nis for hostname resolutionprobe network for defaults and print themrequire at least one digit in a passwordrequire at least one lowercase character in a passwordrequire at least one other character in a passwordrequire at least one uppercase character in a passwordrequire smart card for authentication by defaultrestore the backup of configuration filesrestore the backup of configuration files saved before the previous configuration changesave a backup of all configuration filessecurity mode to use for samba and winbindsetup the NTP against the IPAv2 domain (default)shadow passwordshow this help message and exitthe IPAv2 domain the system should be part ofthe character which will be used to separate the domain and user part of winbind-created user names if winbindusedefaultdomain is not enabledthe directory which winbind-created users will have as home directoriesthe realm for the IPAv2 domainthe server for the IPAv2 domainthe shell which winbind-created users will have as their login shelluid range winbind will assign to domain or ads usersunexpected argumentupdate all configuration filesusage: %s [options]use SSSD implicitly if it supports the configurationwinbind will use Kerberos 5 to authenticatewinbind will use the default authentication methodworkgroup authentication servers are inProject-Id-Version: PACKAGE VERSION Report-Msgid-Bugs-To: POT-Creation-Date: 2016-06-17 11:35+0200 PO-Revision-Date: 2014-09-06 09:14-0400 Last-Translator: Nilamdyuti Goswami Language-Team: Assamese (http://www.transifex.com/projects/p/authconfig/language/as/) Language: as MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Plural-Forms: nplurals=2; plural=(n != 1); X-Generator: Zanata 3.8.4 / āĻĒāĻĻāĻžā§°ā§āĻĨāϏāĻŽā§‚āĻšā§° āĻŽāĻžāϜāϤ | āύāĻŋā§°ā§āĻŦāĻžāϚāύ āϕ⧰āĻŋ | āĻĒā§°āĻŦā§°ā§āϤ⧀ āĻĒā§°ā§āĻĻā§āĻĻāĻž*āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžā§° āϏāς⧰⧂āĻĒāĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāϏāĻŽā§‚āĻšāĻ¸ā§°ā§āĻŦāĻžāϧāĻŋāĻ• āĻĒā§°āĻ¸ā§āĻĒā§° āφāĻ–ā§° āĻĒ⧁āύ⧰āĻžāĻŦ⧃āĻ¤ā§āϤāĻŋāύ⧂āĻ¨ā§āϝāϤāĻŽ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āĻĒā§ā§°ā§Ÿā§‹āϜāĻ¨ā§€ā§ŸāϤāĻžāϏāĻŽā§‚āĻšāĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻ…āĻ¨ā§āϝ āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāϏāĻŽā§‚āĻšāĻĒā§ā§°ā§Ÿā§‹āϜāĻ¨ā§€ā§Ÿ āφāĻ–ā§° āĻļā§ā§°ā§‡āĻŖā§€āĻ¸ā§āĻŽāĻžā§°ā§āϟ āĻ•āĻžā§°ā§āĻĄ āĻā§°ā§‡ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāϏāĻŽā§‚āĻšāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻāĻ•āĻžāĻ“āĻ¨ā§āϟ⧰ āϏāς⧰⧂āĻĒāϏāĻ™ā§āϕ⧇āϤ: āĻ¸ā§āĻŽāĻžā§°ā§āϟ āĻ•āĻžā§°ā§āĻĄ āĻ āĻĻā§ā§Ÿā§‹ āĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āφ⧰⧁ āϕ⧇āĻ¨ā§āĻĻā§ā§°ā§€ā§ŸāĻ­āĻžāĻŦ⧇ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžāĻĒāύāĻžāϕ⧰āĻž āĻāĻ•āĻžāĻ“āĻ¨ā§āϟāĻ• āϞāĻ— āϕ⧰āĻžā§° āϏāĻŽā§°ā§āĻĨāύ āϕ⧰⧇āĨ¤āϏāĻšāĻžā§Ÿ: āĻāχ āύāĻŋā§°ā§€āĻ•ā§āώāĻŖāϏāĻŽā§‚āĻš āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āĻĨāĻžāϕ⧇ āϝāĻĻāĻŋ āĻŽāĻžāύ ā§Ļ āĻšā§ŸāĨ¤āϏāĻ™ā§āϕ⧇āϤ: āĻ‡ā§ŸāĻžāĻ• /etc/security/access.conf āĻā§°ā§‡ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžāĻĒāύāĻž āϕ⧰āĻž āĻšā§ŸāĨ¤ADS ā§°āĻžāĻœā§āϝ:āĻĒā§ā§°āĻļāĻžāϏāύ⧰ āϚāĻžā§°ā§āĻ­āĻžā§°āϏāĻŽā§‚āĻš (_m):āĻĒā§ā§°āĻļāĻžāϏāύ āϚāĻžā§°ā§āĻ­āĻžā§°:āωāĻ¨ā§āύāϤ āĻŦāĻŋāĻ•āĻ˛ā§āĻĒ (_O)āϏāĻ•āĻŋ⧟āύāĻŋāĻĒā§‚ā§°ā§āĻŦā§° āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āϏāς⧰⧂āĻĒā§° āϏāϞāύāĻŋā§° āĻ•āĻžā§°āϪ⧇ āϏāϞāύāĻŋ āĻšā§‹ā§ąāĻž āϏāĻ•āϞ⧋ āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞ āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻž āĻ­āρ⧰āĻžāϞ⧰ āĻĒā§°āĻž āĻĒ⧁āύ⧰⧁āĻĻā§āϧāĻžā§° āϕ⧰āĻž āĻš'āĻŦāĨ¤ āϏāϞāύāĻŋāϏāĻŽā§‚āĻš āĻ“āĻ­āϤāĻžāĻŦ āύ⧇?āĻ…āĻĢ-āϞāĻžāχāύ āϞāĻ—āĻŋāύ⧰ āφāĻœā§āĻžāĻž āĻĻāĻŋ⧟āĻ• (_l)āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻĒāĻĻā§āϧāϤāĻŋ (_h):āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžāĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžā§° āϏāς⧰⧂āĻĒāĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻŦāĻžāĻŦ⧇ āĻ…āĻ‚āĻļ %s/pam_%s.so āωāĻĒāĻ¸ā§āĻĨāĻŋāϤ āύāĻžāχāĨ¤ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āϏāĻ āĻŋāϕ⧰⧂āĻĒ⧇ āϚāĻ˛ā§‹ā§ąāĻž āϏāĻŽā§āĻ­āĻŦ āύāĻšāĻŦāĨ¤āĻĒāĻŋāĻ›āϞ⧈āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āĻ…āĻĒāϏāĻžā§°āĻŖ āϏāĻ‚āĻ•ā§ā§°āĻžāĻ¨ā§āϤ āϭ⧁āϞ āĻ•ā§°ā§āĻŽ āύāĻŋā§°ā§āϧāĻžā§°āĻŋāϤ āĻšā§ˆāϛ⧇āĨ¤āĻ­āĻŋāĻ¤ā§āϤāĻŋ DN:āφāĻ–ā§° āĻļā§ā§°ā§‡āĻŖā§€ (_h):āĻ•ā§āϝāĻžāĻļ āϏāĻŽā§āĻŦāĻ¨ā§āĻ§ā§€ā§Ÿ āϤāĻĨā§āϝāĻŦāĻžāϤāĻŋāϞāĻ•āĻžā§°ā§āĻĄ āĻ…āĻĒāϏāĻžā§°āĻŖā§° āĻ•ā§°ā§āĻŽ (_m)āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§°ā§° URL (_U):āĻāĻ–āύ CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻāϤāĻŋ⧟āĻžāϞ⧈āϕ⧇ āĻĄāĻžāωāύāϞ'āĻĄ āύāϕ⧰āĻŋāϞ⧇ āĻŦāĻž āĻ…āĻ¨ā§āϝ āϧ⧰āϪ⧇⧰⧇ CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻĒā§ā§°āϤāĻŋāĻˇā§āĻ āĻž āύāϕ⧰āĻŋāϞ⧇ āĻāχ āĻŦ⧁āϟāĻžāĻŽ āϟāĻŋāĻĒāĻ•āĨ¤āϞāĻ—āĻŋāύ āϕ⧰⧋āρāϤ⧇ āĻĒā§ā§°āĻšā§‡āĻˇā§āϟāĻžā§°āϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻĒā§ā§°āĻ•ā§ā§°āĻŋ⧟āĻž āύāĻŋ⧟āĻ¨ā§āĻ¤ā§ā§°āĻŖ āϕ⧰āĻ•āĻĒā§ā§°āĻĨāĻŽ āϞāĻ—āĻŋāύāϤ āϘ⧰⧰ āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋ āϏ⧃āĻˇā§āϟāĻŋ āϕ⧰āĻ• (_h)NTP āϏāς⧰⧂āĻĒāĻŖ āύāϕ⧰āĻŋāĻŦ (_N)āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻž āύāĻšāĻŦ (_n)āĻĄāĻŽā§‡āχāύ āĻĒā§ā§°āĻļāĻžāϏāĻ•:āĻĄāĻŽā§‡āχāύ āύāĻŋ⧟āĻ¨ā§āĻ¤ā§ā§°āĻ•āϏāĻŽā§‚āĻš:āĻĄāĻŽā§‡āχāύ āĻĒā§ā§°āĻļāĻžāϏāĻ• (_a):āĻĄāĻŽā§‡āχāύ:CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻĄāĻžāωāύāϞ'āĻĄ āϕ⧰āĻ•āĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§°ā§° āϏāĻŽā§°ā§āĻĨāύ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (_f)āĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻ…āĻ­āĻŋāĻ—āĻŽā§° āύāĻŋ⧟āĻ¨ā§āĻ¤ā§ā§°āĻŖ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (_l)āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āϏāĻŽā§°ā§āĻĨāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (_s)CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻĄāĻžāωāύāϞ'āĻĄ āϕ⧰⧋āρāϤ⧇ āĻ¤ā§ā§°ā§āϟāĻŋāĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§°ā§‡ā§°ā§‡ āϕ⧰āĻž āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻ•ā§āώ⧇āĻ¤ā§ā§°āϤ āφāĻĒā§‹āύāĻžā§° āφāϙ⧁āϞāĻŋāĻ• āĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§°ā§‡ā§°ā§‡ āĻ¸ā§āϕ⧇āύ āϕ⧰āĻŋ āϞāĻ—āĻŋāύ āϕ⧰āĻŋāĻŦ āĻĻāĻŋā§Ÿā§‡āĨ¤āĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§°FreeIPAāĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻŋāĻŦāϞ⧈ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž hash āĻŦāĻž crypto āĻāϞāĻ—ā§°āĻŋāĻĨāĻŽLDAP āϚāĻžā§°ā§āĻ­āĻžā§°āϞ⧈ āφāϙ⧁āϞāĻŋ⧟āĻžāχ āĻĻāĻŋ⧟āĻž āĻšāĻ¸ā§āϟāύāĻžāĻŽ āĻŦāĻž ldap:// āĻŦāĻž ldaps:// URIāĨ¤IPA ā§°āĻžāĻœā§āϝ (_e):IPA āĻĄāĻŽā§‡āχāύ (_D):IPA āϚāĻžā§°ā§āĻ­āĻžā§° (_S):IPAv2IPAv2 āϏāĻ‚āĻšāϤāĻŋāϏāĻŽā§‚āĻšIPAv2 āĻĄāĻŽā§‡āχāύāϤ āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϏāĻĢāϞ āύāĻžāĻ›āĻŋāϞāĨ¤IPAv2 āĻĄāĻŽā§‡āχāύāϤ āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϏāĻĢāϞ āύāĻžāĻ›āĻŋāϞāĨ¤ ipa-client-install āĻ•āĻŽāĻžāĻ¨ā§āĻĄ āύāĻŋāĻŽā§āύāϞāĻŋāĻ–āĻŋāϤ āĻ¤ā§ā§°ā§āϟāĻŋā§° āϏ⧈āϤ⧇ āĻŦā§āĻ¯ā§°ā§āĻĨ āĻšāϞ:IPAv2 āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϘ⧰⧰ āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋ āύāĻžāĻĨāĻžāĻ•āĻŋāϞ⧇āĻ“ āϤ⧇āĻ“āρ⧰ āĻĒā§ā§°āĻĨāĻŽ āϞāĻ—āĻŋāύāϤ āĻ¸ā§āĻŦ⧟āĻ‚āĻ•ā§ā§°āĻŋ⧟āĻ­āĻžāĻŦ⧇ āϏ⧃āĻˇā§āϟāĻŋ āϕ⧰āĻž āĻš'āĻŦāĨ¤āĻ…āĻ—ā§ā§°āĻžāĻšā§āϝ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦ⧈āϧ LDAP URIāĨ¤āĻĄāĻŽā§‡āχāύ⧰ āϏ⧈āϤ⧇ āϏāĻ‚āϝ⧋āĻ— āĻ¸ā§āĻĨāĻžāĻĒāύ āϕ⧰āĻž āĻš'āĻŦāĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝ āϏāĻ‚āϝ⧁āĻ•ā§āϤ āϕ⧰āĻž āĻš'āĻŦIPA āĻĄāĻŽā§‡āχāύ āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϕ⧰āĻžWinbind āĻĄāĻŽā§‡āχāύ āϏāĻ‚āϝ⧁āĻ•ā§āϤ āϕ⧰āĻž āĻšā§ˆāϛ⧇KDC:KerberosKerberos ā§° āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝāĻžāĻŦāϞ⧀Kerberos āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄLDAPLDAP āϏāĻ¨ā§āϧāĻžāύ āĻ­āĻŋāĻ¤ā§āϤāĻŋ DN (_B):LDAP ā§° āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝāĻžāĻŦāϞ⧀LDAP āϚāĻžā§°ā§āĻ­āĻžā§° (_S):LDAP ā§° āĻ…āύ⧁āĻŽā§‹āĻĻāύLDAP āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāĻ…āĻ•āϞ āĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻāĻ•āĻžāĻ“āĻ¨ā§āϟāĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āϝāĻĨ⧇āĻˇā§āϟāĻŦāĻ¨ā§āϧ āϕ⧰āĻ•āϤāϞ⧰āĻĢāϞāĻž (_e)NISNIS ā§° āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝāĻžāĻŦāϞ⧀NIS āĻĄāĻŽā§‡āχāύ (_D):NIS āϚāĻžā§°ā§āĻ­āĻžā§° (_S):NIS āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāφāĻ—āϞ⧈āύāĻšā§ŸāĻ…āĻ¨ā§āϝ āφāĻ–ā§°āϏāĻŽā§‚āĻš (_t)āĻ āĻŋāĻ• āφāϛ⧇āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāϏāĻŽā§‚āĻš (_w)āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ:āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ:ā§°āĻžāĻœā§āϝ (_e):ā§°āĻžāĻœā§āϝ:āϞāĻ—āĻŋāύ⧰ āĻŦāĻžāĻŦ⧇ āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āĻ†ā§ąāĻļā§āϝāĻ• (_d)āĻĒā§‚ā§°ā§āĻŦā§° āϏāς⧰⧂āĻĒ āϏāϞāύāĻŋ āϕ⧰āĻžā§° āφāĻ—āϤ⧇ āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻž āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞ āĻĒ⧁āύ⧰⧁āĻĻā§āϧāĻžā§° āϕ⧰āĻ•āφāĻ—ā§° āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϞ⧈ āύāĻŋ⧟āĻ•āĻāϕ⧇āϟāĻž āĻļā§ā§°ā§‡āĻŖā§€ (_m):āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝāĻžāĻŦāϞ⧀ āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻ•āϏ⧁⧰āĻ•ā§āώāĻžā§° āĻŽāĻĄā§‡āϞ:āϚāĻžā§°ā§āĻ­āĻžā§°:āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻ•ā§āώ⧇āĻ¤ā§ā§°āϤ āĻāϟāĻž āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄā§‡ā§° āϏ⧈āϤ⧇ āϝ⧁āĻ•ā§āϤ āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āφ⧰⧁ āĻ•āĻŋ āĻĻā§āĻŦāĻžā§°āĻž āϞāĻ—-āχāύ āϕ⧰āĻž āϏāĻŽā§āĻ­āĻŦāĨ¤āĻĒā§°āĻŦā§°ā§āϤ⧀ āĻ¸ā§āϤ⧰āϤ āφāĻ—āĻŦā§āĻžā§° āφāĻ—āϤ āϏāς⧰⧂āĻĒāϤ āĻšā§‹ā§ąāĻž āĻĒā§°āĻŋāĻŦā§°ā§āϤāύ āĻĄāĻŋāĻ¸ā§āĻ•āϤ āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻž āĻĒā§ā§°ā§Ÿā§‹āϜāύāĨ¤ āϏāς⧰āĻ•ā§āώāĻŖ āύāϕ⧰āĻŋāϞ⧇ āĻĄāĻŽā§‡āχāύ⧰ āϏ⧈āϤ⧇ āϏāĻ‚āϝ⧋āĻ— āĻ¸ā§āĻĨāĻžāĻĒāύ āϕ⧰⧋āρāϤ⧇ āϏāĻ•ā§āώāĻŽ āύāĻšāĻŦāĻ“ āĻĒāĻžā§°ā§‡āĨ¤ āĻĒā§°āĻŋāĻŦā§°ā§āϤāύāϏāĻŽā§‚āĻš āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻž āĻš'āĻŦ āύ⧇āĻ•āĻŋ?āĻŸā§‡āĻŽāĻĒā§āϞ⧇āϟ āĻļā§āĻŦ⧇āϞ (_m):āĻŸā§‡āĻŽāĻĒā§āϞ⧇āϟ āĻļ⧇āϞ:%s āĻĢāĻžāχāϞāĻŸā§‹ āĻĒā§‹ā§ąāĻž āύāĻ—āϞ, āĻ•āĻŋāĻ¨ā§āϤ⧁ %s āϏāĻŽā§°ā§āĻĨāύ āϏāĻ āĻŋāĻ•āĻ­āĻžāĻŦ⧇ āϚāϞāĻžāĻŦ āĻšāϞ⧇ āĻāχāĻŸā§‹ āĻĒā§ā§°ā§Ÿā§‹āϜāύāĨ¤ āĻāχ āĻĢāĻžāχāϞāĻŸā§‹ āĻĒā§ā§°āĻžāĻĒā§āϤ āϕ⧰āĻŋāĻŦāϞ⧇ %s āĻĒ⧇āϕ⧇āχāϜāĻŸā§‹ āχāύāĻ¸ā§āϟāϞ āϕ⧰āĻ•āĨ¤passmaxclassrepeat āĻŦāĻŋāĻ•āĻ˛ā§āĻĒ āĻŽāĻžāύ āĻāϟāĻž āĻĒā§‚ā§°ā§āĻŖ āϏāĻ‚āĻ–ā§āϝāĻž āύāĻšā§Ÿpassmaxclassrepeat āĻŽāĻžāύ āĻ‹āĻŖāĻžāĻ¤ā§āĻŽāĻ• āĻšāĻŦ āĻ¨ā§‹ā§ąāĻžā§°āĻŋāĻŦpassmaxrepeat āĻŦāĻŋāĻ•āĻ˛ā§āĻĒ āĻŽāĻžāύ āĻāϟāĻž āĻĒā§‚ā§°ā§āĻŖ āϏāĻ‚āĻ–ā§āϝāĻž āύāĻšā§Ÿpassmaxrepeat āĻŽāĻžāύ āĻ‹āĻŖāĻžāĻ¤ā§āĻŽāĻ• āĻšāĻŦ āĻ¨ā§‹ā§ąāĻžā§°āĻŋāĻŦpassminclass āĻŦāĻŋāĻ•āĻ˛ā§āĻĒ āĻŽāĻžāύ āĻāϟāĻž āĻĒā§‚ā§°ā§āĻŖ āϏāĻ‚āĻ–ā§āϝāĻž āύāĻšā§Ÿpassminclass āĻŽāĻžāύ 4 ā§° āĻ…āϧāĻŋāĻ• āĻšāĻŦ āĻ¨ā§‹ā§ąāĻžā§°āĻŋāĻŦpassminclass āĻŽāĻžāύ āĻ‹āĻŖāĻžāĻ¤ā§āĻŽāĻ• āĻšāĻŦ āĻ¨ā§‹ā§ąāĻžā§°āĻŋāĻŦpassminlen āύ⧂āĻ¨ā§āϝāϤāĻŽ āĻŽāĻžāύ āĻšāϞ 6passminlen āĻŦāĻŋāĻ•āĻ˛ā§āĻĒ āĻŽāĻžāύ āĻāϟāĻž āĻĒā§‚ā§°ā§āĻŖ āϏāĻ‚āĻ–ā§āϝāĻž āύāĻšā§ŸāϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ TLS āύ⧀āϤāĻŋ āϏāĻš LDAP āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āϏ⧈āϤ⧇ āϏāĻ‚āϝ⧋āĻ— āϕ⧰āĻŋāϞ⧇ āφāĻĒā§‹āύāĻžā§° āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻ¸ā§āĻŦāĻžāĻ•ā§āώ⧰āĻ•āĻžā§°ā§€ CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻ†ā§ąāĻļā§āϝāĻ•āĨ¤ PEM āϏāς⧰⧂āĻĒāϤ āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§°āĻŸā§‹ '%s' āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋā§° āĻŽāĻžāϜāϤ āĻ•āĻĒāĻŋ āϕ⧰āĻ•āĨ¤ āĻ•ā§°ā§āĻŽ āϏāĻŽāĻžāĻĒā§āϤ āĻšāϞ⧇ āĻ āĻŋāĻ• āφāϛ⧇ āϟāĻŋāĻĒāĻ•āĨ¤āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ TLS āύ⧀āϤāĻŋāϏāĻš LDAP āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āϏ⧈āϤ⧇ āϏāĻ‚āϝ⧋āĻ— āϕ⧰āĻŋāϞ⧇ āφāĻĒā§‹āύāĻžā§° āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻ¸ā§āĻŦāĻžāĻ•ā§āώ⧰āĻ•āĻžā§°ā§€ CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§°ā§° āĻ†ā§ąāĻļā§āϝāĻ•āĨ¤ PEM āϏāς⧰⧂āĻĒāϤ CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§°āĻ• āĻĄāĻžāωāύāϞ'āĻĄ āϕ⧰āĻŋāĻŦ āĻĒā§°āĻž URL āĻĻāĻŋ⧟āĻ•āĨ¤āĻ—ā§ā§°āĻžāĻĢā§€ā§Ÿ āĻĒā§°āĻŋā§ąā§‡āĻļ āφ⧰āĻŽā§āĻ­ āϕ⧰āĻŋāĻŦāϞ⧇ āĻ…āĻ•ā§āώāĻŽāĨ¤ āĻŦā§āĻ¯ā§°ā§āĻĨāϤāĻžā§° āĻ•āĻžā§°āĻŖ āϖ⧁āĻŦ āϏāĻŽā§āĻ­āĻŦ āĻāχ āϝ⧇ āϏāρāϜ⧁āϞāĻŋāĻ• āĻāϟāĻž āĻ—ā§ā§°āĻžāĻĢā§€ā§Ÿ āĻĒā§°āĻŋā§ąā§‡āĻļ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻŋ āϚāĻ˛ā§‹ā§ąāĻž āύāĻžāĻ›āĻŋāϞāĨ¤ āĻ…āύ⧁āĻ—ā§ā§°āĻš āϕ⧰āĻŋ āĻšā§Ÿ āφāĻĒā§‹āύāĻžā§° āĻ—ā§ā§°āĻžāĻĢā§€ā§Ÿ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āφāĻ¨ā§āϤāσāĻĒ⧃āĻˇā§āĻ  āφ⧰āĻŽā§āĻ­ āϕ⧰āĻ• āĻ…āĻĨāĻŦāĻž āφāĻĒā§‹āύāĻžā§° DISPLAY āĻĄā§ā§°āĻžāχāĻ­āĻžā§° āϏāĻ‚āĻšāϤāĻŋ āϕ⧰āĻ•āĨ¤ āĻ…āĻœā§āĻžāĻžāϤ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄā§° hashing āĻāϞāĻ—ā§°āĻŋāĻĨāĻŽ āύāĻŋā§°ā§āϧāĻžā§°āĻŋāϤ āϕ⧰āĻž āĻšā§ˆāϛ⧇, sha256 āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āϞāĨ¤ā§°āĻžāĻœā§āϝ'ā§° āĻŦāĻžāĻŦ⧇ KDCs ā§° āĻ…ā§ąāĻ¸ā§āĻĨāĻžāύ āύāĻŋā§°ā§āϪ⧟ āϕ⧰⧋āρāϤ⧇ DNS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦ (_l)ā§°āĻžāĻœā§āϝ'ā§° āĻŦāĻžāĻŦ⧇ KDC ā§° āĻ…ā§ąāĻ¸ā§āĻĨāĻžāύ āύāĻŋā§°ā§āϪ⧟ āϕ⧰⧋āρāϤ⧇ DNS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦā§°āĻžāĻœā§āϝ'ā§° āϏ⧈āϤ⧇ āĻšāĻ¸ā§āϟ āύāĻŋā§°ā§āϪ⧟ āϕ⧰⧋āρāϤ⧇ DNS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦā§°āĻžāĻœā§āϝ'ā§° āϏ⧈āϤ⧇ āĻšāĻ¸ā§āϟ āύāĻŋā§°ā§āϪ⧟ āϕ⧰⧋āρāϤ⧇ DNS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦ (_N)āĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻ•IPAv2 āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻ•Kerberos āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦLDAP āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦLDAP āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦMD5 āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦNIS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦāĻļ⧇āĻĄā§‹ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦTLS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦRFC-2830 āϤ āϏāĻ‚āĻœā§āĻžāĻž āĻĻāĻŋ⧟āĻžā§° āĻŽāϤ⧇ āĻĒā§°āĻŋāĻŦāĻšāύ āĻ¸ā§āϤ⧰ āϏ⧁⧰āĻ•ā§āώāĻžāϤ LDAP ā§° āϏāĻŽā§āĻĒā§ā§°āϏāĻžā§°āĻŖ āĻšāĻŋāϚāĻžāĻĒ⧇ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻ•āĨ¤ āϤāĻžāĻ• ldaps āϚāĻžā§°ā§āĻ­āĻžā§°ā§° URI ā§° āϏ⧈āϤ⧇ āύāĻŋā§°ā§āĻŦāĻžāϚāύ āϕ⧰āĻŋāĻŦ āύāĻžāϞāĻžāϗ⧇āĨ¤Winbind āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦWinbind āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦāϏāĻ‚āϝ⧋āĻ— āĻāύāĻ•ā§ā§°āĻŋāĻĒā§āϟ āϕ⧰⧋āρāϤ⧇ TLS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻž āĻš'āĻŦ (_T)IPAv2 āĻĄāĻŽā§‡āχāύāϤ āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϕ⧰āĻŋāĻŦāϞ⧇ "āĻĄāĻŽā§‡āχāύ āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϕ⧰āĻ•" āĻŦ⧁āϟāĻžāĻŽ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻ•āĨ¤āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āϏāĻŽā§āĻŦāĻ¨ā§āĻ§ā§€ā§Ÿ āϤāĻĨā§āϝāϏāĻ•āĻŋ⧟āύāĻŋāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ…āĻ­āĻŋāĻ—āĻŽā§āϝāϤāĻžā§° āφāĻĻ⧇āĻļā§° āĻŦāĻžāĻŦ⧇ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ /etc/security/access.conf ā§° āĻĒā§°āĻžāĻŽā§°ā§āĻļ āĻ˛ā§‹ā§ąāĻž āĻš'āĻŦāĨ¤WinbindWinbind ADS ā§°āĻžāĻœā§āϝ (_e):Winbind āĻĄāĻŽā§‡āχāύ āύāĻŋ⧟āĻ¨ā§āĻ¤ā§ā§°āĻ•āϏāĻŽā§‚āĻš (_n):Winbind ā§° āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝāĻžāĻŦāϞ⧀Winbind āĻĄāĻŽā§‡āχāύ (_D):Winbind ā§° āĻ…āύ⧁āĻŽā§‹āĻĻāύWinbind domain āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϏāĻĢāϞ āφāĻ›āĻŋāϞāĨ¤Winbind domain āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϏāĻĢāϞ āφāĻ›āĻŋāϞāĨ¤ net join āĻ•āĻŽāĻžāĻ¨ā§āĻĄ āύāĻŋāĻŽā§āύāϞāĻŋāĻ–āĻŋāϤ āĻ¤ā§ā§°ā§āϟāĻŋā§° āϏ⧈āϤ⧇ āĻŦā§āĻ¯ā§°ā§āĻĨ āĻšāϞ:Winbind āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāĻšā§ŸLDAP āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻ•āĻžā§°āϪ⧇ āφāĻĒ⧁āύāĻŋ ldaps:// āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āĻ āĻŋāĻ•āύāĻž āĻĻāĻŋāĻŦ āϞāĻžāĻ—āĻŋāĻŦ āĻŦāĻž TLS āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻŋāĻŦ āϞāĻžāĻ—āĻŋāĻŦāĨ¤āĻĄāĻŋāϜāĻŋāϟāϏāĻŽā§‚āĻš (_D)CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āĻĄāĻžāωāύāϞ'āĻĄ āϕ⧰āĻ• (_D)...āĻĒā§°āĻŋāϚ⧟ & āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖ (_I)āĻĄāĻŽā§‡āχāύ āϝ⧋āĻ— āϕ⧰āĻ• (_J)...KDCs (_K):āĻĻā§ˆā§°ā§āĻ˜ā§āϝ (_L):āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ hashing ā§° āĻāϞāĻ—ā§°āĻŋāĻĨāĻŽ (_P):āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ (_P):āĻāϕ⧇āϟāĻž āφāĻ–ā§° (_S):āϏ⧁⧰āĻ•ā§āώāĻžā§° āĻŽāĻĄā§‡āϞ (_S):āĻ“āĻĒā§°āĻĢāϞāĻž (_U)āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻāĻ•āĻžāĻ“āĻ¨ā§āϟ⧰ āĻĄāĻžāϟāĻžāĻŦ⧇āχāϚ (_U):āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āĻ…āĻĒāϏāĻžā§°āĻŋāϤ āĻšāϞ⧇ āϏāĻžā§āϚāĻžāϞāύ⧰ āĻŦāĻžāĻŦ⧇ āϚāĻŋāĻšā§āύāĻŋāϤ āĻ•ā§°ā§āĻŽāĻ•ā§‡ā§ąāϞ āĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻĢāĻžāχāϞ⧰ āϏāĻšāĻžā§ŸāϤ āϚāĻŋāĻ¸ā§āĻŸā§‡āĻŽ āĻāĻ•āĻžāĻ“āĻ¨ā§āϟ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āϕ⧰āĻž āĻš'āĻŦāύ⧇āĻŸā§ąāĻžā§°ā§āĻ• āĻ¸ā§‡ā§ąāĻžā§° āĻĻā§āĻŦāĻžā§°āĻž āϚāĻŋāĻ¸ā§āĻŸā§‡āĻŽ āĻāĻ•āĻžāĻ“āĻ¨ā§āϟ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āϕ⧰āĻž āĻš'āĻŦāĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§°āĻ“ āĻĻā§‚ā§°āĻŦā§°ā§āϤ⧀ āĻ¸ā§‡ā§ąāĻžā§° āĻŽāĻžāĻ§ā§āϝāĻŽā§‡ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āϕ⧰āĻž āĻš'āĻŦāĻ•ā§āϝāĻžāĻļ āϕ⧰āĻž āĻšā§ˆāϛ⧇āĻ•ā§‡ā§ąāϞ root āĻĒā§°āĻŋāϚ⧟ āĻĻā§āĻŦāĻžā§°āĻž āϏāĻžā§āϚāĻžāϞāύāϝ⧋āĻ—ā§āϝāĻāĻ•āĻžāĻ“āĻ¨ā§āϟ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āϏāĻŽā§Ÿ access.conf āĻĒā§°ā§€āĻ•ā§āώāĻž āϕ⧰āĻž āĻš'āĻŦāĻ…āĻĢāϞāĻžāχāύ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āϞāĻ—āĻŋāύ āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ windbind āϏāς⧰⧂āĻĒ āϕ⧰āĻž āĻšā§ŸāĻĄāĻŽā§‡āχāύ⧰ āύāĻžāĻŽāĻŦāĻŋāĻšā§€āύ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻĄāĻŽā§‡āχāύ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āĻšāĻŋāϚāĻžāĻĒ⧇ āĻ…āύ⧁āĻŽāĻžāύ āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ winbind āϏāς⧰⧂āĻĒ āϕ⧰⧇āĻĄāĻŽā§‡āχāύ⧰ āύāĻžāĻŽāĻŦāĻŋāĻšā§€āύ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻĄāĻŽā§‡āχāύ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āĻšāĻŋāϚāĻžāĻĒ⧇ āĻ…āύ⧁āĻŽāĻžāύ āύāϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ winbind āϏāς⧰⧂āĻĒ āϕ⧰⧇āĻ…āĻĢāϞāĻžāχāύ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āϞāĻ—āĻŋāύ āĻĒā§ā§°āϤāĻŋā§°ā§‹āϧ āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ windbind āϏāς⧰⧂āĻĒ āϕ⧰āĻž āĻšā§ŸāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻĒā§ā§°āĻĨāĻŽ āϞāĻ—āĻŋāύāϤ āϤ⧇āĻ“āρāϞ⧋āϕ⧰ āϘ⧰⧰ āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋ āϏ⧃āĻˇā§āϟāĻŋ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ LDAP base DNāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ LDAP āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āĻšāĻ¸ā§āϟāύāĻžāĻŽ āĻŦāĻž URIāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ NIS āĻĄāĻŽā§‡āχāύāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ NIS āϚāĻžā§°ā§āĻ­āĻžā§°āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ hesiod LHSāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ hesiod RHSāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ kerberos KDCāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ kerberos āĻĒā§ā§°āĻļāĻžāϏāύ āϚāĻžā§°ā§āĻ­āĻžā§°āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ kerberos ā§°āĻžāĻœā§āϝsecurity=ads āĻš'āϞ⧇ samba āφ⧰⧁ winbind ā§° āĻŦāĻžāĻŦ⧇ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ ā§°āĻžāĻœā§āϝāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°ā§° āĻŦāĻžāĻŦ⧇ āϚāĻŋāĻšā§āύāĻŋāϤ āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āĻ…āĻ‚āĻļāĻĄāĻžāχāϞāĻ— āĻŦāĻžāϤāĻŋāϞ āϕ⧰āĻž āĻšā§ˆāϛ⧇IPAv2 āĻ• āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžā§ąā§‡ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āϤāĻĨā§āϝ āφ⧰⧁ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻŦāĻžāĻŦ⧇ āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻŦāĻžāĻŦ⧇ LDAP āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ LDAP āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ MD5 āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ NIS āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻŦāĻžāĻŦ⧇ SSSD āĻ• āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžā§ąā§‡ āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (āϏāĻŽā§°ā§āĻĨāĻŋāϤ āϏāς⧰⧂āĻĒāϏāĻŽā§‚āĻšā§° āĻŦāĻžāĻŦ⧇ āĻāϤāĻŋ⧟āĻžāĻ“ āĻŦā§āĻ¯ā§ąāĻšā§ƒāϤ)āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžā§ąā§‡ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āϤāĻĨā§āϝ⧰ āĻ•āĻžā§°āϪ⧇ SSSD āĻ• āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (āĻāϤāĻŋ⧟āĻžāĻ“ āϏāĻŽā§°ā§āĻĨāĻŋāϤ āϏāς⧰⧂āĻĒāϏāĻŽā§āĻšā§° āĻŦāĻžāĻŦ⧇ āĻŦā§āĻ¯ā§ąāĻšā§ƒāϤ)āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§°ā§‡ā§°ā§‡ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āϏāĻšāϝ⧋āϗ⧇ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ¸ā§āĻŦāϚāĻžāϞāĻŋāϤ āĻĒā§ā§°āϤāĻŋ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ ecryptfs āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻžāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžāĻŦ⧇ SSSD āϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ•ā§ā§°āĻŋāĻĄā§‡āĻ¨ā§āϚāĻŋā§Ÿā§‡āϞ āĻ•ā§āϝāĻžāĻļ āϕ⧰āĻž āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ āĻ•ā§āϝāĻžāĻļ āϕ⧰āĻžā§° āĻĒā§ā§°āĻ•ā§ā§°āĻŋ⧟āĻž āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ hesiod āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ kerberos āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻļ⧇āĻĄā§‹ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦkerberos KDC āĻ…āύ⧁āϏāĻ¨ā§āϧāĻžāύ⧰ āĻŦāĻžāĻŦ⧇ DNSā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦkerberos ā§°āĻžāĻœā§āϝ āĻ…āύ⧁āϏāĻ¨ā§āϧāĻžāύ⧰ āĻŦāĻžāĻŦ⧇ DNSā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦLDAP āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āϞ⧁āĻ•-āφāĻĒā§° āĻ•āĻžā§°āϪ⧇ RFC-2307bis āĻ¸ā§āĻ•āĻŋāĻŽāĻžā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•LDAP ā§° āϏ⧈āϤ⧇ TLS ā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (RFC-2830)āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻŦāĻžāĻŦ⧇ winbind āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ winbind āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻšāĻ¸ā§āϟāύāĻžāĻŽ āĻŽā§€āĻŽāĻžāĻ‚āϏāĻž āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ wins āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦTUI'ā§° āĻĒā§ā§°āϧāĻžāύ āĻĄāĻžāχāϞāĻ— āĻŦāĻžāĻ•āϚ⧰ āĻŽāĻžāϜāϤ āĻŦāĻžāϤāĻŋāϞ āĻŦ⧁āϟāĻžāĻŽā§° āĻĒā§°āĻŋāĻŦā§°ā§āϤ⧇ āĻĒā§‚ā§°ā§āĻŦāĻŦā§°ā§āϤ⧀ āĻŦ⧁āϟāĻžāĻŽ āĻĒā§ā§°āĻĻā§°ā§āĻļāύ āϕ⧰āĻž āĻš'āĻŦāĻāĻ•āĻžāĻ“āĻ¨ā§āϟ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āϏāĻŽā§Ÿ access.conf āĻĒā§°ā§€āĻ•ā§āώāĻž āϕ⧰āĻž āύāĻšāĻŦāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻĒā§ā§°āĻĨāĻŽ āϞāĻ—āĻŋāύāϤ āϤ⧇āĻ“āρāϞ⧋āϕ⧰ āϘ⧰⧰ āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋ āϏ⧃āĻˇā§āϟāĻŋ āύāϕ⧰āĻŋāĻŦāĻ…āĻŦāϚāĻŋāϤ āϞāĻŋāĻ–āύ⧀ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āφāĻ¨ā§āϤāσāĻĒ⧃āĻˇā§āĻ  āĻĒā§ā§°āĻĻā§°ā§āĻļāύ āϕ⧰āĻž āύāĻšāĻŦāĻšāĻ¸ā§āϟāύāĻžāĻŽā§° āĻŽā§€āĻŽāĻžāĻ‚āϏāĻž āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ wins āĻŦāĻž nis ā§° āϏāϞāύāĻŋ dns āĻ• āĻĒāĻ›āĻ¨ā§āĻĻ āύāϕ⧰āĻŋāĻŦāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻĄāĻŋāϜāĻŋāϟāϏāĻŽā§‚āĻšā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύ āύāĻžāχāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āϤāϞ⧰āĻĢāϞāĻž āφāĻ–ā§°āϏāĻŽā§‚āĻšā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύ āύāĻžāχāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻ…āĻ¨ā§āϝ āφāĻ–ā§°āϏāĻŽā§‚āĻšā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύ āύāĻžāχāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āϏāĻšāϝ⧋āϗ⧇ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āĻ†ā§ąāĻļā§āϝāĻ• āϧāĻžā§°ā§āĻ¯ā§āϝ āϕ⧰āĻž āύāĻšāĻŦāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻ“āĻĒā§°āĻĢāϞāĻž āφāĻ–ā§°āϏāĻŽā§‚āĻšā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύ āύāĻžāχIPAv2 āĻĄāĻŽā§‡āχāύ⧰ āĻŦāĻžāĻŦ⧇ NTP āϏāĻ‚āĻ¸ā§āĻĨāĻžāĻĒāύ āύāϕ⧰āĻŋāĻŦportmap, ypbind āφ⧰⧁ nscd āφ⧰āĻŽā§āĻ­/āĻŦāĻ¨ā§āϧ āϕ⧰āĻž āύāĻšāĻŦāϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞ āωāĻ¨ā§āύāϤ āϕ⧰āĻž āύāĻšāĻŦ, āĻ•ā§‡ā§ąāϞ āύāϤ⧁āύ āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝ āĻĒā§ā§°āĻŋāĻ¨ā§āϟ āϕ⧰āĻž āĻš'āĻŦIPAv2 āĻ• āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžā§ąā§‡ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āϤāĻĨā§āϝ āφ⧰⧁ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻŦāĻžāĻŦ⧇ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻŦāĻžāĻŦ⧇ LDAP āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ LDAP āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ MD5 āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ NIS āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžā§ąā§‡ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖā§° āĻ•āĻžā§°āϪ⧇ SSSD āĻ• āĻšāĻ¸ā§āϤāϚāĻžāϞāĻŋāϤ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžāĻĒāĻŋāϤ āϏāς⧰⧂āĻĒā§° āϏ⧈āϤ⧇ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžā§ąā§‡ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ āϤāĻĨā§āϝ⧰ āĻ•āĻžā§°āϪ⧇ SSSD āĻ• āĻšāĻ¸ā§āϤāϚāĻžāϞāĻŋāϤ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻžāĻĒāĻŋāϤ āϏāς⧰⧂āĻĒā§° āϏ⧈āϤ⧇ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻĢāĻŋāĻ‚āĻ—āĻžā§°āĻĒā§ā§°āĻŋāĻ¨ā§āϟ ā§°āĻŋāĻĄāĻžā§°ā§‡ā§°ā§‡ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄā§‡ā§°ā§‡ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ¸ā§āĻŦāϚāĻžāϞāĻŋāϤ āĻĒā§ā§°āϤāĻŋ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ ecryptfs āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻžāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžāĻŦ⧇ SSSD āϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ•ā§ā§°āĻŋāĻĄā§‡āĻ¨ā§āϚāĻŋā§Ÿā§‡āϞ āĻ•ā§āϝāĻžāĻļ āϕ⧰āĻž āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤāĻ­āĻžāĻŦ⧇ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ āĻ•ā§āϝāĻžāĻļ āϕ⧰āĻŋāĻŦāϞ⧈ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (SSSD āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰⧋āρāϤ⧇ āύāĻŋāĻœā§‡āχ āĻ…āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āĻšā§Ÿ)āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ hesiod āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ kerberos āĻ…āύ⧁āĻŽā§‹āĻĻāύ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻļ⧇āĻĄā§‹ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄ āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦkerberos KDC āĻ…āύ⧁āϏāĻ¨ā§āϧāĻžāύ⧰ āĻŦāĻžāĻŦ⧇ DNSā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦkerberos ā§°āĻžāĻœā§āϝ āĻ…āύ⧁āϏāĻ¨ā§āϧāĻžāύ⧰ āĻŦāĻžāĻŦ⧇ DNSā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦLDAP āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āϞ⧁āĻ•-āφāĻĒā§° āĻ•āĻžā§°āϪ⧇ RFC-2307bis āĻ¸ā§āĻ•āĻŋāĻŽāĻžā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ•LDAP ā§° āϏ⧈āϤ⧇ TLS ā§° āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻ• (RFC-2830)āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻŦāĻžāĻŦ⧇ winbind āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āϤāĻĨā§āϝ⧰ āĻŦāĻžāĻŦ⧇ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻ…ā§ąāĻ¸ā§āĻĨāĻžāϤ winbind āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāĻšāĻ¸ā§āϟāύāĻžāĻŽ āĻŽā§€āĻŽāĻžāĻ‚āϏāĻž āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ wins āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āϕ⧰āĻž āĻš'āĻŦāύāϤ⧁āύ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄā§° āĻŦāĻžāĻŦ⧇ hash/crypt āĻāϞāĻ—ā§°āĻŋāĻĨāĻŽāĻāχ āĻāĻ•āĻžāĻ“āĻ¨ā§āϟ āĻšāĻŋāϚāĻžāĻĒ⧇ IPAv2 āĻĄāĻŽā§‡āχāύāϤ āĻ…āĻ‚āĻļāĻ—ā§ā§°āĻšāĻŖ āϕ⧰āĻ•āĻŦā§°ā§āϤāĻŽāĻžāύ āĻĒā§ā§°āĻļāĻžāϏāĻ• āĻšāĻŋāϚāĻžāĻĒ⧇ winbind āĻĄāĻŽā§‡āχāύ āφ⧰⧁ ads ā§°āĻžāĻœā§āϝ āϝ⧁āĻ•ā§āϤ āϕ⧰āĻž āĻš'āĻŦURL ā§° āĻĒā§°āĻž CA āĻĒā§ā§°āĻŽāĻžāĻŖāĻĒāĻ¤ā§ā§° āϞ'āĻĄ āϕ⧰āĻ•āĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ•ā§āώ⧇āĻ¤ā§ā§°āϤ āĻ¸ā§āĻĨāĻžāĻ¨ā§€ā§Ÿ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āϝāĻĨ⧇āĻˇā§āϟāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻāϕ⧇āϟāĻž āĻļā§ā§°ā§‡āϪ⧀⧰ āĻĒā§°āĻ¸ā§āĻĒā§° āφāĻ–ā§°āϏāĻŽā§‚āĻšā§° āĻ¸ā§°ā§āĻŦāĻžāϧāĻŋāĻ• āϏāĻ‚āĻ–ā§āϝāĻžāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻāϕ⧇āϟāĻž āĻĒā§°āĻ¸ā§āĻĒā§° āφāĻ–ā§°āϏāĻŽā§‚āĻšā§° āĻ¸ā§°ā§āĻŦāĻžāϧāĻŋāĻ• āϏāĻ‚āĻ–ā§āϝāĻžāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄā§° āύ⧂āĻ¨ā§āϝāϤāĻŽ āĻĻā§ˆā§°ā§āĻ˜ā§āϝāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āφāĻ–ā§° āĻļā§ā§°ā§‡āĻŖā§€āϏāĻŽā§‚āĻšā§° āύ⧂āĻ¨ā§āϝāϤāĻŽ āϏāĻ‚āĻ–ā§āϝāĻžāĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āĻŦāĻžāĻŦ⧇ āĻŦā§āĻ¯ā§ąāĻšā§ƒāϤ āϚāĻžā§°ā§āĻ­āĻžā§°ā§° āύāĻžāĻŽāϏāĻŽā§°ā§āĻĨāĻŋāϤ āϏāς⧰⧂āĻĒāϏāĻŽā§‚āĻšā§° āĻŦāĻžāĻŦ⧇āĻ“ āϕ⧇āϤāĻŋ⧟āĻžāĻ“ SSSD āĻ• āĻ…āĻ­ā§āϝāĻ¨ā§āϤ⧰āĻŋāĻ•āĻ­āĻžā§ąā§‡ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āύāϕ⧰āĻŋāĻŦ--test'ā§° āĻŦāĻŋāĻĒā§°ā§€āϤ, āĻĒā§°āĻŋāĻŦā§°ā§āϤāĻŋāϤ āĻŦ⧈āĻļāĻŋāĻˇā§āĻŸā§āϝ āϏāĻš āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞ āωāĻ¨ā§āύāϤ āϕ⧰āĻž āĻš'āĻŦāĻšāĻ¸ā§āϟāύāĻžāĻŽā§° āĻŽā§€āĻŽāĻžāĻ‚āϏāĻž āϕ⧰āĻžā§° āĻŦāĻžāĻŦ⧇ wins āĻŦāĻž nis ā§° āϏāϞāύāĻŋ dns āĻ• āĻĒāĻ›āĻ¨ā§āĻĻ āϕ⧰āĻ•āύ⧇'āĻŸā§ąā§°ā§āϕ⧇ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻŽāĻžāύ āĻ…āύ⧁āϏāĻ¨ā§āϧāĻžāύ āϕ⧰āĻŋ āϏ⧇āχāϏāĻŽā§‚āĻš āĻĒā§ā§°āĻŋāĻ¨ā§āϟ āϕ⧰āĻž āĻš'āĻŦāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻ…āĻ¨ā§āϤāϤ āĻāϟāĻž āĻĄāĻŋāϜāĻŋāϟ⧰ āĻĒā§ā§°ā§Ÿā§‹āϜāύāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻ…āĻ¨ā§āϤāϤ āĻāϟāĻž āϤāϞ⧰āĻĢāϞāĻž āφāĻ–ā§°ā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻ…āĻ¨ā§āϤāϤ āĻ…āĻ¨ā§āϝ āĻāϟāĻž āφāĻ–ā§°ā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύāĻāϟāĻž āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāϤ āĻ…āĻ¨ā§āϤāϤ āĻāϟāĻž āĻ“āĻĒā§°āĻĢāϞāĻž āφāĻ–ā§°ā§° āĻĒā§ā§°ā§Ÿā§‹āϜāύāĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ⧰⧂āĻĒ⧇ āĻ¸ā§āĻŽāĻžā§°ā§āϟ-āĻ•āĻžā§°ā§āĻĄ āϏāĻšāϝ⧋āϗ⧇ āĻ…āύ⧁āĻŽā§‹āĻĻāύ āĻŦā§āĻ¯ā§ąāĻ¸ā§āĻĨāĻž āĻ†ā§ąāĻļā§āϝāϕ⧰⧂āĻĒ⧇ āϧāĻžā§°ā§āĻ¯ā§āϝ āϕ⧰āĻž āĻš'āĻŦā§°āĻ•ā§āώāĻž āϕ⧰āĻž āϏāĻ•āϞ⧋ āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞāĻ• āĻĒ⧁āύ⧰⧁āĻĻā§āϧāĻžā§° āϕ⧰āĻ•āĻĒā§‚ā§°ā§āĻŦā§° āϏāς⧰⧂āĻĒ āϏāϞāύāĻŋ āϕ⧰āĻžā§° āφāĻ—āϤ⧇ āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻž āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞ āĻĒ⧁āύ⧰⧁āĻĻā§āϧāĻžā§° āϕ⧰āĻ•āϏāĻ•āϞ⧋ āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞāĻ• āϏāς⧰āĻ•ā§āώāĻŖ āϕ⧰āĻ•samba āφ⧰⧁ winbindā§° āĻ•ā§āώ⧇āĻ¤ā§ā§°āϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āϝ⧋āĻ—ā§āϝ āϏ⧁⧰āĻ•ā§āώāĻžā§° āĻ…ā§ąāĻ¸ā§āĻĨāĻžIPAv2 āĻĄāĻŽā§‡āχāύ⧰ āĻŦāĻžāĻŦ⧇ NTP āϏāĻ‚āĻ¸ā§āĻĨāĻžāĻĒāύ āϕ⧰āĻ• (āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ)āĻļ⧇āĻĄā§‹ āĻĒāĻžāĻ›ā§ąāĻžā§°ā§āĻĄāĻāχ āϏāĻšāĻžā§Ÿ āĻŦāĻžā§°ā§āϤāĻž āĻĻ⧇āĻ–ā§ā§ąāĻžāĻ“āĻ• āφ⧰⧁ āĻĒā§ā§°āĻ¸ā§āĻĨāĻžāύ āϕ⧰āĻ•IPAv2 āĻĄāĻŽā§‡āχāύ āϝāĻžā§° āϚāĻŋāĻ¸ā§āĻŸā§‡āĻŽ āĻāϟāĻž āĻ…āĻ‚āĻļ āĻšāĻŦ āϞāĻžāĻ—āĻŋāĻŦwinbindusedefaultdomain āϏāĻžāĻŽā§°ā§āĻĨāĻŦāĻžāύ āύāϕ⧰āĻž āĻĨāĻžāĻ•āĻŋāϞ⧇, winbind ā§° āĻĻā§āĻŦāĻžā§°āĻž āύāĻŋā§°ā§āĻŽāĻŋāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āύāĻžāĻŽā§° āĻŽāĻžāϜāϤ āĻĄāĻŽā§‡āχāύ āφ⧰⧁ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ…āĻ‚āĻļ āϝ⧇ āĻ…āĻ•ā§āώ⧰ āĻĻā§āĻŦāĻžā§°āĻž āĻŦāĻŋāĻ­āĻžāϜāĻŋāϤ āĻš'āĻŦwinbind ā§° āĻĻā§āĻŦāĻžā§°āĻž āύāĻŋā§°ā§āĻŽāĻŋāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ•ā§āώ⧇āĻ¤ā§ā§°āϤ āĻŦā§āϝāĻ•ā§āϤāĻŋāĻ—āϤ āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋ ā§°ā§‚āĻĒ⧇ āĻŦā§āĻ¯ā§ąāĻšā§ƒāϤ āĻĄāĻžāχ⧰⧇āĻ•āϟ⧰āĻŋIPAv2 āĻĄāĻŽā§‡āχāύ⧰ ā§°āĻžāĻœā§āϝIPAv2 āĻĄāĻŽā§‡āχāύ⧰ āĻŦāĻžāĻŦ⧇ āϚāĻžā§°ā§āĻ­āĻžā§°winbind ā§° āĻĻā§āĻŦāĻžā§°āĻž āύāĻŋā§°ā§āĻŽāĻŋāϤ āĻŦā§āĻ¯ā§ąāĻšāĻžā§°āĻ•āĻžā§°ā§€ā§° āĻ•ā§āώ⧇āĻ¤ā§ā§°āϤ āϞāĻ—āĻŋāύ āĻļ⧇āϞ ā§°ā§‚āĻĒ⧇ āĻŦā§āĻ¯ā§ąāĻšā§ƒāϤ āĻļ⧇āϞāĻĄāĻŽā§‡āχāύāϞ⧈ āĻŦāĻž ads users uid ā§° āĻĒā§°āĻŋāϏ⧰ āĻŦāĻŋāϤ⧰āĻŖ āϕ⧰āĻž āĻš'āĻŦāĻ…āĻĒā§ā§°āĻ¤ā§āϝāĻžāĻļāĻŋāϤ āĻ¤ā§°ā§āĻ•āϏāĻ•āϞ⧋ āϏāς⧰⧂āĻĒ āĻĢāĻžāχāϞ āωāĻ¨ā§āύāϤ āϕ⧰āĻž āĻš'āĻŦāĻŦā§āĻ¯ā§ąāĻšāĻžā§°: %s [āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāϏāĻŽā§‚āĻš]SSSD āĻ• āĻ…āĻ­ā§āϝāĻ¨ā§āϤ⧰āĻŋāĻ•āĻ­āĻžā§ąā§‡ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻ• āϝāĻĻāĻŋ āχ āϏāς⧰⧂āĻĒāĻŸā§‹ āϏāĻŽā§°ā§āĻĨāύ āϕ⧰⧇winbind āĻ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϤ āϕ⧰āĻŋāĻŦāϞ⧈ Kerberos 5 āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻŋāĻŦwinbind āĻ āĻ…āĻŦāĻŋāĻ•āĻ˛ā§āĻĒāĻŋāϤ āĻĒā§ā§°āĻŽāĻžāĻŖā§€āϕ⧰āĻŖ āĻĒāĻĻā§āϧāϤāĻŋ āĻŦā§āĻ¯ā§ąāĻšāĻžā§° āϕ⧰āĻŋāĻŦā§ąā§°ā§āĻ•āĻ—ā§ā§°ā§āĻĒ āĻ…āύ⧁āĻŽā§‹āĻĻāύ⧰ āϚāĻžā§°ā§āĻ­āĻžā§° āωāĻ˛ā§āϞāĻŋāĻ–āĻŋāϤ āĻ¸ā§āĻĨāĻžāύāϤ āφāϛ⧇