- Timestamp:
- May 26, 2009, 9:43:19 AM (17 years ago)
- File:
-
- 1 edited
Legend:
- Unmodified
- Added
- Removed
-
branches/samba-3.2.x/docs/htmldocs/Samba3-HOWTO/AdvancedNetworkManagement.html
r204 r226 1 <html><head><meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1"><title>Chapter 25. Advanced Network Management</title><link rel="stylesheet" href="../samba.css" type="text/css"><meta name="generator" content="DocBook XSL Stylesheets V1.73.1"><link rel="start" href="index.html" title="The Official Samba 3.2.x HOWTO and Reference Guide"><link rel="up" href="optional.html" title="Part III. Advanced Configuration"><link rel="prev" href="winbind.html" title="Chapter 24. Winbind: Use of Domain Accounts"><link rel="next" href="PolicyMgmt.html" title="Chapter 26. System and Account Policies"></head><body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF"><div class="navheader"><table width="100%" summary="Navigation header"><tr><th colspan="3" align="center">Chapter 25. Advanced Network Management</th></tr><tr><td width="20%" align="left"><a accesskey="p" href="winbind.html">Prev</a> </td><th width="60%" align="center">Part III. Advanced Configuration</th><td width="20%" align="right"> <a accesskey="n" href="PolicyMgmt.html">Next</a></td></tr></table><hr></div><div class="chapter" lang="en"><div class="titlepage"><div><div><h2 class="title"><a name="AdvancedNetworkManagement"></a>Chapter 25. Advanced Network Management</h2></div><div><div class="author"><h3 class="author"><span class="firstname">John</span> <span class="othername">H.</span> <span class="surname">Terpstra</span></h3><div class="affiliation"><span class="orgname">Samba Team<br></span><div class="address"><p><code class="email"><<a class="email" href="mailto:[email protected]">[email protected]</a>></code></p></div></div></div></div><div><p class="pubdate">June 15 2005</p></div></div></div><div class="toc"><p><b>Table of Contents</b></p><dl><dt><span class="sect1"><a href="AdvancedNetworkManagement.html#id265061 7">Features and Benefits</a></span></dt><dt><span class="sect1"><a href="AdvancedNetworkManagement.html#id2650643">Remote Server Administration</a></span></dt><dt><span class="sect1"><a href="AdvancedNetworkManagement.html#id2650787">Remote Desktop Management</a></span></dt><dd><dl><dt><span class="sect2"><a href="AdvancedNetworkManagement.html#id2650815">Remote Management from NoMachine.Com</a></span></dt><dt><span class="sect2"><a href="AdvancedNetworkManagement.html#id2651190">Remote Management with ThinLinc</a></span></dt></dl></dd><dt><span class="sect1"><a href="AdvancedNetworkManagement.html#id2651375">Network Logon Script Magic</a></span></dt><dd><dl><dt><span class="sect2"><a href="AdvancedNetworkManagement.html#id2651601">Adding Printers without User Intervention</a></span></dt><dt><span class="sect2"><a href="AdvancedNetworkManagement.html#id2651644">Limiting Logon Connections</a></span></dt></dl></dd></dl></div><p>2 <a class="indexterm" name="id265060 5"></a>1 <html><head><meta http-equiv="Content-Type" content="text/html; charset=ISO-8859-1"><title>Chapter 25. Advanced Network Management</title><link rel="stylesheet" href="../samba.css" type="text/css"><meta name="generator" content="DocBook XSL Stylesheets V1.73.1"><link rel="start" href="index.html" title="The Official Samba 3.2.x HOWTO and Reference Guide"><link rel="up" href="optional.html" title="Part III. Advanced Configuration"><link rel="prev" href="winbind.html" title="Chapter 24. Winbind: Use of Domain Accounts"><link rel="next" href="PolicyMgmt.html" title="Chapter 26. System and Account Policies"></head><body bgcolor="white" text="black" link="#0000FF" vlink="#840084" alink="#0000FF"><div class="navheader"><table width="100%" summary="Navigation header"><tr><th colspan="3" align="center">Chapter 25. Advanced Network Management</th></tr><tr><td width="20%" align="left"><a accesskey="p" href="winbind.html">Prev</a> </td><th width="60%" align="center">Part III. Advanced Configuration</th><td width="20%" align="right"> <a accesskey="n" href="PolicyMgmt.html">Next</a></td></tr></table><hr></div><div class="chapter" lang="en"><div class="titlepage"><div><div><h2 class="title"><a name="AdvancedNetworkManagement"></a>Chapter 25. Advanced Network Management</h2></div><div><div class="author"><h3 class="author"><span class="firstname">John</span> <span class="othername">H.</span> <span class="surname">Terpstra</span></h3><div class="affiliation"><span class="orgname">Samba Team<br></span><div class="address"><p><code class="email"><<a class="email" href="mailto:[email protected]">[email protected]</a>></code></p></div></div></div></div><div><p class="pubdate">June 15 2005</p></div></div></div><div class="toc"><p><b>Table of Contents</b></p><dl><dt><span class="sect1"><a href="AdvancedNetworkManagement.html#id265061">Limiting Logon Connections</a></span></dt></dl></dd></dl></div><p> 2 <a class="indexterm" name="id265060"></a> 3 3 This section documents peripheral issues that are of great importance to network 4 4 administrators who want to improve network resource access control, to automate the user 5 5 environment, and to make their lives a little easier. 6 </p><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id265061 7"></a>Features and Benefits</h2></div></div></div><p>6 </p><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id265061"></a>Features and Benefits</h2></div></div></div><p> 7 7 Often the difference between a working network environment and a well-appreciated one can 8 8 best be measured by the <span class="emphasis"><em>little things</em></span> that make everything work more … … 14 14 This chapter presents information on each of these areas. They are placed here, and not in 15 15 other chapters, for ease of reference. 16 </p></div><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id26506 43"></a>Remote Server Administration</h2></div></div></div><p>“<span class="quote">How do I get User Manager and Server Manager?</span>”</p><p>17 <a class="indexterm" name="id265065 7"></a>18 <a class="indexterm" name="id26506 64"></a>19 <a class="indexterm" name="id26506 71"></a>16 </p></div><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id26506"></a>Remote Server Administration</h2></div></div></div><p>“<span class="quote">How do I get User Manager and Server Manager?</span>”</p><p> 17 <a class="indexterm" name="id265065"></a> 18 <a class="indexterm" name="id26506"></a> 19 <a class="indexterm" name="id26506"></a> 20 20 Since I do not need to buy an <span class="application">NT4 server</span>, how do I get the User Manager for Domains 21 21 and the Server Manager? 22 22 </p><p> 23 <a class="indexterm" name="id265068 8"></a>24 <a class="indexterm" name="id265069 5"></a>23 <a class="indexterm" name="id265068"></a> 24 <a class="indexterm" name="id265069"></a> 25 25 Microsoft distributes a version of these tools called <code class="filename">Nexus.exe</code> for installation 26 26 on <span class="application">Windows 9x/Me</span> systems. The tools set includes: … … 28 28 Download the archived file at the Microsoft <a class="ulink" href="ftp://ftp.microsoft.com/Softlib/MSLFILES/NEXUS.EXE" target="_top">Nexus</a> link. 29 29 </p><p> 30 <a class="indexterm" name="id265074 9"></a>31 <a class="indexterm" name="id265075 6"></a>32 <a class="indexterm" name="id26507 63"></a>30 <a class="indexterm" name="id265074"></a> 31 <a class="indexterm" name="id265075"></a> 32 <a class="indexterm" name="id26507"></a> 33 33 The <span class="application">Windows NT 4.0</span> version of the User Manager for 34 34 Domains and Server Manager are available from Microsoft 35 35 <a class="ulink" href="ftp://ftp.microsoft.com/Softlib/MSLFILES/SRVTOOLS.EXE" target="_top">via ftp</a>. 36 </p></div><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id265078 7"></a>Remote Desktop Management</h2></div></div></div><p>37 <a class="indexterm" name="id265079 5"></a>38 <a class="indexterm" name="id2650 802"></a>36 </p></div><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id265078"></a>Remote Desktop Management</h2></div></div></div><p> 37 <a class="indexterm" name="id265079"></a> 38 <a class="indexterm" name="id2650"></a> 39 39 There are a number of possible remote desktop management solutions that range from free 40 40 through costly. Do not let that put you off. Sometimes the most costly solution is the 41 41 most cost effective. In any case, you will need to draw your own conclusions as to which 42 42 is the best tool in your network environment. 43 </p><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id265081 5"></a>Remote Management from NoMachine.Com</h3></div></div></div><p>44 <a class="indexterm" name="id26508 23"></a>43 </p><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id265081"></a>Remote Management from NoMachine.Com</h3></div></div></div><p> 44 <a class="indexterm" name="id26508"></a> 45 45 The following information was posted to the Samba mailing list at Apr 3 23:33:50 GMT 2003. 46 46 It is presented in slightly edited form (with author details omitted for privacy reasons). 47 47 The entire answer is reproduced below with some comments removed. 48 48 </p><p>“<span class="quote"> 49 <a class="indexterm" name="id265083 9"></a>49 <a class="indexterm" name="id265083"></a> 50 50 I have a wonderful Linux/Samba server running as PDC for a network. Now I would like to add remote 51 51 desktop capabilities so users outside could login to the system and get their desktop up from home or 52 52 another country. 53 53 </span>”</p><p>“<span class="quote"> 54 <a class="indexterm" name="id265085 4"></a>55 <a class="indexterm" name="id26508 61"></a>56 <a class="indexterm" name="id265086 8"></a>57 <a class="indexterm" name="id265087 4"></a>54 <a class="indexterm" name="id265085"></a> 55 <a class="indexterm" name="id26508"></a> 56 <a class="indexterm" name="id265086"></a> 57 <a class="indexterm" name="id265087"></a> 58 58 Is there a way to accomplish this? Do I need a Windows Terminal server? Do I need to configure it so 59 59 it is a member of the domain or a BDC or PDC? Are there any hacks for MS Windows XP to enable remote login … … 63 63 <a class="ulink" href="http://www.nomachine.com/" target="_top">NoMachine</a>. 64 64 </p><p> 65 <a class="indexterm" name="id265090 5"></a>66 <a class="indexterm" name="id26509 12"></a>67 <a class="indexterm" name="id265091 9"></a>65 <a class="indexterm" name="id265090"></a> 66 <a class="indexterm" name="id26509"></a> 67 <a class="indexterm" name="id265091"></a> 68 68 It implements an easy-to-use interface to the Remote X protocol as 69 69 well as incorporating VNC/RFB and rdesktop/RDP into it, but at a speed 70 70 performance much better than anything you may have ever seen. 71 71 </p><p> 72 <a class="indexterm" name="id26509 32"></a>72 <a class="indexterm" name="id26509"></a> 73 73 Remote X is not new at all, but what they did achieve successfully is 74 74 a new way of compression and caching technologies that makes the thing 75 75 fast enough to run even over slow modem/ISDN connections. 76 76 </p><p> 77 <a class="indexterm" name="id265094 6"></a>78 <a class="indexterm" name="id26509 53"></a>79 <a class="indexterm" name="id26509 60"></a>80 <a class="indexterm" name="id265096 6"></a>77 <a class="indexterm" name="id265094"></a> 78 <a class="indexterm" name="id26509"></a> 79 <a class="indexterm" name="id26509"></a> 80 <a class="indexterm" name="id265096"></a> 81 81 I test drove their (public) Red Hat machine in Italy, over a loaded 82 82 Internet connection, with enabled thumbnail previews in KDE konqueror, … … 86 86 that my score was 631,750 points at first try. 87 87 </p><p> 88 <a class="indexterm" name="id265098 5"></a>89 <a class="indexterm" name="id26509 92"></a>90 <a class="indexterm" name="id265099 9"></a>91 <a class="indexterm" name="id265100 6"></a>88 <a class="indexterm" name="id265098"></a> 89 <a class="indexterm" name="id26509"></a> 90 <a class="indexterm" name="id265099"></a> 91 <a class="indexterm" name="id265100"></a> 92 92 NX performs better on my local LAN than any of the other “<span class="quote">pure</span>” 93 93 connection methods I use from time to time: TightVNC, rdesktop or … … 95 95 two nodes. 96 96 </p><p> 97 <a class="indexterm" name="id26510 23"></a>98 <a class="indexterm" name="id26510 30"></a>99 <a class="indexterm" name="id265103 6"></a>97 <a class="indexterm" name="id26510"></a> 98 <a class="indexterm" name="id26510"></a> 99 <a class="indexterm" name="id265103"></a> 100 100 I even got sound playing from the Remote X app to my local boxes, and 101 101 had a working “<span class="quote">copy'n'paste</span>” from an NX window (running a KDE session … … 119 119 at all). 120 120 </p><p> 121 <a class="indexterm" name="id265108 6"></a>121 <a class="indexterm" name="id265108"></a> 122 122 Now the best thing for last: All the core compression and caching 123 123 technologies are released under the GPL and available as source code … … 141 141 but you can buy a comfortable (proprietary) NX GUI front end for money. 142 142 </p></li><li><p> 143 <a class="indexterm" name="id26511 50"></a>144 <a class="indexterm" name="id265115 6"></a>145 <a class="indexterm" name="id26511 63"></a>146 <a class="indexterm" name="id265116 9"></a>147 <a class="indexterm" name="id265117 6"></a>143 <a class="indexterm" name="id26511"></a> 144 <a class="indexterm" name="id265115"></a> 145 <a class="indexterm" name="id26511"></a> 146 <a class="indexterm" name="id265116"></a> 147 <a class="indexterm" name="id265117"></a> 148 148 NoMachine is encouraging and offering help to OSS/Free Software implementations 149 149 for such a front-end too, even if it means competition to them (they have written 150 150 to this effect even to the LTSP, KDE, and GNOME developer mailing lists). 151 </p></li></ul></div></div><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id26511 90"></a>Remote Management with ThinLinc</h3></div></div></div><p>151 </p></li></ul></div></div><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id26511"></a>Remote Management with ThinLinc</h3></div></div></div><p> 152 152 Another alternative for remote access is <span class="emphasis"><em>ThinLinc</em></span> from Cendio. 153 153 </p><p> 154 <a class="indexterm" name="id265120 6"></a>155 <a class="indexterm" name="id26512 13"></a>156 <a class="indexterm" name="id26512 20"></a>157 <a class="indexterm" name="id265122 7"></a>158 <a class="indexterm" name="id26512 34"></a>159 <a class="indexterm" name="id26512 40"></a>160 <a class="indexterm" name="id265124 7"></a>161 <a class="indexterm" name="id26512 53"></a>154 <a class="indexterm" name="id265120"></a> 155 <a class="indexterm" name="id26512"></a> 156 <a class="indexterm" name="id26512"></a> 157 <a class="indexterm" name="id265122"></a> 158 <a class="indexterm" name="id26512"></a> 159 <a class="indexterm" name="id26512"></a> 160 <a class="indexterm" name="id265124"></a> 161 <a class="indexterm" name="id26512"></a> 162 162 ThinLinc is a terminal server solution that is available for Linux and Solaris based on standard 163 163 protocols such as SSH, TightVNC, NFS and PulseAudio. 164 164 </p><p> 165 <a class="indexterm" name="id265126 6"></a>166 <a class="indexterm" name="id26512 73"></a>165 <a class="indexterm" name="id265126"></a> 166 <a class="indexterm" name="id26512"></a> 167 167 ThinLinc an be used both in the LAN environment to implement a Thin Client strategy for an organization, and as 168 168 secure remote access solution for people working from remote locations, even over smallband connections. 169 169 ThinLinc is free to use for a single concurrent user. 170 170 </p><p> 171 <a class="indexterm" name="id265128 7"></a>172 <a class="indexterm" name="id265129 4"></a>173 <a class="indexterm" name="id2651 301"></a>171 <a class="indexterm" name="id265128"></a> 172 <a class="indexterm" name="id265129"></a> 173 <a class="indexterm" name="id2651"></a> 174 174 The product can also be used as a frontend to access Windows Terminal Server or Citrix farms, or even Windows 175 175 XP machines, securing the connection via the ssh protocol. The client is available both for Linux (supporting … … 186 186 <a class="ulink" href="http://www.python.org" target="_top">Python</a> and 187 187 <a class="ulink" href="http://www.rdesktop.org" target="_top">rdesktop</a>. 188 </p></div></div><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id265137 5"></a>Network Logon Script Magic</h2></div></div></div><p>188 </p></div></div><div class="sect1" lang="en"><div class="titlepage"><div><div><h2 class="title" style="clear: both"><a name="id265137"></a>Network Logon Script Magic</h2></div></div></div><p> 189 189 There are several opportunities for creating a custom network startup configuration environment. 190 190 </p><div class="itemizedlist"><ul type="disc"><li><p>No Logon Script.</p></li><li><p>Simple universal Logon Script that applies to all users.</p></li><li><p>Use of a conditional Logon Script that applies per-user or per-group attributes.</p></li><li><p>Use of Samba's preexec and postexec functions on access to the NETLOGON share to create … … 196 196 The following listings are from the genlogon directory. 197 197 </p><p> 198 <a class="indexterm" name="id265144 6"></a>198 <a class="indexterm" name="id265144"></a> 199 199 This is the <code class="filename">genlogon.pl</code> file: 200 200 … … 275 275 </p><p> 276 276 Those wishing to use a more elaborate or capable logon processing system should check out these sites: 277 </p><div class="itemizedlist"><ul type="disc"><li><p><a class="ulink" href="http://www.craigelachie.org/rhacer/ntlogon" target="_top">http://www.craigelachie.org/rhacer/ntlogon</a></p></li><li><p><a class="ulink" href="http://www.kixtart.org" target="_top">http://www.kixtart.org</a></p></li></ul></div><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id2651 601"></a>Adding Printers without User Intervention</h3></div></div></div><p>278 <a class="indexterm" name="id265160 9"></a>277 </p><div class="itemizedlist"><ul type="disc"><li><p><a class="ulink" href="http://www.craigelachie.org/rhacer/ntlogon" target="_top">http://www.craigelachie.org/rhacer/ntlogon</a></p></li><li><p><a class="ulink" href="http://www.kixtart.org" target="_top">http://www.kixtart.org</a></p></li></ul></div><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id2651"></a>Adding Printers without User Intervention</h3></div></div></div><p> 278 <a class="indexterm" name="id265160"></a> 279 279 Printers may be added automatically during logon script processing through the use of: 280 280 </p><pre class="screen"> … … 283 283 284 284 See the documentation in the <a class="ulink" href="http://support.microsoft.com/default.asp?scid=kb;en-us;189105" target="_top">Microsoft Knowledge Base article 189105</a>. 285 </p></div><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id265164 4"></a>Limiting Logon Connections</h3></div></div></div><p>285 </p></div><div class="sect2" lang="en"><div class="titlepage"><div><div><h3 class="title"><a name="id265164"></a>Limiting Logon Connections</h3></div></div></div><p> 286 286 Sometimes it is necessary to limit the number of concurrent connections to a 287 287 Samba shared resource. For example, a site may wish to permit only one network
Note:
See TracChangeset
for help on using the changeset viewer.
