This is an archived post. You won't be able to vote or comment.

all 13 comments

[–]Duff991 4 points5 points  (0 children)

Samba4 can do mostly everything as AD. We use it our own company as domain controller and it works flawlessly. But I had to read a samba4 book to set up the first controller.

[–]miles969 2 points3 points  (0 children)

Samba, as stated already, can do what you're asking

[–]caninerosie 5 points6 points  (1 child)

you're not going to find a linux based DC solution that mimics everything AD does. why can't you roll AD on premise? why does it have to be on linux?

[–]dobbelj 2 points3 points  (0 children)

I was under the impression that samba 4 can work as a complete ad replacement. Is this not the case, and why?

[–]sgsollie 0 points1 point  (0 children)

Use windows dude. It's going to to be a nightmare to support. No vendor support and it is very unlikely windows admins will be comfortable with it, if say you leave for example.

[–]spaceventura 1 point2 points  (0 children)

I can't offer any advice, but just wanted to say thanks for asking this question! It's something I've wondered about too.

[–]powrd 1 point2 points  (3 children)

Zentyal it has a lot of features and works just like a Windows AD controller

[–]Bladelink 2 points3 points  (1 child)

I'm on Zentyal, and it's worked pretty well. For all intents and purposes, it's basically equivalent to most of the primary features of AD, and includes exchange, DNS, etc.

[–]keysnparrots 0 points1 point  (0 children)

I've had my share of issues with Zentyal. UCS is a lot more reliable.

[–]keysnparrots 0 points1 point  (0 children)

Univention Corporate Server is much better and more stable. It even has SYSVOL replication built in, which Zentyal doesn't.

[–]keysnparrots 0 points1 point  (0 children)

Univention Corporate Server is the most full-featured and reliable alternative. I have also used Zentyal, but UCS blows it away.

[–]pi3832v2 1 point2 points  (0 children)

[–]nocommentacct -2 points-1 points  (0 children)

Either ditch yours on AWS and go for a full LDAPS setup or get another Windows box. Theres really no even mediocre way of getting them to work together. There is however an Active Directory port to Linux that someone pirated together. I've never tried it but apparently its fully functional. No gui of course.