3 # Unix SMB/CIFS implementation.
4 # provision a Samba4 server
5 # Copyright (C) Jelmer Vernooij <jelmer@samba.org> 2007-2008
6 # Copyright (C) Andrew Bartlett <abartlet@samba.org> 2008
7 # Copyright (C) Oliver Liebel <oliver@itc.li> 2008-2009
9 # Based on the original in EJS:
10 # Copyright (C) Andrew Tridgell 2005
12 # This program is free software; you can redistribute it and/or modify
13 # it under the terms of the GNU General Public License as published by
14 # the Free Software Foundation; either version 3 of the License, or
15 # (at your option) any later version.
17 # This program is distributed in the hope that it will be useful,
18 # but WITHOUT ANY WARRANTY; without even the implied warranty of
19 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
20 # GNU General Public License for more details.
22 # You should have received a copy of the GNU General Public License
23 # along with this program. If not, see <http://www.gnu.org/licenses/>.
28 sys.path.insert(0, "bin/python")
34 from samba import param
36 from samba.auth import system_session
37 import samba.getopt as options
38 from samba.provision import provision_backend, find_setup_dir
40 parser = optparse.OptionParser("provision [options]")
41 sambaopts = options.SambaOptions(parser)
42 parser.add_option_group(sambaopts)
43 parser.add_option_group(options.VersionOptions(parser))
44 credopts = options.CredentialsOptions(parser)
45 parser.add_option_group(credopts)
46 parser.add_option("--setupdir", type="string", metavar="DIR",
47 help="directory with setup files")
48 parser.add_option("--realm", type="string", metavar="REALM", help="set realm")
49 parser.add_option("--domain", type="string", metavar="DOMAIN",
51 parser.add_option("--host-name", type="string", metavar="HOSTNAME",
53 parser.add_option("--ldap-admin-pass", type="string", metavar="PASSWORD",
54 help="choose LDAP admin password (otherwise random)")
55 parser.add_option("--root", type="string", metavar="USERNAME",
56 help="choose 'root' unix username")
57 parser.add_option("--quiet", help="Be quiet", action="store_true")
58 parser.add_option("--nosync", help="Configure LDAP backend not to call fsync() (for performance in test environments)", action="store_true")
59 parser.add_option("--ldap-backend-type", type="choice", metavar="LDAP-BACKEND-TYPE",
60 help="LDB mapping module to use for the LDAP backend",
61 choices=["fedora-ds", "openldap"])
62 parser.add_option("--ldap-backend-port", type="int", metavar="PORT",
63 help="TCP Port LDAP server should listen to (default ldapi only)")
64 parser.add_option("--server-role", type="choice", metavar="ROLE",
65 choices=["domain controller", "dc", "member server", "member", "standalone"],
66 help="Set server role to provision for (default standalone)")
67 parser.add_option("--targetdir", type="string", metavar="DIR",
68 help="Set target directory")
69 parser.add_option("--ol-mmr-urls", type="string", metavar="LDAPSERVER",
70 help="List of LDAP-URLS [ ldap://<FQHN>:<PORT>/ (where <PORT> has to be different than 389!) ] separated with whitespaces for use with OpenLDAP-MMR (Multi-Master-Replication)")
71 parser.add_option("--ol-olc", type="choice", metavar="OPENLDAP-OLC",
72 help="To setup OpenLDAP-Backend with Online-Configuration [slapd.d] choose 'yes'.",
73 choices=["yes", "no"])
74 parser.add_option("--ol-slapd", type="string", metavar="SLAPD-PATH",
75 help="Path to OpenLDAP-Daemon (slapd) [e.g.:'/usr/local/libexec']. Recommended for Setup with OpenLDAP-Backend. OpenLDAP Version >= 2.4.17 should be used.")
77 opts = parser.parse_args()[0]
80 """print a message if quiet is not set."""
84 if opts.realm is None or opts.domain is None:
85 if opts.realm is None:
86 print >>sys.stderr, "No realm set"
87 if opts.domain is None:
88 print >>sys.stderr, "No domain set"
92 smbconf = sambaopts.get_loadparm().configfile
94 if opts.server_role == "dc":
95 server_role = "domain controller"
96 elif opts.server_role == "member":
97 server_role = "member server"
99 server_role = opts.server_role
101 setup_dir = opts.setupdir
102 if setup_dir is None:
103 setup_dir = find_setup_dir()
105 provision_backend(setup_dir=setup_dir, message=message, smbconf=smbconf, targetdir=opts.targetdir,
106 realm=opts.realm, domain=opts.domain,
107 hostname=opts.host_name,
108 adminpass=opts.ldap_admin_pass,
109 root=opts.root, serverrole=server_role,
110 ldap_backend_type=opts.ldap_backend_type,
111 ldap_backend_port=opts.ldap_backend_port,
112 ol_mmr_urls=opts.ol_mmr_urls,
114 ol_slapd=opts.ol_slapd,