chagood пре 2 година
родитељ
комит
62f4797e57
2 измењених фајлова са 7 додато и 32 уклоњено
  1. 1 30
      UbuntuJoinDomain.sh
  2. 6 2
      config.sh

+ 1 - 30
UbuntuJoinDomain.sh

@@ -19,10 +19,6 @@ sudo DEBIAN_FRONTEND=noninteractive apt upgrade -y
 sudo DEBIAN_FRONTEND=noninteractive apt update
 sudo DEBIAN_FRONTEND=noninteractive apt install -y realmd libnss-sss libpam-sss sssd sssd-tools adcli samba-common-bin oddjob oddjob-mkhomedir packagekit
 
-# Install any additional software
-# Required packages for Ninja
-# sudo DEBIAN_FRONTEND=noninteractive apt install -y net-tools network-manager policycoreutils
-
 # Load configuration file
 source config.sh
 
@@ -37,12 +33,7 @@ sudo hostnamectl set-hostname "$NEW_HOSTNAME"
 echo "127.0.0.1 localhost" | sudo tee /etc/hosts
 echo "$(hostname -I | cut -d' ' -f1) $HOST $NEW_HOSTNAME" | sudo tee -a /etc/hosts
 
-# Update and install required packages
-#sudo apt update
-#sudo apt install -y realmd libnss-sss libpam-sss sssd sssd-tools adcli samba-common-bin oddjob oddjob-mkhomedir packagekit
-
 # Join the domain
-#echo "$ADMINPASS" | sudo -S realm join --user="$ADMINUSER" --computer-ou="$OU" "$DOMAIN"
 sudo -S realm join --user="$ADMINUSER" --computer-ou="$OU" "$DOMAIN"
 #work in progress - --computer-desc="$COMPUTER_DESC"
 
@@ -71,40 +62,20 @@ sudo realm deny --all
 # Allow login to domain groups
 sudo realm permit -g "Domain Admins"
 sudo realm permit -g "AnsibleAdmins"
-# sudo realm permit -g "Access - Admin - All Servers"
-# sudo realm permit -g "Access - Admin - $HOST"
 
 # Set up sudoers file
 echo "%Domain\ Admins     ALL=(ALL:ALL)   ALL" | sudo tee /etc/sudoers.d/LocalAdmins > /dev/null
 echo "%AnisbleAdmins     ALL=(ALL)   ALL" | sudo tee -a /etc/sudoers.d/LocalAdmins > /dev/null
-# echo "%Access\ -\ Admin\ -\ $HOST     ALL=(ALL)   ALL" | sudo tee -a /etc/sudoers.d/LocalAdmins > /dev/null
 echo "ansible  ALL=(ALL) NOPASSWD:ALL" | sudo tee -a /etc/sudoers.d/LocalAdmins > /dev/null
 
-# copy file from SCP server to local system
-# sudo scp -r anonymous@ptiwa001:ninja-agent.deb ~/
-
-# install package using dpkg
-# sudo dpkg -i ninja-agent.deb
-
-# copy file from SCP server to local system
-# sudo scp -r anonymous@ptiwa001:falcon-sensor_6.46.0-14306.deb ~/
-
-# install package using dpkg
-# sudo dpkg -i falcon-sensor_6.46.0-14306.deb
- 
-# Run the additional command
-# sudo /opt/CrowdStrike/falconctl -s --cid=D0511099B3FF494D8B87F48C4AB90201-56 
-
 # Remove packages that are not required
 sudo apt autoremove -y
 
 # Start Services
 sudo systemctl restart sssd
-# sudo systemctl start ninjarmm-agent.service
-# sudo systemctl start falcon-sensor
 
 # check the status of the services
-# sudo systemctl | grep -E 'falcon-sensor|ninjarmm-agent|sssd.service'
+sudo systemctl | grep -E 'sssd.service'
 
 # Query user and print message
 id chagood && echo "Successfully queried Active Directory for user chagood"

+ 6 - 2
config.sh

@@ -2,11 +2,15 @@
 
 # Set the domain name and new hostname
 ADMIN_USER="uname"
-# ADMIN_PASSWORD="admin_password"
 # Hostname with FDQN
 NEW_HOSTNAME="newhostname.ad.hagood.us"
 # Short name
 HOST="hostname"
 DOMAIN="ad.hagood.us"
+OU="OU=Linux,OU=Domain Servers,DC=AD,DC=HAGOOD,DC=US"
+# Use Distinguished Name
+
+
+#Stuff to work on
 #DOMAIN_DESC="My domain description"
-OU="Paste destination OU"
+