This topic describes how to join the mount target of a Server Message Block (SMB) file system of Apsara File Storage NAS to an Active Directory (AD) domain. After the mount target of an SMB file system is joined to an AD domain, you can control access to files and directories in the SMB file system based on the AD users.
Background information
Before you use an AD account to mount an SMB file system, you must perform the following
steps: create a service account for NAS, register the domain name of the mount target,
and then create and upload a keytab file.
Note You could Join the mount target of an SMB file system to an AD domain.If the SMB ACL feature is not supported in the region where your SMB fie system resides,
submit a ticket. You can also submit a ticket to raise questions about how to upload keytab files,
join a mount target to an AD domain, and enable the SMB ACL feature.
Prerequisites
- The Active Directory Domain Services and DNS Server roles are installed and configured. For more information, see Install and configure the Active Directory Services and DNS Server roles.
- An SMB file system is created. For more information, see Create a file system.