Escolar Documentos
Profissional Documentos
Cultura Documentos
!"$# %&#('
)+*(,.-0/214365879*:,.;6)(<>=@?(AB79;C;D?FEHGI?JK3MLBNO3QPA
RTSVUXWY[ZB\^]`_baY&ZBc dVUBe0Y&_ fgShZji$elkbSnm
opBqsrnt[uruXvjwQrvxu.yluz{vjq|rB}:th~qzBth
F}:qsz{:wQIwl:srBqrBwQqsrBI8
lsz8q|srBwlvj}Fz{uwlsr(uu.wQru.HqrBzuyyluwlrnzupIqzpurnt[uwQrI8uwQr
lqs
uHzuqwQyQq+rnqupnt[upBwQrBq(pB}lnj}:wQHyQxzq
FyluqVyluz{vq
Qw Qy q + nr Bp q ¡ Ir sq 8z Br sq I u r ¢ .u Br :} ht ~ q z B [t z Vq jv sq Br q {z u y
r u ht q l q z Qw q : £ sq 8z ¤q sq q ly F
q V V l sq 8z q [t s 8z |q ly Hu y Br sq q : K ¥ F} r §¦
/etc/hosts
F¨ :© ¬ª « 8 ® lw : F
{z (~ u ~ Qy V Bp |q ~ q l I r n£ Br X ~ F} ±¯ ³° ² D´ Hµ X¶ 8· ¸ º¹ ( s q + »u l Qw ¼t Qw ly u z
½ s ¾~ u r V F
z :y l F} Qw q + l F} p Xu F ¿ « ® u r « ° À Á 8 ±Â ® u ly K Qw Br H ¬y } q
r u ht q l q z Qw H q + s Br Vq K s 8z à z u r Bp q z
: Bp q [t s 8z ¤q jv q Br sq {z u y r u ht q l q z Qw q + l F} :
s 8z à .u Br :} ht ~ q z ÅÄ [t u +
K Ŧ X q u H p
s 2 n£ Bp Qw H np {z u r l ly u q : {z Æt sq Ç : 8 | > u Qy :} q ÉÈ n ¡ l q z Qw r Ëv ±Ê Br Qw Ì
[t u H Bp Qw Br q : p Xu : [t u
+ l :} H p Xu :
Xu K l ͣ jv z F} :
u F} 8 s [t F} Br I l sq 8z Qw H q l
u r ¤ 8z F
¤Î q nr Bp sq 8z Vq u z q £ V Ãz [t z q sq x Qw q ly : : Qw r Ïu [t u
Ð Bp q
Xu K l £ ¤ &t u Ñ
8 Ãz q BÌ u ht F
Qy q p Xu : V Ò q 8z Qw |q ly :}
: Ç~ s np ~ x } l q z r u ht q
u r ¤ ~ x F} lw : H u .u lw + u H q K l q V n£ Qw np Bp Vq K u ht q Qy Qw ~ {z u z x u Qy ly : p u s 8z lw v Qw Ó
r u Qy Qy x p u r Qy q ¤ ly u y Qw Qy q l K [t l u F
F
Qy Qw u lw nr F
z jv z u [t + Hu z q r s
u £ u z q p u I Ip q :} Ãr sq 8z Qy Qw Ãr xv l {z Xu v q p Xu : H p u r jv q :
ÉÈ Br q £ z x +} l Qw r xv .u n ¡ z q Qy Qw q + nr Qw I ht F
¬y sq q Qy x 8 Ãz r 8z [t u y
s F
q {z u lw r K | [t Hu Qw Br u Qw Br Qw r Ëv Qw : Qw Br q jv z Qw V 0w : Qw u ly TÔ l B n l Ç l q [t : Qw r
} l q ( u x p u q sq 8z x Qy Qw Qy q F
z q H lw r Xu v u Qw r l à Hu H Qw ¤q Hu u H q z K Ð Bp q
q F
sq r Õ nr Bp q ×Ö Xu : z q K + B Bp Vq l sq 8z sq z ~ q Qw r Ëv n£ lw q Qy x r s £ r u r
Xu K l F} ht q p u I r (~ V p Xu ( u sq r sq z Qw + Xu ( 8z q K K H : Bp lw : lw + ~ lw } l Qy
Qw r l sq H :} z q Qw r .u £ z 0y ¤ n£ Bp q z q : Ø ÑÖ s Br Br q H lw r : u nr ~ |q Bp w ½ Hu H q Õ u à u
lw l u Br sq K V l Ç l q t q l lw jv Ir q {z + u z q :} z Br Qw r Ëv H 8z :
jv {z u F
Bp x
F
z lw Vq Xu K l F} {z u Br H q p u à v Õ : u 8 .u lw : ~ q Qw r Ëv } l q :
TR VS XU W [Y BZ \ ÛÙ nÚ BU ¢Ü hS n_ 2U le bk Vd 2U 0e [Y _ gf ¾S jZ $i 0e bk S
È :} Bp sq Br Qw u Qw r Ëv +} l sq {z : lw + Br ¤q B Ip q [t z q lw l Qw ~ Qy ¤q Xu l :
sq +
ht F
F} sq z l sq F} 8z Qw Ç :Ö q F
Qy Vq u z q +} l q V F
z lw Qw r Ëv +} l sq 8z r u ht q + u r
Xu K l £ z : : £ Bp sq nr Bp q x £ u Br I } l Vq .u [t u Ip Qw Br Vq z Bp sq z z q K F} z q
±Î Br Vq u F
F
z u H np 8 ¤ u :} Bp sq Br Qw u lw nr Qw r .u Br sq Í£ s 8z V lw + l Qw ht :
Qy V 8 | +} l |q Ip q
b ¡ V u H q K : s Br q Ir lw s r u y ±Ê Br Qw ÝÌ
Xu K l £ z V Ãp u l Ip q + u r ¤ 8 ¤ ( | Ip q
> u Qy lw : u lw nr ly u Qy Qy ¾ nr Bp Vq q l 8 s ¢
[t u H Bp Qw Br q : Bp lw + l Bp sq ht q lw
tht[srByQx}+lqV£nwQp ¨:©:ª¬«8® ~}FIwQl}Fqz(ztÆpuwQrvËt[uq
uyQy
uXKl£zVpuXlpBq+u>uwQylu~yQq|8¤uyQy:ql
Ñt[upBwQrBqK(pBqsz8qVuzq
lpÃu:£nÓ
uXKl£zÕÒpBqsthq:puI
Fz8qsqrBÃħz{wQruzǦ{}lqz:z{st
vqwQrvËpyl¢BpBqpuXlp:uuHX~}:IpBqlq¤uz8q|ÞuwQzyQxquXlV8|~
uXK
£npBqsrn}+lqV£nwQpuÏb ¡2owQpuHqK:Vu.syQyQqHwlsrB
u`l£Ísz{
puXlpIqlu.Hz{uHqzÃurnt[}FrBÃußwQHwlruz¾u8uHx£nwQpu»v
HpurBHqVl}FHqK+KwQI£Ís}:yl¤~q|~qsqszqsq
ÑpBqpuXlpBq+u£Íu
ztÆHyQwQqrBIt[uHHpBwQrBq(qsrBwQz8qyQ(
ÈrpBqszu
F
Fz{upnwl:|}+lq¤ußl
FqswluyQÓ
F}Fz8
lq¤u}:pBqsrBwQuwlr
Fzy:l}:HpuX:à+È ¡Êz:ȱØÈØ2áFH:pBqlq£nqsz8qVsz8wlvjwQruyQyQ
qqyl
FqVrBzy:uHqK:t[qtÆ~(urBÇlX~}FÃuz8q|qj}+uyQyQ
}Ku~yQq|£nwQpql8s
Ñsth
:}FqzKâqsz8~qz:wl+urspBqsz£uxV:
u}FpBqrBwQuwlsrn£nwQpÃ}FBqsÌ
+lwQrvxlqszqKÐpBwl+uylKpuX:pBq~qrBqswQ
s2
FzwlwQrvxu.th
FyQqqVlwQrvjyQqÓ8lwlvjrBÓ8rnqsrBwQz{rBthqsrBBwQBwQBwl:}Fy¬yQ
wQth
FyQqsthqrBq:ãqqsz{uy:pBqsz
Fzyl:puq|~qsqrn
Fz8qKlq¤wQrB
lqsz8wQHq8szu}FpIqrBwQuwlsrqzÃpBqquz{KÐãÔ[ä×uyQyl£+u}:pBqsrBwQuÓ
wlsruvuwQrlurnb$(st[uwQrBurV BpuqqsqrnpBquz{¢BÖ:α֢~qwQrv
}lq¤wQrnpIw0:£uÇå ¡Isthq+uX:rVl}Fz8
Fz8wllq|8|wQrVpuIæ(ÈÖ¢wl:r£
}lq¢uru}:pBqsrBwQuwlrn
Fzy:uX:£nqsyQyl
8quyQyQuÏrIq£z8ÕuH}FpBqrBwQuwlsrlqzwQq¤lp}FylV
Fz{swlq|z8qsyQwlu~yQq
url£nqsz{lX~q|8uXlur¢lp}FylV£zx£nwQps}:IqÌ
lwQrvxurBxwQrB8zt&uÓ
wlsruH~(}FIpBq|
u`l£Ísz{:(pBwl:wl:puz{qzÃpurnwQBwQzlBylÇluX:pBq
HyQwQqrI:q:rI£urBI8|qÌ
ÒqpBq
uXKl£zV|pBq¤lqzqzÃwQrnuÒq
pBqVÒqz8qz}Fz8r+}FI8|~q|st¼
Fzthwllq:ãwQthwQyluHzyQXpBqVlqzqz
lps}:yl¤rIqsÌ
+lqVurBxpuXlp:uu.8|pBqHyQwQqrBnq£sz8¾lr
Fqz
lpÃ}FylVrsI~q¤u~yQq|8¤vupBqzurB¾:uuÏpuIurn~q|z8qs
Fyluq¤yluqzÃ
vuHwQrn}Fru}Fpsz8wllqÕuHqKKç.uHpn
Fz{s8ssy8uHyQq:pBqlq
Fz{s~yQqst[:wQr
wQqzqrBI£ÍuÇlX£nwQpn>uzwQrvxqvjz8qsq+l}FHqKKæ(ÈÖ¢puX+u
rB}Fth~qzsu}:pBqsrBwQuwlrur¢lqH}:zwQ¾
Fwlr:£npBwQHpnurn
:zwlq
qsz8¾v¢lqH}:zw¬xwQB}+lqVzz8qsyQXps}+vjpuX:qsqzpBqzqwl+u
zuXqsÓ8B~qs£nqqrlqsH}:zwQÕuHrÃVquÒqVBt[uruXvjqsthqrB
èé"Ùëê ìTdnmhe0kbm
æ:ÈÖ+íîXïwl+ußwQz8qsH8sz8Ó8uHHqK:
Fz{s8ssy:qsz8wQqVztÆð ñòòX
£sz8Ç:£nwQpu.z8qsqVlz8}F}Fz8q|£npBqzqquHpnrqVszs~ ½ qHIwQrnpBqz8qsq
rI8uwQr+u»lqsÃuz8wQ~}:qsÓ>uyQ}:q¤(uuXç.uHps~ ½ qHI~qsylrv:8¤rBq¤z
t[sz8q¤~ ½ qHHyluXKlqlX£pBwQHpqwQrBq|pBqt[ur:u8sz8¾ur¢
Fwlsruy
uz8wó~}FqK(pBq¤zwlvjwQruy:u
F
FyQwQuwlr¼B~Çspnð ñòò»ur¤æ:ȱÖÑ£ÍuX:
FzwlqVu»ÄÅ£pBwQq|
+uXvqK¦ãwQzqHz8ÕlqzwQqsX£pIqzqt[lÃ~ ½ qH:wQr
pBq|zqq|z8qs
Fz8qlqrBq¤
Fqs
FyQqVur¤pBq|z8qsqpuX¢ußvqvz{u
FpBwQßz
sz{vurBwl`uHwlsruy:lz}:H}:zq
f4UY[Z2eÞ_Õô Rõ] f éödVU¥d e8_ dh_ èé"Ùëê é÷eÞZ¥Sk¤U¥Y&ZXø
àùØúXûòXüXíMúïBqlzwQ~q+u»lpBqst[u.8zÒ8sz8wQrvËb ¡:uHu.wQrurnæ:ȱÖ
wQz8qsH8sz8ÇÔöu
:
FwQrv+uHzq
Fzwlq¤8zuHyQypBq|stht[r:u8u~(uXlqKÐ
uXKl£vjz}F
FpllIlpÃu:£nlqzwQHqlXrBqvjz}F
F
FzyQXqpBqsz{
qs(pIqàùØÉqlzwQ~q+~ ½ qHyluXKlq+urÕuz8wQ~}FqlX~}FÃ(sq:rs
t[ur:uqVu.
uz8wQH}:yluzÃz8qq¤lz8}F}Fz8qÈýtht[srn
:zuHwQHqwl:|}+lq¤u
lz}:H}Fz8qyQwQq|pBwlKÐ
dc=org
dc=example
:pBqwQz{lIyQwQrBqVlqs8:pBqwllwQrvj}Fw0lpBqVuthq|Ó2pBq}FrBwlj}:qruthq
userPassword: {crypt}$1$uQSw.ohy$XuiRSCq0kp...
wlqrBwQwQrvËpBwl:qrBz8xwQrnpBqzqq! ´Å¶ßwl:}+lqÕuX:pBqruthwQrv
uz8wQ~}:qÐHpBwl:zqqsz{:pBqÊlqzà ¡ÉpuI£q|£}:yl¤rzt[uyQyQxuyQy
ÄÅ}+Òqz8rÃuHthq¦{wQru.ÊrBwQÌÝsrBqÌ(pBqsz8q|wl+rBqVuXl
Fqsà ´D¶ß~q
uzwQH}:yluzyQ¾u£uHzqVs8ÐHwQIwl:t[upBqVwQru.uXlqsÓwQrlqrlwQwQq£u¾K|w¬
wl:rsI
+KlwQ~yóqzq
Fz8qlqrBÃwllwQrBÃuHs}:rB+ÄÅz8q(¦ãurÕÄÅùàç:¦ó
¼wQHqpuIpB"q ´D¶buz8wQ~}:q¤H}Fz{+uXvuwQrnwQrlwlqpBqqsrBz8uylrv
£nwQ#p ´Å¶ « $&%8 °
ur" ´Å¶ « '(%8)°
ÐHpBqsz8q|th}+lI~q|qÌBuHyQ¾rBqVsBquHp
sBpBqlqVuz8wQ~}:q+ur¤pBq¾uzq}+lqV£npBqsrnz8qKyQwQrvËuyQyl:8
X°*À +-,!(.*/2q
:pBq}FyQyruHthq¤BpBqVuHs}:rBÃs£rBqszu
F
Fquz:£nwQHqÐwQzluX01,
MØstht[rnuth2 q £pIwQpnwl+uruz8wQ~}Fq|puBurnuqth}FyQwQ
FyQq
>uyQ}Fq+ur¤w0:th}Fpn}lq¤~x£npBwQqÓ
uXvjq(yl}F
KH:pBqqÌzuÏ
F
wQrnpBq X ° 0¡µH²uzwQ~}FqVuyQyls£Í:rIzy:sqzÃpIqqÌBuHÃlz8wQrvËzq}Fz8rBq
- X°*À +,!&.*/2uHyQylK
:pBq|µ %43¡)° 0Þ4À 56H²²uzwQ~}Fq:zqqszVuXl
Fqs+sBpIqàùØúXûòXü»lpIqt[uX
:pBq¾lqsIpBqyQwllÃBt[ur:uz8ÕurÕs
:wlsruy:uzwQ~}Fq:8szpBq
qsrBz8urÕuz8q¤uylK}+lqs}:ywQrlquz8HpBqKÈýuyQy:BpBq8zt
X°*À +,!(.879,j ¶
)° +"7:/2wl:yQwQqyQxzql}:yQIwQruræ:鱅 lquz8HpBpBq
8sz8t (uid=andrew) AND (objectClass=posixAccount)
;=<?>A@BC?
È:£nqpuqVlqsqrB:u8u.ztÆ
uKl£¢urÕlpuX:£ wQyQq:t[u
:yQwQrBqÓ
~ÓyQwQrBqwQrBpBq¤uHH}FrBBqsrBz8Çuu.z{tÆpBqVvz{}F
ÑwQyQqwl:puryQq
wQru»lwQthwQyluz£uÇÈýrBqrBwlrÃuHyÊrBwQÌnvjz{s}:
ÑwQy¬q|puX+rBqVvjz}F
FqszyQwQrBqX£nwQpnqsqz¾vjz{s}:
Ñthqth~qzyQwllq:Ð
:pBwl:w0:rBqsrBwQqrBI8zlqsqwQrvË£npwl:wQru»vjz{s}:
FX~}FBqsÌzqthqsyQ
ldapbods:x:389:tim,steve,colin,damy,andrew
wQrBqswQwQqsrBI8zpBq|t[lIstht[r
Fqsz{uwlrÐyQwllwQrvËpBqVvz{}F
:pu
u.
uz8wQH}:yluz}lqzÃwl+uÏthqsth~qszuIylvjwQrnwQthq(pIq}+l}uy:uylvzwQpBt
wl:qsrB}:thqsz{uqqqz8VqrBz8xwQrnpBqVvz{}F
Ñt[uH
ÑylswQrvË8zH}Fz8Ó
zqrBHq+s2pBq|}+lqsz8ruthq
àùØúXûòXü»qswQrBq+vjz}F
¢thqsth~qsz{lpBwQ
Ñ}lwQrvËpB"q )° &%)°
)D´Å¶
uzwQ~}FqwQrEu XµH²´Åÿ F
µ !b~ ½ qHHä:qsu}l"q )° &%)°
)D´Å¶Ýwl+u.t¼}FyQw¬Ó
>uyQ}Fq¢uz8wQ~}:qspBq¤vjz{s}:
Ñt[u
ÑuHrnrã ~q¤lquzpBqVqz
qswQwQqrByQÇ(pBq|qÌButh
Fy¬q¤vjz{s}:
ÑqrBz8¾u~(q|£Ís}:yl¤ylxyQwQq|pBwl:wQr
pBq¤wQzqHz8(Ð
dn: cn=ldapbods,ou=Group,dc=example,dc=org
objectClass: posixGroup
objectClass: top
cn: ldapbods
userPassword: {crypt}x
gidNumber: 389
memberUid: tim
memberUid: steve
memberUid: colin
memberUid: damy
¼ n£ Qw r ¤ Bp q Qy lw l à jv {z s :}
: p u .u } l q z ~ q ly s r v : 8 s X Bp ¤q l q u z np lw
memberUid: andrew
s B Bp |q 8 8z [t Ð
:pBqæ:鱅 lqz8qzurn~q|srBwlvj}:zq¤£nwQpnwQrqÌq+rurB¾uz8wQ~}:q
(objectClass=posixGroup) AND (memberUid=andrew)
K¤lquz8HpBq.sBpBwl:8sz8tÆuHrn~qt[uXqqzxqwQHwQqrBÃurVyluzvjq
:uu~ÇuXlq:urb~q|puryQqV£nwQps}:I
Fqz8zt[urBHq
FqruyQwQqK
ê ÚUjU2eÞ_¢ô eU4d#G?GUYÍôÍSVUIÜÕShZ
2|t¼}FHpn8zpBqpBqzX~}FBps£ th}FHpÍsBpIw0+uH}+uyQyQx£zÇHÇ.
wQr¢}FX 2~}FwQyQÃu.ql~qÕsruÏ
sz8u~yQq|Ö:Ø&z8}FrBrBwQrvËàq þ uÃüXJI
ur¢l}:
F
zwQrvxlqqsz{u2y K|Ô4£uz8qwQz8}+uyt[uHpBwQrBq:£nwQpwQqzlq
s
Fqz{uwQrvxlÇÒqst[K ºuylKrBrBqsq¢u.ã}:rnÊyQz{u.ñ»z8}FrBrBwQrv
2sy0uzwl LI
:pBqæ:ȱÖ×lqsz8qsz£uXF)² 6MX¶ßztÆΤ
FqsrBæ(ÈÖ¢ú9òXJ INLOu»lqs}Fz8wQ
uXwlKzxpuX+lwQrBq|~qqsrnwlKl}:qVzqj}:wQzwQrvË}:
vjzuXq|8|úI9òX ú I(pBq
rBwlvËwQyQqwl+lp£nrnwQrnȱ
F
FqrwQPÌ IXlylu
Õlqsr(:ylvvwQrvx(uuÏ
l(ly0vjurVwQIwl+ußv¤wlquÏVlqs
uHzuqpBwl:wQrB8¤uÏwQyQqVsBwQ8+s£r
£nwQpuÏyQwQrBqyQwQq|pBwl:wQr /etc/syslog.conf:
BwQrVwQIsrBqrBwQqsrBBqq
u.£nwlq|£wQr:£@rlHzqqrnz}:rBrBwQrv
local4.* /var/log/slapd.log
¦ tail -f¦ãrnpBqylvjwQyQq£npBwQyQqqlwQrv
+Hz8quq|pIqwQrBwQwluy:(uu. 2}lq¤pBqthwlvjzuwlsrnyl:ztÆÖ:Èæ
Ks£uzq(pBqlqVuz8qVsqrnwQrByQ}qV£nwQpnæ(wQrB}FÌnwllzwQ~}Fwlsrl~}FBwQ
wl:£sz8pnqHpBwQrvËpBqyluqlIqsz{lwlsrztÆ£n£n£
+uXyl tÆ(pBq|8yl
rBqsq¤qzxyQwQyQqrBwlvj}Fz{uwlrIIur¤£wQyQyylu¢:uHu.z{stÆqÌwllwQrv
wQyQq:wQr Qw Br Bp |q (æ È ×Ö Qw 8z sq s 8z Ç ¼ q p u I Ip q s ly : z q u q
Bp |q s Br /etcu Qw Br q Ãz q Br z Qw q F µ 'Q © ° Mµ D ð q Ï ~ F} I Bp q ¾ : r s I z q u |q Ip q F
Ó
Qy sq q y q Br 8z C ¶ 80 Q ° ÿ D S° 9R ¶ 10 Q µ T
ß Qw nr Bp lw : Xu l 2q B K Qw B ht } l I ~ q H 8z q u q V ~
p u r ¤ ~ sq 8 8z |q Bp q ly : n£ Qw Qy y 8z F} r . V : Bp lw l X z q u Vq .u Qw Qy Vq B Bp q 8 z [t Ð
dn: dc=example,dc=org
objectClass: dcObject
objectClass: organization
o: The Example Organisation
ur¤yluX¤wQB£nwQpu.stht[urVyQwQq|pBwlKÐ
dc: example
ldapmodify -a -H ldap://localhost/ -r -c -x \
-D ’cn=Manager,dc=example,dc=org’ -W \
È I Ip 0w + l Xu jv sq X Ip q (æ Ý ±È ×Ö l sq 8z q z u nr ~ q q l q ¤ n£ Qw p s ¼t [t u r Ó Qy Qw Br q
-f <filename>
s ly + l :} H p Xu E Å ¶ MX² S°
UW0 IV ¤Î Br H q Qw I lw ( £ s 8z Qw r Ëv Qw I lw (
K l Qw ~ Qy q
Br lw jv F} 8z Vq l ( l sq [t ( } l q Qw à Xu . .u n 2
Z
X E
Y ]
[ ^
\ `
C
_ b
[ Z
a `
[ S<
c fd
e b
[ g
a h
Jd ? E
e C
Y `
E
i j
E
i
l
g
k nm
`
B
n ã lw + Ïu 8 u H Qw Qy ¬w x 8 F} r V Qw nr 2 ly u 8z lw + u r V :æ Qw Br :} ÝÌ n£ Bp Qw p u Qy ly £ : Br q £
r u ht sq Ó 8z q K Qy F} lw s nr |q ~ |q Qw r l u Qy Qy q ¢ Xu . l Ãp Hu z q ¢ ~ ½ q H : £ Qw p s :}
p u Qw r Ëv z q ~ :} Qw ly V sq Ì lw l Qw r Ëv Qy Qw ~ {z u z Qw q K 2 ht q q z l lw r + B ù z q sq (ä ã u r
È ¡ ð p u ¤q »u l Qw ht Qw ly u z Br H sq :
I u Qy Qy q ¤ Bp q Br 8 z [t u lw nr à q z Qw q > u y
ã Ç l sq ht I u F
u 8z sq Br Qy ¾ sq 8z Qw q V z Æt :ä ¡ n o »L q
nr F
8z Qw Br H Qw :
Qy |q Ç Ñ} u nr Qw r l u Qy :y Ïu Br sq £ r u ¼t sq Ó 8z q K Qy F} lw s r l Ç l q t ½ +} l I ~
F
ly u H Qw r xv »u l p Hu z q ¤ Qy Qw ~ z u 8z x Qw nr Bp q z lw jv Bp à Qw z q H 8z ¾ u r ¤ q Qw Qw r v
q p rKl£wQHp srB8Fsyluz8wl+ur¤t&urBxæ:wQrB}FÌnwllz8wQ~}:wlsr:st¼q
£nwQpnæ(ÈÖ¢t[}:yQq:ÞsznããXp}+vppBqs¾uHzqVs¡qsrqzwQq¤z{t
p
8uwQzyQ¾yl¤qVur¤Ç}Ñt[uxrBqqVqsHpnpBqyluqlIqzlwlrnzt
£n£n£
+uXyl stÆwQ2(}¢£urBÃuyQypBq¤lqH}:zwQxqu}Fz8qK
Bqlq¤rKr qXyl:u
×sru.wQz8}uyt[upBwQrIq£nwQpu»lt[uyQyà+q þ uÃüX ú
wQrluyQyluwlr(pBq|wQz{lIpBwQrvË8¤(|wl:8|srBwlvj}:zqpBqæ:ȱÖÑ
+uzuthÓ
qsqsz{:wQr /etc/ldap.conf:
# ldap.conf
#
# Location of LDAP server.
# Must be resolvable without using LDAP!
#
host brick.skills-1st.co.uk
#
# The distinguished name of the search base.
#
base dc=example,dc=org
: Bp lw . l Qw ht F
Qy q Br lw Ëv lw : q r } jv np V jv q I Bp ¬w r v . v Qw r jv X p s +} jv np n£ q n£ Qw Qy y
#
z q F} 8z nr V Xu : V [t s 8z Vq l sq F} z Qw x ly u sq {z
+ [t u q Bp q [t u H Bp Qw Br q } l q :æ ±È ¢Ö 8 s z
Xu K l £ Õ u r ¢ jv {z s :} Ñ
ly :}
l
q Qw /etc/nsswitch.conf u r V H p u r jv q Qy Qw Br q + Xu + l p n£ r Ð
passwd: files ldap
shadow: files ldap
:pBqqqHÃBpBwl:wl:puHIyls}:
:£nw¬yQy}lqyluywQyQq:wQz0Ãur
group: files ldap
FzvjzqK:æ(ÈÖ¢8zurBpIw¬rÃvËrIÞs}:r¤yluy¬yQ(H:pBwl.uyQyls£Í:8sz
l(lqstuHH}FrB8:~qqs
FBwQr p qsÏwQyQqE MrBqsqKKuHz¾}:zwQrvË~Ç}:
£npBwQyQq}lqzu}FrB8+uzqpBqyl¤qsrBz{uyQyQÇ
BpBq|ruthqVlqzwQHquHHpBqV:uqt[ssr Mrl wl:z8}FrBrBwQrvjXwQBt[ux~q
rBqsqKKuz8xzqluz8IwQB~q8zqæ:ȱÖÑyl}F
:£Ísz8ÇãwQthwQyluz8yQ
rKl£nwQHp srB2wl:rsz8t[uyQyQ¾srByQxz8qu¢rBHq
Fqsz
Fz{sqK+KV(sr¦D
qsÌ
FqHurBxqsÌwllwQrvË
Fz{sqKlq:rswQq|}:rBwQypBq¾uzqzqluz8q
ur¤pÃuHIwQrBHyQ}+q:pBqVlpBqsyQypuIÇ}Ñ}+lqVVlqsuyQypBwl:}:
Ñzt[nå
ÈrnquXlxqlIwl:wQrVpBqpsthqÓ8wQzqHz8¾suÏ}lqzÃpuIwl:yQwllqVwQr
pBq|æ(ÈÖ×lzq~}FIrIwQrnpIqyluy
+uXKl£sz{VwQyQqÐ
: Bp q 2 ly u z lw ( q {z l lw s r B r K r Xq ly ( u Ñ
lw : Ç~ Xu l q Õ nr Bp q Qw FÖ ly u Br q I (æ È Ö
echo ~fred
Qy Qw ~ {z u z Qw q + u r V Qw à : q : r s B } l q p q p 0y : u
s Br F
z q q z 8z Qw r v Qw r l q Xu V
} l Vq .u F
{z jv {z u Æt u Qy Qy q t Å ¶ M10 § D´ ° , ãÀ V l sq I :} Ñ
Bp q
u z u ht q q z K ( Bp q
F
z ~ Qy q Æt n£ Qw #p D !¶ 80 ó Å´ )° , ãÀ lw ( p u I Qw à sq F
q r : + r .u q u F} 8z q p u I lw
Qw ht F
Qy q ht sq Br q Õ Qw ¡ sq 8z sq Br Qy x Qw r Qw q 8z sq Br B :æ È ×Ö l q z q z . K | Qw : q : r s
q Xu l Qw Qy x Í£ s 8z x n£ Qw np ¤Î F
q Br :æ È +Ö ( Bp q z Vq u z Vq .u Br :} ht ~ q z s 2 [t u Qw Qy Qw r jv Ó Qy lw l
u z Bp Qw q : s Br Hu Qw Br Qw r xv lw l H +} K l lw r s B Bp |q :
z ~ Qy q
t u r Õ l } v jv q l Qw r v
> u z lw } : £ 8z ( u {z F} r : l p s +} jv np B p u q r s B sq I [t u q Qw I £ z x ht Ç l q Qy 8
ùz8qqsä(ãÉwl+l}F
:
lqV~qVu~yQq}+lq|pBq|Ö:ÈæÕrKrqXyl:u
¢q
~}:IwQIz8qX}FwQz8q+u.z8qs~}FwQylÕuIyQquXlIpBqt[uwQrnØ&yQwQ~zuz8xt[uq|wQ
£sz8ÇÈvuwQrBX 2puqrÃIpuXVwQthqqÒBpBwllX~}FIwQrn
:zwQrBHwQ
:yQq|wQ
lps}:yl¤£zx£nwQpnpIqVKuthqV:uuÏpuÃl}F
:
sz8:æ:wQrB}:ÌB
us@)YE[Eivdfevdf>AiwbdJ YBE`_xkgmnEB
:pBq}l}+uy£uH¾sB}+lwQrvËæ:ȱÖÑÞsz}lqzu}FpBqrBwQuwlrnwl:yluq
pBq¤u}FrBIqrBzxwQrnpBqVwQzqHz¾urVpBqsrnz8x¤ÄD~wQr:¦{pBq
wQzqH8sz8ÕuX:puÃuHs}:rIX
FzqlqsrBwórvËpBq
uXKl£zÕszspIqz
Hz8qqsrBwluyl+u:zqHqwQqVztÆpBq}lqzH rnpBqVlwQth
FyQqlIuXlqspBq
uXKl£zVwl:
FzqlqrBqVpBqVwQz8qsH8sz8¾lqsz8qszwQrnHyQquz~}FBpBqzq
uzqVu.rB}:th~qzBt[zqVlqH}Fz8qVlHpBqthqK
ÔölIʱrBwQÌÓyQwQq¤lÇlqt[:r£ wQth
:yQqsthqrBIÖ:yQ}vvu~yQqȱ}FpBqrBwQuwlr
Ôö}:yQqE MÖFȱÔT BsºKsthq8zt&(pIw0+uyQyl£+u}:pBqsrBwQuw0sr
thqsp::8|~q|purvjqVquXlwQyQx£nwQpÃ}FBpuwQrvË|z8qsÓ¡st¼
FwQyQq|qqsz8
FzvjzutÆpÃuBthwlvjpIBrBqsq¤HpBqH¾u.
uXKl£z{:Ö:ÈÔT:uruylK
wQth
FyQqthqsrBI
+syQwQ¾l}FHpu:wQthqÓ8sÓ8(uxzqlz8wQHwlr+ur¢pBqz
lqs}Fz8wQxzqj}:wQzqthqrBKÈý
uzwQH}:yluzyQx
£nqz¡}Fyqu}:zqwl:pu
ÖFȱÔö:urn~qVluqIuyQyls£wQrÃvË8zu.HpwQHqVsºu}FpBqrBwQuwlsr
thqsp:+uHrÃV
Fqzpu
.lqsqzuy:wQqsz8qsrBB
syQwQxt[}FyQq:~qVuHwQq
uX:£nqyQylÈÑ:£nwQpnnããXÖ:ÈÔwl:wQth
:yQqst¼qsrBqV£nwQplpuHzq¤yQwQ~z{uzwQq
K|z8qÓrBwlvj}Fz{uwlrnwl+X}FwQqquXlÇ
àq þ uX¥}Fãç:Ôöurzuqur¤ùz8qsqä:ã uHyQy
Fzwlq
uyt qXyl(u
t[}FyQq+qsz8wQq¤z{st pBqÖFȱæ¢q2yluz8wl:wQrBHyQ}+q+u.t[}FyQq
~(uXlq¢rnwQÖ:ylurBqsBqXp}vjpnwQIwl+X}FwQq
KlwQ~yQqz8qs
FyluHHqpBwl
£nwQpnpBq|Ö:ÈæÕqzlwlrnwQBz8qX}FwQz8q( ¡ruyQyuXlqlrBwlvj}Fz{uwlrnwl
lpuzq¤£wQpnpBqqX}FwQ>uyQqrBInãt[}:yQqVK|yQw¬yQqqsÌzu.£Ísz8xwl
zqj}:wQzq:
+}lqæ(Ýȱ֢8szu}FpBqsrBwQuwlrnwl+u.t[uqzsBwQrl8uyQyQwQrvËpBq
uyt qXyl:uH
Ñt[}FyQqVur¤qwQwQrvpBq¤u
F
:z
FzwluHq|Ö:ÈÔrBwlvÐqswQpBqsz
szrBqVszt[zqwQyQq:wQr /etc/pam.d +æ x 8 z
Bp |q Qy Qw Br Vq q l H z Qw ~ Qw r v +
u yt Xq F} Br Qw nÌ u r ¢ Xu ( ¤
u yt Xq ly ( u
u I p u B
s Qw Br ¤Î r
/etc/pam.conf
à q þ u B :æ Qw Br :} ÝÌ Bp q Qw Qy q lw /etc/pam.d/system-auth urVwQ
ylÇ:yQw¬qpBwlKÐ
auth required /lib/security/pam_env.so
auth sufficient /lib/security/pam_unix.so likeauth nullok
auth sufficient /lib/security/pam_ldap.so use_first_pass
auth required /lib/security/pam_deny.so
account required /lib/security/pam_unix.so
account required /lib/security/pam_ldap.so
password required
/lib/security/pam_cracklib.so \
retry=3 type=
password sufficient /lib/security/pam_unix.so nullok \
use_authtok md5 shadow
password sufficient /lib/security/pam_ldap.so use_authtok
password required /lib/security/pam_deny.so
session required /lib/security/pam_limits.so
session required /lib/security/pam_unix.so
session optional /lib/security/pam_ldap.so
¼qpuBÇs}×lps}:yl¤rIqwQBpBqwQyQq¤wQzqHyQ¾srnà+q þ uIæ(wQrB}FÌBÐ
}lqpBq À*V0¡µ ,rzs6´ ß
:zvz{utÆt[uwQrBuwQrnwQ
¼qVuylKpuIpBq|qÌButh
FyQqrBwlvËwQyQq+l}F
F
:yQwQqV£nwQpnpBq{Ŷ
Ks}:zq|q|thwlvjpBÃvjwQqæ:ȱÖÑt[zqrBz{sypurn(}¢£urB
wQrBHyQ}wQrvËpBqVu~wQyQwQx8¤l}:
F
FyQ¾uruyQqz8ruq|
+uXKl£zV8sz
µHµÀÒ
2syluHzwl:}+lq p q p
ut[ srBKpBq8zt[uHIwl+lyQwlvjpByQ¾wQqzqrB þ qzq
wl+u»lrBwQ
F
FqÃqlHz8wQ~wQrvËpBqVu}FpBqsrBwQuwlrnzqj}FwQz8qst¼qsrB:8z
SÅ µ f´ ,Ð
rlogin auth sufficient \
/usr/lib/security/$ISA/pam_ldap.so.1
rlogin auth sufficient \
/usr/lib/security/$ISA/pam_rhosts_auth.so.1
rlogin auth required \
¼ q Bp ^q | ã ýÈ > u z lw Hu ~ Qy q Ð Bp lw : lw : Bp q r l z F} lw nr ã sq B È 8z H Bp Qw q H :} z q
/usr/lib/security/$ISA/pam_unix.so.1
n£ Bp Qw H p u Qy ly £ : 8 Ãz Xû Xú Ó ~ Qw à u r Õ Nî X} Ó ~ Qw B F
z jv z u [t : 8 | s Ó q Ì lw l ã z Qw H Qy
Bp lw : ht q u r : p u B Qw B Ç s ¢} 8z sq F
ly Hu H Vq u Br x FÖ ±È Ô [t F} Qy q : Ç } l p F} ly
F
z lw q (~ np Xû Xú Ó ~ Qw u r ¢ Nî X} Ó ~ Qw I sq {z l lw s r : ~ F} Ã K 8 u z B p u q r s I 8 F} r
u Br ¾ Nî X} Ó ~ Qw I :
z jv z u [t : +} l Qw r Vv u :} Bp q Br Qw u lw nr ( Bp lw : n£ Qw Qy y F
{z s Ç~ u ~ Qy
H p u r jv q 9 C
ù 8z q sq (ä ã u ly K } l q p sq p
u [t s Br 2 ~ :} I p Xu + »u l Qy lw jv Bp Qy ¾ Qw q z q Br
ly u Ç s :} þ q z q lw : +
u z s B Bp ¤q l q H lw s nr 8 z ly jv Qw sr ¡ u r ¤ Bp +} : 8z ly jv Qw nr $ Ð
login auth sufficient pam_skey.so
login auth requisite pam_cleartext_pass_ok.so
login auth sufficient /usr/local/lib/pam_ldap.so \
try_first_pass
o Bp sq 8z Vq .u FÖ ±È
login auth
Ô
Xu K l £ z V H ly u +} l q p Xu : ~ q sq Ír q Qw Br q ~ Xu : Qw nr Bp q à q
required pam_unix.so try_first_pass
þ u I sq BÌ u ht :
Qy ¤q u Ç~ s 2q § X
u yt Xq ly : u ×
Ò :} F
z : p u r v Qw r Ëv
Xu K l £ z (
} l Qw r Ëv (æ È ×Ö K Bp q } l q z Ir q q ¤ Br q sq z r £ p u B :æ ±È ÑÖ 0w : ~ q Qw r Ëv } l q
z u Bp q z p u nr ly s u y Qw Qy q K
o Qw np (~ np r K r Xq ly : u ×
u r ¤
u yt Xq ly ( u Ñ
Qw nr F
ly u ¤q nr H Qy Qw q Br I [t u H Bp Qw Br q l u Qy y
} l q z Ó [t u r Xu jv q ht sq Br I u nr ~ Vq : Br |q Bp {z s +} jv np Bp ¤q Qw z q H z Ç
ÉR ¾Y W Pd = Þe _ Í ¾Y W =m 4f Ù ì Ù ê é
2 u ht (~ .u p Xu : p Xu V Bp ¤q Hu ~ Qw Qy Qw x V u H Ã Xu + Hu nr b ( 8Ó l Qy |q :Ö z Qw [t Hu z x s [t u Qw r
Ø s Br z Qy Qy sq z 8 s z K ht |q Qw ht q +à sq sq Br I 8z sq Qy q Xu l q : p u ¤q Xu ( q ¢ .u 8 Hu H Qw Qy Qw x
l z q Bp q FÖ Ø ã È Ô : u 8 .u Qw r u nr (æ È ×Ö Qw 8z sq z Ç ( Bp lw : lw : Qy q u 8z Qy
[t u z q Õ Xu : sq Ì :
sq 8z Qw ht sq Br u y |q Qw nr 2 u ht Ç~ .u ú ú »ú p } jv np Bp |q 2 u ht Ç~ u Ó
: P T
F
z ½ q H I ly u Qw [t : | ~ |q [t z Vq Xu > u Br q V Qw nr Bp lw + u z q Xu : Bp q £
q z l lw r : p u ¤q Qw sq 8z sq Br à u :
F
z u H Bp q K Ð [t u Qw r l z q u Æt 2 u ht (~ »u Hu Qw [t :
F
z lw q o Qw r : £ l Ó ±Ê Br Qw ÝÌ Qw Br q v {z u lw Br X n£ Bp q z q 2 u ht Ç~ u Ó : P
u Qw [t : 8 z u
ht F
Qy sq q :Ö Ý Ø Qw ht F
Qy sq ht q Br u lw nr p u ½ +} Ò B p u F
F
q Ãr : 8 | 8z F} r nr Ê Br Qw Ì
z u Bp q Ãz p u nr o Qw r ( s £ K
B 2 Hu ht (~ .u lw : ¬w Ãr l 8 u Qy Qy q Õ r .u [t u H Bp Qw Br q +} l Qw r ^v , ² S² { D ¶ Mbu r & -'{ D ¶ MßQw
n£ Qw Qy :y B :} z l q } l q Bp q ht K Br q £ z Ç : 8z F} Br Br Qw r Ëv ã [Ô Õä n£ Qw np Qy q u 8z q Ì
Xu K l £ s {z : : [t u x r s B Br sq q ¤ V : [t s 8z |q Ãp u nr Ãp Hu : Bp q z Vq u z q
Xu >urBuXvjq:8|pBqÖFØ t[qsyp}vjpBK2uth~(uX¦ó:t[sq|yllqz
wQrBqvjz{uwlrn£nwQpnæ(ÈÖ¢wl:
uz8wQH}:yluzy¬V£qsyQsthq
+qru~yQqæ:鱅 lz{uXvjq|8zÃpBq|Ö:ØX2uth~Çu.th}+lI~qrBwlvj}Fz8q
£nwQpnpB^q ¥£wQp ¥yl(u
Kut
Fwlr(pIwl(st¼
FyQqsqyQ¾sqzz8wlq:ylsuy
lsz{uXvjq¤BãÈ±Ô (uu»KgÇs}¢urBrI}+lq|pIqVKuthq~wQruz8xwQrn~(p
t[qK
:pBqæ(ÈÖ:Ó8l
FqHwQwQO
uz8+BpBq2uth~Çu.srBwlvËw¬yQq|ylxyQwQq|pBwlKÐ
ldap admin dn = cn=manager,dc=example,dc=org
ldap server = brick.skills-1st.co.uk
ÉÈ ht Qw Br Qw [t u y 2 u ht (~ Ïu FÖ &Ø Ir ¡ lw v 0w + l p s n£ nr Qw r È F
F
q r Qw Ì ú
ldap suffix = dc=example,dc=org
¼ q p u I Bp |q (æ È ×Ö l F} Qw nÌ jv Qw sq r Ip q z q [t u Bp q : Ip Vq l q u z np (~ Xu l q
} l q ¤ ~ x r K r Xq ly ( u
u r ¤
Hu yt Xq ly : u
( Bp lw + u Qy ly £ : 2 u ht (~ .u 8 ¤ l p u 8z |q Ip q
sq Br 8z Qw q : p u à u Qy z q Xu x q Ì lw l I V q l H 8z Qw ~ q F
q s F
Qy q p u H s :} Ir 8 K s Vq u ly K
p u I Bp Vq Xu ¼t Qw nr õ lw . v Qw q r Ð Qw nr Bp lw : Xu l |q 2 p u q } l q ¤ Bp q r u ht Vq s
Bp |q ã ýÈ [t u r Xu jv q z M q j F} Qw > u Qy q Br I {z I Qw r Qw z q H z x q z [t M ~ :} I Qw
l p s :} ly V ~ q
K l Qw ~ Qy q +} l Vq .u Qy q K :
n£ q z :} y ý Qw B È Ø +æ + u 8z Vq l sq B F}
u 8z sq :} Qy Qy Ç 2 u ht Ç~ .u Br sq q : : 8 | ~ Qw r ¤ Bp Vq Qw 8z q H z ¾ Xu + Ïu } l q Ãz n£ Qw p
n£ z Qw |q F
q z ht lw K l lw r K p u I Qw I u nr Qw r l sq 8z I Br q @£ u 8z Qw ~ :} q : Qw nr sq Br 8z Qw q K H : Bp q
Xu K l £ z V lw + l s 8z q V Qw nr Bp Vq l sq H 8z sq 8 + : u u Ç~ Xu l q } l Qw r Ëv Bp |q s ht [t Hu Ãr ( Ð
ÊrB8z}:ruqsyQXpIq
uXKl£zVpuX:~q
FqÕrbpBq|stht[urVyQwQrBq
smbpasswd -w <password>
K|t[uHqVl}Fz8q(}¢HyQquz}FurBxtht[urÓpBwll8sz8xwQyQq+uHqsz8£uz{:Kå
2uth~(uÏwQrIz}:Hq+lqsqzuyrBq£@uzwQ~}FqlKwQ¦§+lpBqst[u.wQyQqth}+l
~q
FwQq¤z{st 8 | Bp q
l sq 8z q z l Bp sq [t »u Qw z q H z ¾ u r ¢ u r u :
F
z F
z lw u |q Qw Br H Qy +} Vq l u q ht sq Br I p Xu
samba-2.2.2/examples/LDAP/samba.schema
| ~ ¤q Xu ( q ¤ | )² 6 MX¶ J ¡0 µ r, z ( Bp Vq l H Bp q [t .u Qw ¬y ¤q l :} F
F
Qy Qw q V z ¬w q : 8 | 8z sq Ó
q Qw Br |q ¶ Å´ U² 6 M « ° K Bp lw : H ly u +} l |q ¼t } l I ~ |q s ¼t ht sq Br q ¢ F} B ~ q 8 s 8z q
z q l u z Qw Ãr Ëv Ip Vq l q z q z
2 u ht (~ .u Br q q ( : V l sq I :} Ñ
£ Br q £
Xu K l £ z V p Xu l Ip q + u r ¢ l q sq {z u y
s Bp q z u z Qw ~ F} q : 8 Ãz q u H np } l q z H : Bp q
Xu K l £ z ¤ p Xu l Bp q : u Br r I ~ q
q z Qw q ¤ {z s Æt Ip q ±Ê Ir ¬w ÝÌ
Xu K l £ z Õ : u u I K | ~ |q :
z q
u z q ¤ 8 ¤ l :} F
F
Qy
Br sq £ +
Xu K l £ z ( : 8 s z q u H np +} l sq {z Ð
ÊrB8z}:ruqyQpBwl:wl:£npBqzqpBqqsÌ
FqzwQt¼qsrBuyru}Fz8q¤BpBqq
smbpasswd -a <username>
luz8:¤lp£ pBz{s}+vjp2sthqVBpBqVuz8wQ~}Fq+vjqI~(uXV>uyQ}FqKÐwQr
uzwQH}Fyluz8'
´Å¶bvjqs+lqIg Xqsz{ur¤~(pb)² (%8¯±µ °ur"
µ zsf´ D° © À*V
vqI>uyQ}:q:wQrByQ}wQr^v ÓqÌ
urlwlr:puÃuHzqrsB
Fz
FqzyQxpuryQq
£npBqsrnpBq¤(uu.wl:}+lq((pBqlqrBqqV~qwQÌq¤~xpÃuHr:Ð 2}lq
Ŷ MX²S°
S0WVßqsÌzuHBpBq|sth
:yóqqVuz8wQ~}:q¤lqIwQrBVu.wQyQq8sz
qwQwQrvjurt Ŷ MµH¶´ z1ß
F}:IpBq}F
(uqV>uyQ}Fq:~(u(
ä:q8sz8q¤uÏowQr:£:HyQwQqrBIur ½ swQrÍu»:t[uwQrBXwQIrBqq(+u»ÄDz}+l
uH}FrB¦{~qVlqsI}:
rnpBq|Ö:ØowQpnpBqVu
F
Fz{s
Fz8wluqVÒzwQ
F8
rBwlv}:zq¢rn2uth~ÇuXpBwl:uHrn~qyluzvjqyQÕuH}Ft[uq¤~}FI8zql
F}Fz8
lq: 2Hz8quqVÊrBwQÌÓ8lyQqVuH}FrB8:~xpur:(pBqlq|puq
}lqzruthq:8sz8thqV~¾u
F
FqrwQrvxfÄ |¦pBqowQr:s£Í+ÄÅth
F}:qsz8Ó
ruthq¦Dur¢uz8q|t[uXq|z8quXx8sz}lq£nwQpnpBqtht[ur:Ð
o Qw np Bp q Ò q F
8z sq +
u z u lw r + : Br sq X 2 £ Xu + u ~ Qy |q 8 ½ Qw r u nr n Õ H Qy Qw sq Br B
smbpasswd -a -m <computername>
ht ¾ : [t u Qw r u r ¤ ly Ëv Qw nr } l Qw r Ëv Ip Vq K u ht q } l q z r u ¼t ¤q u r V
Xu K l £ z
} l q ¤ £ Qw np Bp q Ê Br Qw Ì H Qy Qw q Br K
: Bp q z q lw + ~ 0w s +} l Qy ¾ K s ht q £ 8z ¾ l Qw Qy y Br q q q Õ nr Bp q :æ ±È ÑÖ :Ö Ø
q X ~ :} Ã Br H Vq l u ~ Qy |q Bp q 8z ¤q u 8z ¤q K ht q Qw Br q z q l Qw r Ëv
K l Qw ~ Qw Qy Qw Qw q K ¤Î Br q
s F
lw s nr £ F} ly V ~ q V : V u £ u x n£ Qw np Ç~ u H F} ×
: [t u Qw nr Br z Qy Qy sq {z
u Qy v q Bp q z u r Õ l F} :
s 8z à lw l z Qw ~ F} lw r u r V z q l Qw Qy Qw sq Br |q ~ x p u Qw r v
z q F
Qy Qw u q V :æ È ×Ö l sq 8z sq {z : q Hu H p l sq 8z Qw r Ëv Bp ¤q K u ht Vq : Hu .u V s Br Vq z
[t s 8z |q 2 u ¼t (~ .u :Ö Ø K B p u q sq I 8 | £ z ¾ F} B Bp |q q BÌ u H B sq q H Ã
[t s Qw r xv .u o Qw r ( s Í£ : H Qy Qw q Br I z t Br ¤q l :} H p ( s [t Hu Qw nr Br z Qy Qy sq z
u Ãr Bp sq {z
+æ s Qw r xv u I Bp |q F
{z ~ Qy q Æt Bp Vq s Bp q z £ u x z F} r X Qw à l p F} ly V ~ q
K l Qw ~ Qy q
z :} #r , ² U² '{ D ¶ Mbu r & -{ Å ¶ MbXu v u Qw r l à u nr È Qw q Qw z q H z ¾ l Ç l q [t
: Bp Vq K u ht F
Qy q p sq p ly : u
Br l Bp Qw F
F
q ¤ n£ Qw np Bp |q :Ö È Õæ q Qw Br H Qy +} q
u nr sq BÌ u ht :
Qy |q s Br lw jv :} z u lw nr 8 Ãz Bp lw : :
F} z +
l q X p } jv np 2 p u q r I 8z Qw q
Qw
"f S Õk ×Ú 2Z e jU ø
o Qw p l F} p .u Br H q Br z u lw s r : Hu .u Qw nr Bp Vq Qw 8z sq s 8z l sq F} 8z Qw
~ q ht q : q z x Qw ht
z 8 u Br Mí û ï È Br Ç Br |q n£ p F} ly V [t Qw x Bp Vq : u u
F} ly Õ v Qw q Bp q [t l sq Qy q + u H H q K : > Xu l I Br F} ¼t ~ q z + B [t u H Bp Qw Br q + u à u
l z q 2 ht Vq : u Ïu Ir q q : : ~ q F
{z s q H q V z Æt F} r u :} p s 8z lw l q
Qw sq n£ Qw r v XÐ u Qy p } jv p u Qy y +
Xu K l £ z : + Hu z q p Xu l Bp q u Br Ç s Br q n£ p u nr 8z q Xu
Bp |q p Xu l Bp q : u nr [t F} Br à »u Qw H lw r u z ¾ u 8 u H Ç TÔ s 8z ¤q l :} ~ Qy u Br Ç s Br q
n£ p | u nr Bp w ½ u H ¾ .u Qy Qw sq Br 8Ó l q z q Ãz s Br Br q H lw nr u nr q q V (~ v +} + : u 8 .u
u nr Qw r Qw lw } u y H Qy Qw q Br z } l q Bp q H Qy Qw q Br ó¦ : F
8z Qw Qw Qy q jv q : [t Qw ¾ l q z q z
: u Xu H È Qy y Bp q l |q Bp Qw r v : u nr ~ q F
z q H q ¢ Xu v u Qw r l u r V :æ È ¢Ö r £ p Xu
[t l s B Ip q ly : Br sq q q ¤ V : Qw
~
u
e
e
[
h
O
A
>
i <
> m
Ø s Br {z s :y sq z n£ p | [t Hu V 8z q Xu V n£ p u à u r ¤ n£ p [t u x H p u r jv |q n£ p u B lw
sq Ì q z lw l q ¤ n£ Qw np È H q K : Ø Br z y (æ lw l E M ±È Ø +æ ¡ ( Ip 0w : lw + Br ¤q B Bp q r Br Ó
l u r : u {z lw l q ¢ u 8z q u + s B (æ È :Ö u r V Qw I > u z Qw q + .u ly I {z s t Br Vq l sq 8z sq z
u r s Bp q z þ s n£ q sq 8z u Qy y [t q z r l q z q z : :
z lw q sq r } jv np Br {z s y 8
F
z q H B
Xu K l £ z ( K þ sq 8z |q lw . »u l Qw ht F
Qy q È Ø $æ l q H lw nr z t
±Î F
q Br :æ ±È Ö Ð
access to attrs=userPassword
by self write
by anonymous auth
by * none
access to *
: Bp lw + u Qy ly £ + u :} Bp sq Br Qw u q ¤ +} l sq {z : H p u r jv |q Bp sq Qw z s n£ nr +
Xu K l £ s {z : l
by * read
u Qy ly s £ : :} Br 8Ó u F} Ip q Br Qw Hu q V } l q z : V u F} Bp sq Br Qw u sq I u r ¤ F
8z sq q Br + u Qy y
s Bp q z u H q ` : 8 | Bp "q j²³)°
© H²)² º+ µ
I¶ B F
sq 8z ht Qw : 8z q Xu Õ u H q K : q sq 8z Ó
Bp Qw r Ëv sq ly l q ¤Î ~ lw } l Qy x Qw B 2 u ¼t (~ .u :Ö ÉØ ( u .u lw : ~ sq Qw r xv l 8z q V Bp sq r
l Qw ht Qw ly u Ãz F
{z s sq lw s nr ht +} l I ~ q q Ì sq r q V " f © H² ² º+ µ
b¶ u r , À © H²U²
+ µ
¶
t
Tm nd E
[
i -
s
u
@ ) E
Y E
[
i v fd
e
v nd A
> i
: Bp Vq l Qw ht F
Qy q l I 8 z t B H Qy Qw q Br à u :} Bp sq Br Qw u lw nr lw : ~ Qw r V Bp ¤q l q z q z
} l Qw r xv .u Qy q u 8z q Ì I
Xu K l £ {z : ( Bp lw : lw : Bp q ht q p V r s 8z [t u Qy Qy x +} l q V ~
{ Å ¶ Mß8 Ã z Bp sq Qw r Ëv ly jv Qw nr +
Xu K l £ z ( K Çù s z l q H :} z Qw Bp lw : ht q p
l p s :} ly ¢ Br Qy x ~ q } l q V n£ Qw np q Br H 8z :
q V Br Br sq lw r K
ÉÈ [t z Vq l q H :} z q ht sq p V lw : } l Vq Br ¤q B Bp q ã È ¥ ×æ u :} Bp sq Br Qw u lw r
ht sq p u Br lw l [t l l F} p Xu : 4 Ý
(ç ã : Ó [Ô ñ *í } ï H : Bp lw : lw : Ç~ Xu l q Õ r »u l sq z q
r n£ nr Ç~ s np Bp |q Qy Qw sq Br à u r V Bp Vq l sq 8z sq 8z u Qy ly n£ Qw r Ëv 8 s z »u l Qw ht F
Qy q
H p u Qy Qy q r jv sq Ó 8z q l +
s r l Vq l H Bp q ht q ã È ã Õæ lw + u ly K Hu
u ~ Qy Vq B Br q v lw u Qw r v
: u .u q Br H z F
lw nr F
z sq à l F} Ç~ l q j :} sq Br à F
q z u lw r K
:æ È ×Ö u ly K V l F} F
+
s 8z : q Br H z F
lw s r u r Õ u F} Bp q Br Qw u lw s nr +} l Qw r v
: {z u r l
z B +æ u q Ãz ¥ sq F} 8z Qw Ç Mí ñ ï ( :æ ± lw : H ly l sq ¬y x z q ly u q ¤ Bp Vq ly q z ã ã æ
l H Bp sq ¼t sq u r V } l q : Bp Vq K u ht |q sq 8z Qw Qw Hu sq Ó Ç~ Xu l q V ht q p ( K nr Qw 8
l Qw ht F
Qy q l I 8 z ht X ( :æ ± F
z lw q : F
{z l q z q Ãz lw sq Br Qw ¾ u r ¤ F
{z sq Ó
lw r s ( u .u Qw nr z u r l Qw à K Qw B lw : } l q F} y £ Ip q 8z |q F
ly Hu Qw Br sq Ì B
Xu K l £ z (
ht lw v Bp B ~ q
Xu K l q Õ u H {z K : Bp q Br sq 8 : Bp Vq K u ht |q ¼t sq H p u Br lw l Æt u r u ly K | ~ q
} l q ¤ F
{z s q Bp q lw q Br Qw ¾ B Bp |q Qy Qw sq Br B Bp ¤q l q z q z n£ Bp sq 8z |q Ip q
H Qy Qw q Br I p Xu : ~ q q nr lw K Ò :} q ¤ n£ Qw p ßu l F} Qw u ~ Qy |q Ëð ñ Nò » H q z Qw Qw u q
I lw + q nr [t s 8z Vq u F
F
z F
8z lw u ^q u r ¤ H Bp q u F
q )z +} l ¤q .u F
8z Qw > u q Ø sq 8z Qw Qw Ó
u lw nr È :} p s 8z Qw x 8 Ãz Bp lw : :
F} z +
l q z u Ip q z p u r jv sq Qw Ãr Ëv sq 8z Qw Qw u q
z t Ïu F
F} ~ Qy Qw Ý l F} F
:
Qy Qw sq {z ( Bp lw : lw : q Xu l x V l q I :} Ñ
+} l Qw r Ëv ±Î :
sq Br ã ã .æ Ð
openssl genrsa -des3 -out ca.key 2048
s ¢} n£ Qw Qy y ~ q F
z ht F
q V V l F} F
F
Qy ¾ K ht q Qw Br 8 s 8z [t u lw r ( Bp q z q l F} Qy Ã
openssl req -new -x509 -days 365 -key ca.key -out ca.cert
Bp |q ht [t u r : + u Ç~ s q n£ Qw Qy y ~ |q £ Qw Qy q K XÐ Ïu sq x Qw Qy Vq u r ¢ Ïu H q z Qw Qw u q
Qw Qy q H : Bp q l ¤q Hu z q Bp q (~ Xu l lw + B Bp q Ø q z Qw Qw u lw nr ±È F} p z Qw (
openssl genrsa -out ldap.key 1024
s ¢ } n£ Qw Qy :y u v Hu Qw nr ~ Vq Xu l q V 8 Ãz Qw Br 8 8z [t u lw nr Qw Qy y Qw nr Bp q Ø q z Qw Qw u q
openssl req -new -key ldap.key -out ldap.csr
ã lw jv Br Qw r v +à q X F} q l ( Bp |q z Qw Qw u y Qw q Æt lw : F
:} I Bp q :æ ±È ×Ö l sq 8z sq z r u ht q
wQrn£npBqsrn
Fz{st¼
FqV8zÄDØstht[rnuthq¦ó(pBwl+lpÃ}FylV~qpBq|°³ÿ0ÞÀ
ruthq|pÃuHIHyQwQqrB:£nwQyQy}+lq|£npBqrnrBuHwQrÃvËpIqVlqzqz ¡Iwl:~qlI
}lqVu.}:yQyQÓÞj}uyQw¬wQqÕ:t[uwQrnruthqq|puIpB"q Ŷ M HU° ßwQy¬q|w0:r
qsrBz
Fq¢uX(wQIth}lB~qzquXV~xpBqæ:鱅 lqzqzÐ
:zqHIpIwl(wQyQq
qsz8xuz8qs}:yQyQÇåÊÑlq|pBq|ØÈýVlwlvjrnpBqHqzwQwQuqÐ
openssl x509 -req -in ldap.csr -out ldap.cert -CA ca.cert \
: Bp q 8z q l :} Qy B lw + .u Qw Qy q u Qy Qy q D ¶ MJ ¡0 )° ³
ãÀ s Br 8 u Qw Br Qw Ãr Ëv Ip q H q 8z Qw Qw u q 8 Ãz Bp q
-CAkey ca.key -CAcreateserial -days 365
:æ È ×Ö l q z sq {z Ñ} u nr sq BÌ u ht Qw Br q H q z Qw Qw u q : n£ Qw np Bp q ht [t u r : Ð
: Bp q (æ È ×Ö l sq 8z sq z Br q q ( : F
Qw q + B Qw + n£ nr sq 8z Qw Qw u Vq u r V q x Qw Qy q l
openssl x509 -in ldap.cert -text -noout
u r ¢ u ly K V .u s :
¾ s B Bp |q Ø ÉÈ H q 8z Qw Qw u q H : Bp q sq x Qw Qy q ht +} l à Br Qy x ~ q
z q Xu : u ~ Qy |q ~ x Bp ¤q l q z q Ãz F
{z H q K l K [t u q Qw I [t gq } Xò »ò u r ¢ n£ Br q V ~
Bp ¤q n£ Br q z B Bp Vq l sq 8z sq -z M ±Î F
q Br :æ ±È ÑÖ u nr ~ q z :} r Xu : {z Ãz u nr ~ q
s ly V V l sq B Ê ¡ É V u r s Bp q z } l sq z u q z ~ Qw r Qw r Ëv Bp q ( Ø ÑÖ +
s 8z ÑÈ :
Qy Qw Br q ( | ² MX¶ J ¡0 µ r, z q Qy y Bp Vq l sq 8z sq z u Ç~ s :} I Bp q Br sq £ Qw Qy q K Ð
TLSCertificateFile /etc/openldap/keys/server.cert
TLSCertificateKeyFile /etc/openldap/keys/server.key
o Bp sq nr Bp ¤q l q z q z lw : Br sq Ì B z q l u 8z q V Qw I £ Qw Qy y ~ Vq u ~ Qy |q 8 | +} l q : (æ 2 ¡ I n£ Qw Qy y
TLSCACertificateFile /etc/openldap/keys/ca.cert
u ly K ¤ l :} F
8z I ã ã Õæ Qw B ly ¤ ~ Qw r ¤ V u r ldaps:/// ±Ê à .æ + [t u q
, ² U² '{ D ¶ Mbu r & -{ Å ¶ Mß} l q ( :æ ã Xu ( ¢ Ïu Qy Qw Br |q p q p ly : u +
Br nr Bp q
H Qy Qw q Br I [t u H Bp Qw Br q K Ð
:pBwl:
:zwlq:z{url
zÓyQqqyqsrBz
Fw0srBæ(ÈÖ×lqKlwlrlXpB}+
ssl start_tls
vwQwQrvxKthq|
:zqswlrn
uXKl£z:(qs þ s£qsqzXwQÃ(sq:r
v}+uzÕuXvuwQrlI~Çvj}++lqsz8qsz{KÐVvqIpIwl(qsÌz{u.
Fz{sqswlsrnwQBwl
rBqsqKKuz8V8¤vjwQqpBqHyQwQqsrBBt[uHpBwQrBq+u.
F¾BpBq|ØÈÉqsz8wQwQuq
puI£uX:}+lqVVlwlvjrnpBqVÒqz8qzHqzwQwQuqàqHqsrBBqsz{lwlsr+
,²U² {'D¶ Mbur&
-{Ŷ MߣnwQyQyqsz8wQxpBqVlqzqzwlqrBwQxwQByQwQrBq+BpBwl
8sz8tuzqVuX:qV p q p yl(u
rB8Ð
tls_checkpeer yes
¼ n£ Qw .u Ç~ jv +} + l sq 8z q Ãz lw : q Br :} Br sq 8z q ¤ Bp q Qy Qw sq Br B n£ Qw Qy y Qw ht ht q 0w u q Qy
tls_cacertfile /etc/ssl/ca.cert
H ly l |q Bp q :æ ±È ÑÖ s Br Br q H lw r u r ¢ sq Br x Bp Vq u q ht F
q ¤ ly jv Qw r s q
p u I Bp q z q Xu K nr 8 s z Bp Vq q Br Qw q V ly jv Qw nr Hu nr ~ q p u z V Qw Ãr V Qw nr Bp q
H Qy Qw q Br I ly jv Qw Qy q K HÐ Qw I [t u x ~ q Br sq q K K u 8z x :} z r r .u Bp lw jv np Qy q sq (y s
q ~ } v jv Qw r Ëv V l sq q Bp q z q Qy sq > u Br I ht q K K Xu jv q {å s Vq u ly K p u I sq 8z Qw Qw u q
sq 8z Qw Qw u 0w s nr lw + Ïu 8 u Qw z Qy x 8z sq sq Br Xu : ¬w lw s nr 8 & j, ² S² { D !¶ bu r & { D !¶ bK
Bp |q q z l lw r + l Bp Qw F
F
q ¤ £ Qw np [t l B ±Î lw l z Qw ~ F} lw s r + ( | r I sq B p u q
Qw
2uth~(uÓú ú ú»puX:pBqVs
:wlsrn8|}+lq|(æ:£pBqsruHqKlwQrvËæ(ÈÖ:
ps}+vjpnwQÃ:q(rÃIqIpuqq|pBqs¾lqsz8qzHqsz8wQwQuqKH+
qsru~yQq:æ(uX:VpBwl:8|pBqVvjyl~(uy:lqHwlsrBpBqrBwlvËwQyQqÐ
±Î Bp q Ãz r u ht q l q z Qw H q H Qy Qw q Br : Qy Qw q È :} s &t s :} Br à u r ¤ ±È 4Ô ( r s I q
ldap ssl = start tls
p u |q Ip Vq u ~ Qw Qy Qw x } l q ( :æ u u Qy Qy K F} Br 8 z F} r u q Qy x Bp q z Vq u z Vq l Qw Qy y
H Bp Qw Br Ç : Qw nr Bp Vq u z &t s :} z
ë
h d Õ_ nd Íô hS c hS n_ U & ÍY wY lG m
: Bp lw + Hu z q .u lw + l Qw Qy y {z u Bp q Ãz ly Hu H Qw r v : Bp q :Ö È Õæ ht lw jv z u 0w s nr ly + u z q
v ¤ 8 z Ir q z Qw r xv u r ¤ ly Xu Qw r Ëv Bp q Qw Br Qw lw u :y ( u u X ~ F} s Br |q (æ È ¢Ö lw
Qw nr } l Vq Xu : Bp q r u ht q Ò q 8z Qw q ( ¢} n£ Qw Qy y Br sq q Õ s Bp q Ãz 8 ly : H 8z q Hu ¤q Hu Ãr
[t u r Xu jv ¤q u F} Br : q ã z Qw F
8 : u nr ~ q ~ :} Qw Qy à u {z s :} r Å ¶ X³² U°
U40 bV Hu Ãr
Å ¶ M Hµ ¶ ´ 1z ß {z s t Bp q ±Î F
q Br :æ ±È Ö lw l z Qw ~ F} lw s Br z u z F} r Õ s Br Vq B Bp q
FÖ q z y [t F} Qy q : p u l F} F
+
s 8z I (æ È +Ö ±È r s Bp q z } l q F} y y lw Z
Ó u
v q Br q z u Qy Ó :
F} 8z
l |q (æ È ¢Ö ~ {z £ l sq z p [t Qw Qw q z
: Bp q z q lw + u I Qy q Xu l à Br q F
z ½ q H I :} r q Ãz £ Hu V 8 ¤ sq q ly s ×
l F
sq Qw Qw
[t u r Xu jv sq ht q Br I ly : 8 s z :æ ±È ¢Ö b ¡ l Ç l q [t K ! Å ¶ MÀf´ D ò lw : Ç~ Xu l q Õ u
2 s :} z sq Çù z jv ¤q Hu Ãr V sq q Br } Hu Qy óy x :
ly u r : | p u Vq .u n£ q ~ Ó Ç~ Xu l q V [t u r Xu jv sq Ó
ht sq Br I Qw Br q z 8 u q
×ê hS XZ a [Y BZ c hd Õ_ bk S
È nr (æ È ×Ö l q z q z F
z lw ¬w r Ëv b ¡ l q 8z ¬w H q lw : Qy Qw q Qy x p u r Qy q ht :} H p
[t s 8z |q z u Qw O p u r Br q ½ +} l à l q z Qw H Qw r xv DÄ n£ Bp Qw q
Xu jv q K {¦ z q j :} q l + K
F
sq 8z 8 s 8z [t u Br H q lw + u nr Qw ht
z Hu Ir B r l lw sq {z u lw nr Qw r .u ly u z jv q Br sq ͣ s 8z (
o Bp sq r l w Qw r Vv l q 8z q {z : Qw I lw : Br q H q K K u z x 8 | r £ p £ ht F} np {z u Qw Ï 8
sq Ì F
q H 8 Ð + Hu ~ Qy ^q »I l F} ht &t u z lw l q : Bp q z q l F} Qy + K ht Vq l Qw ht F
Qy q q l 8 : n£ Qw p
(~ s p -{ Å ¶ Mbu r j, ³² U² { Å ¶ ß Br lw jv F} 8z q :
öÔ z q 8z sq sq Br B sq {z l lw s r + j, ² S² { Å ¶ ß[t u |q ¼t F} H p [t s 8z q sq ¬w H Qw q Br I } 0 ¤q
Bp ¤q l q z q Ãz p u nr Bp ¤q ly q z s Br q K : Bp q } l Vq .u u Bp ¤q ( u sq [t r u ly K
Bp sq Qy +
l X p } jv np Qw : q : 8z q l F} Qy B Qw r s Br q [t z q ly r jv Ó Qy Qw q V (æ È ¢Ö Br Br sq Ó
lw s nr :
sq z H Qy Qw q Br I [t u H Bp Qw Br q
È nr (æ È ×Ö l sq 8z q Ãz n£ Qw np ly v jv Qw r Ëv :} z Br q Õ s º l Ãp :} ly ¤ r I p u Vq u Br
Qw Qw F} Qy x Qw r l q z Qw Qw r Ëv ñ Xò »ò l q u 8z H Bp q : F
q z l sq s r X ~ F} B Qw B ( :æ lw ( Qw nr } l q
Bp q l à B Br Br sq lw r l sq :}
u r V ~ Qw r Qw r Ëv lw : Qy Qw sq Qy x 8 | 8 Hu z F} £ sq lw jv p
Bp Vq l q u 8z H np ly Xu ( ýÈ ly u z jv q
s (y s B Qy Qw q Br : n£ Qw Qy :y Hu ly K | 8z q l F} Qy B Qw nr [t u Br
Bp F} r 8z q : + B Br Br sq lw r : ~ q Qw r Ëv Bp sq ly Õ s :
sq Br K Bp Vq l q z q z u r V Qw
l F} F
8z Qw r xv s F
q {z u Qw r xv l ( l sq Æt ht +} l I ~ |q s Br lw jv F} 8z q V V l F} :
s 8z à u
l F} ¬w H Qw q Br I Br :} ht ~ q z s º s :
sq nr ¡ Qw Qy q K
:æ È ×Ö l q z q z : Hu nr ~ q Ir ¡ lw v :} z q ¤ 8z sq F
Qy Qw u Vq : u Ïu z t .u [t Xu l q z
l sq 8z sq 8z K | Bp |q 8z q Xu 8Ó Ir Qy ¾ X F} q z x ly Xu ¤ u nr ~ Vq l F
8z q Xu Õ u H {z K + Xu ( [t u Br
[t u H Bp Qw Br q + Xu : Br sq q K K u 8z Ç ±Î F
q z u lw s r E M Qy Qw q
Xu K l £ z V H p u r jv Qw r 'v p u
z q l F} Qy I Qw nr Ãp Hu Ãr jv q : Bp ¤q ( u u (~ u Ò Vq jv sq B z q sq 8z z q ¤ Ç~ u H x Bp |q [t Xu l sq z
l sq 8z sq {z ( Ip q 8 z [t u s p q p ly ( u
s Br l :} F
z 8 : ht F} Qy Qw :
Qy ¤q l q z q z : ¬w r
pBq|8z8tsußl
uHqÓ8lqs
+uzuqVyQwllurVpBq¤lqzqz+uz8qzwQq¤wQrn}Fz8r
}FrBwQy(srBqVurl£nqz+zpBqyQwllIwl:qÌpu}lq(
48N ¤!`N¥M ¦l4`§ ¨£N¢U¥M© ¤!`N¥M41¤ª`«
Z¡`N¢)£N48¤! ¬ M8§t Z¡`N
N¢«M«M«S8¤!
àq þ uüXJI.ylvwQr ñ ñ û
£nwQpnrl
I¯
2uth~Çu.srBrBqHMrs ñ ñ I
Ö:(Ø
I
2uth~(u.srBrBqs î î L
£nwQpnrÃlt Mr
I¯
Ö:(Ø
2uth~(u.srBrBqs ú ú ñ ò¯
£nwQpnÖ:ØÉurVrÒ
àq þ uüX ú»ylvwQr ú î
£nwQpnrl
} I¯
®I(£VsBpBqlqzxz8qs}:zrb°)°°)
ßqrBzxz{stÆpBq
Ýz}F
¢u~yQq
¯.Ö:yQ}+rBqrBrBqswlsrn
:qszHyQwQqrBIt[upBwQrBq|8
z ,)² 0¡¶
± £N²8´³µ¶2·P¸ 8¤$£§"4¹#¡E¤'« §"²º»¥M48N8«
÷Y&_ÕkyG8ÚÕm¼e0Y&_¢m
Bwl+j}FwQq|
+KlwQ~yQq|8|}+lqæ:ÈÖ×uX+uÏbq£z8V ¡rB8zt[uwlsrnãqz8wQqs
ps}+vpuBpBq|t[thqrIBwQIwl:rsj}FwQqVurħ}FsBpBq~(Ìnur¤wQrB
Fz}:Hwlr¦
:z}:H(pBqzqwl:
qsrBwluy8szth}FpvjzquqzlqH}:zwQ
purnt[lÃpBqsz8sz8t[+Bn ãIur¤£nwQpÍu.~wQsB
Fy0urBrIwQrvËwQlps}:yl
FzwlqVv¤
Fqz8zt[uHrIq|8
¼ öSVa¥ShZ¥Sh_¾kbSnm
IX¾ ½2VX°Ã¯°²´Åµ¶ « ° ® °)
S°H°
TRãqs
FpBqrnÖ¢ÝqzÖFz{ ½ qHBÈpBqru
ÖFz{sqsqwQrv+BpBqÊãç(b ¡ð owQrBqz-INLL»(qspBrIwQuyØrBqsz8qsrBq
£n£n£ thwQ q} p uH8 p upIqruX thwQ q} p uXl8u p
:z ½ qs p pIqlwl:qÓ
p pBqlwl:9wll p : p pBqlwl: Ö:
ú$àùØúXûòXEü ¿&,A¿
Mµ 0WVzÞµ
D²n´ ,!ÀÂÁ¿ © ²Ã « °4À +ºµ
T ,rzÞµ
UÀ´Dµ ,
® )°
U°Xf´ 0¡°8Xæ þ s£uz{:Ho÷sz8xwl:}Frqsz£ux}:
:uq|pBqàùØÐ
pB
Ð pp ££n£
uXyl st pÄ yQ}Fqsp p zHúXûIòXü~wlK Ì
û$àùØú LXú »È}:pBqsrBwQuwlrbÔ[qp(:8szæ:ÈÖ
}$àùØúXúXúXú»ãwQth
FyQqÈ}:pBqrIwQuwlrur¤ãqH}:zwQxæ+uHqz
ñ$àùØú LXûò.æ(wlvpB£nqswlvjpBIwQz8qssz8xÈHqK:Ö:zy Mû Ð
ç:Ìqrlwlsrn8z:z{url
zIæ.uqszãqH}Fz8wQ
îX$àùØúXúXñ I.æ(wlvpB£qswlvjpBIwQzqH8sz8VȱHqK:Ö:zsy Mû
gf Y[Ú×Zk Snm
α
FqrBæ:ÈÖ
±Î F
q Br ã ã æ
www.openldap.org
Ø z +} : ¥ È ã æ
www.openssl.org
ä:qzqyQqxä
asg.web.cmu.edu/cyrus/
n ã (æ ±È Ö
www.sleepycat.com
FÖ ±È Ô :æ ±È Ö www.padl.com/software.html
4Ô lw jv {z u lw nr ly
Å
æ:ȱÖF}:wQyl K }Fzqs8z{vq rBq
Fz ½ qH p yl:u
:}FwQyl p
biot.com/gq/
p
:pBwl:
u
:qszur £nn£ £ClwQyQylIXl8 }F p
u
Fqz p uwQryluÇ pBthy
spBqz:~
Èrzq£ ùwQryluH
ÙÇÆ=Æ¢Sh_&eÉÈ m ld
Êt #G yÆ~ÌË kbY&_ba
# slapd.conf
#
# Log level is a bitfield. 768 provides
# reasonable activity logging
# Logging goes to syslog with facility code
# LOCAL4
loglevel 768
include /usr/local/etc/openldap/schema/core.schema
include /usr/local/etc/openldap/schema/cosine.schema
include /usr/local/etc/openldap/schema/inetorgperson.schema
include /usr/local/etc/openldap/schema/java.schema
include /usr/local/etc/openldap/schema/krb5-kdc.schema
include /usr/local/etc/openldap/schema/misc.schema
include /usr/local/etc/openldap/schema/nadf.schema
include /usr/local/etc/openldap/schema/nis.schema
include /usr/local/etc/openldap/schema/openldap.schema
include /usr/local/etc/openldap/schema/corba.schema
include /usr/local/etc/openldap/schema/samba.schema
pidfile /usr/local/var/slapd.pid
argsfile /usr/local/var/slapd.args
# How we want passwords stored
password-hash {SSHA}
# Define SSL and TLS properties (optional)
TLSCertificateFile /etc/openldap/keys/server.cert
TLSCertificateKeyFile /etc/openldap/keys/server.key
TLSCACertificateFile /etc/openldap/keys/ca.cert
# Define SASL properties (optional)
sasl-realm green
sasl-host brick.skills-1st.co.uk
sasl-secprops minssf=112
########################################################
# database definition
########################################################
database ldbm
suffix "dc=example,dc=org"
rootdn "cn=Manager,dc=example,dc=org"
# Cleartext passwords, especially for the rootdn, should
# be avoided
# See slappasswd(8) and slapd.conf(5) for details.
# Use of strong authentication is encouraged.
rootpw secret
# The database directory MUST exist prior to running slapd
# AND should only be accessible by the slapd/tools.
# Mode 700 is recommended.
directory /usr/local/var/openldap-ldbm
# Indices to maintain
index uid eq
index uidNumber eq
index gidNumber eq
index cn eq
index memberUid eq
index ipServicePort eq
# Access Control
# Users can change their own passwords
# Everyone can read everything except passwords
access to attrs=userPassword
by self write
by anonymous auth
by * none
access to *
by * read
###########################################################
# end of slapd.conf
###########################################################
Ù ¢hS ~_ Ée È ÎÍ gf ¾d c ¢Ï d nk [Y n_ Ba le ô
Ç=
Æ Æ
[global]
netbios name = vm15
workgroup = S2
encrypt passwords = Yes
preferred master = Yes
wins support = Yes
log level = 1
# Make this a PDC
domain logons = Yes
os level = 34
local master = yes
domain master = yes
# LDAP params
ldap admin dn = cn=manager,dc=example,dc=org
ldap server = brick.skills-1st.co.uk
ldap suffix = dc=example,dc=org
ldap ssl = start tls
# Required share on PDC
[netlogon]
comment = Domain logon service
path = /var/samba/netlogon
public = no
writeable = no
browsable = no
# Profile store for NT/2k
[profile]
path = /var/samba/profile
create mask = 0600
directory mask = 0700
nt acl support = no
read only = no
[homes]
guest ok = no
read only = no