lug-bg: openldap
- Subject: lug-bg: openldap
- From: seo@xxxxxxxxxxxx
- Date: Sat, 2 Aug 2003 01:12:36 +0300 (EEST)
zdraveite
nqkoi imal li si e rabota s ldap
molq da me izvinite za "dulgiq mail" no mislq che nai dobre e da si opisha
problema taka:
user-a test (ldap user) si e opisan kakto si mu e reda (pone az taka si
mislq) kato posixAccount, shadowAccount
vijdam go s "finger" .. no inache "vse edno go nqma"
nss_ldap si e okay..
ili byrkam neshto
ldapsearch namira slednoto:
[root@test root]# ldapsearch -x
version: 2
#
# filter: (objectclass=*)
# requesting: ALL
#
# link, bg
dn: dc=link,dc=bg
objectClass: domain
dc: link
# users, link, bg
dn: ou=users,dc=link,dc=bg
objectClass: top
objectClass: organizationalUnit
ou: users
# groups, link, bg
dn: ou=groups,dc=link,dc=bg
objectClass: top
objectClass: organizationalUnit
ou: groups
# testgroup, groups, link, bg
dn: cn=testgroup,ou=groups,dc=link,dc=bg
objectClass: top
objectClass: posixGroup
cn: testgroup
gidNumber: 1001
# test, users, link, bg
dn: uid=test,ou=users,dc=link,dc=bg
objectClass: top
objectClass: account
objectClass: inetOrgPerson
objectClass: posixAccount
objectClass: shadowAccount
uid: test
givenName: Stefan
sn: Saraev
loginShell: /bin/bash
uidNumber: 1001
gidNumber: 1001
mail: seo@xxxxxxx
homeDirectory: /home/test
cn: test user
# search result
search: 2
result: 0 Success
# numResponses: 6
# numEntries: 5
v nsswitch.conf:
[root@test root]# head -n3 /etc/nsswitch.conf
passwd: ldap files nisplus
shadow: ldap files nisplus
group: ldap files nisplus
finger dava rezultat:
[root@test root]# finger test
Login: test Name: test user
Directory: /home/test Shell: /bin/bash
Never logged in.
No mail.
No Plan.
no tuk... usera go nqma
[root@test root]# id test
id: test: No such user
eto passwd:
[root@test root]# getent passwd | grep ^test
test:x:1001:1001:test user:/home/test:/bin/bash
i shadow:
[root@test root]# getent shadow | grep ^test
test:x:::::::0
(tuk "shadow" neshto ne e kakto trqbva)
v /etc/openldap/ldap.conf imam:
HOST 127.0.0.1
BASE dc=link,dc=bg
URI ldap://127.0.0.1
v /etc/openldap/slapd.conf access controla e sledniq:
access to *
attrs=userPassword
by self write
by dn="cn=root,dc=link,dc=bg" write
by users auth
by anonymous auth
access to *
by dn="cn=root,dc=link,dc=bg" write
by self read
by users read
by anonymous read
blagodarq predvaritelno na tezi koito biha mogli da pomognat
============================================================================
A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html
============================================================================
|