Openldapserver Service Installation settings

Source: Internet
Author: User
Keywords nbsp; install password first if
Tags access access protocol aliyun basic directory directory access protocol domain example

LDAP (Lightweight directory Http://www.aliyun.com/zixun/aggregation/34570.html "> Access Protocol), he is a simple X500 protocol version L. LDAP means Lightweight Directory Access Protocol, which is a simplified version of the X500 protocol. In order to be able to quickly describe, all information is stored in a tree, you need to decide the directory branch (directory Information tree: DIT). We start with a basic tree with two nodes on one root:

The "arranges" node saves your users
"Groups" node to save your user group

You must first decide what your LDAP root is. By default, your tree will be determined by your domain name. If your domain is example.com (which we will use in the example above), your root will be dc=example,dc=com.

Installation

First, the LDAP Service Daemon (SLAPD) is installed on the server, and the following packages are installed: SLAPD and ldap-utils (see Installingsoftware).

Translator Note: If you install this, there will be "starting OpenLDAP: (db4.2_recover not found), SLAPD, when you start the SLAPD program." Prompts appear, if you want to block out this hint, you can install the Db4.2-util package.

Enter your domain and directory administrator's password when you ask.

Only a few modifications are required on the default configuration. Edit configuration file/etc/ldap/slapd.conf first set the root user password.

However, do not use plain text passwords. Use SLAPPASSWD yourpasswd to generate encrypted passwords first

$ slappasswd
New Password:
Re-enter password:
{ssha}d2bamrtgbuhc6sxc0vfgwol31ki8iq5m

This example shows what happens when you use "secret" as a password. (Your results will be different due to the characteristics of the Ssha encryption mode)

Now edit the/etc/ldap/slapd.conf and copy the generated characters.

# make throaty you edit or add this directives after the ' database ' directive.
Suffix "dc=example,dc=com"
Directory "/var/lib/ldap"
RootDN "Cn=admin,dc=example,dc=com"
ROOTPW {ssha}d2bamrtgbuhc6sxc0vfgwol31ki8iq5m

Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.