LDAP (Lightweight directory Http://www.aliyun.com/zixun/aggregation/34570.html "> Access Protocol), he is a simple X500 protocol version L. LDAP means Lightweight Directory Access Protocol, which is a simplified version of the X500 protocol. In order to be able to quickly describe, all information is stored in a tree, you need to decide the directory branch (directory Information tree: DIT). We start with a basic tree with two nodes on one root:
The "arranges" node saves your users "Groups" node to save your user group
You must first decide what your LDAP root is. By default, your tree will be determined by your domain name. If your domain is example.com (which we will use in the example above), your root will be dc=example,dc=com.
Installation
First, the LDAP Service Daemon (SLAPD) is installed on the server, and the following packages are installed: SLAPD and ldap-utils (see Installingsoftware).
Translator Note: If you install this, there will be "starting OpenLDAP: (db4.2_recover not found), SLAPD, when you start the SLAPD program." Prompts appear, if you want to block out this hint, you can install the Db4.2-util package.
Enter your domain and directory administrator's password when you ask.
Only a few modifications are required on the default configuration. Edit configuration file/etc/ldap/slapd.conf first set the root user password.
However, do not use plain text passwords. Use SLAPPASSWD yourpasswd to generate encrypted passwords first
$ slappasswd New Password: Re-enter password: {ssha}d2bamrtgbuhc6sxc0vfgwol31ki8iq5m
This example shows what happens when you use "secret" as a password. (Your results will be different due to the characteristics of the Ssha encryption mode)
Now edit the/etc/ldap/slapd.conf and copy the generated characters.
# make throaty you edit or add this directives after the ' database ' directive. Suffix "dc=example,dc=com" Directory "/var/lib/ldap" RootDN "Cn=admin,dc=example,dc=com" ROOTPW {ssha}d2bamrtgbuhc6sxc0vfgwol31ki8iq5m
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.