13.07.2015 Views

Naming and Directory Services (DNS, NIS, and LDAP)

Naming and Directory Services (DNS, NIS, and LDAP)

Naming and Directory Services (DNS, NIS, and LDAP)

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

General <strong>LDAP</strong> Tools<strong>LDAP</strong> comm<strong>and</strong> line tools support a common set of options, including authentication<strong>and</strong> bind parameters. The following tools support a common text-based format forrepresenting directory information called the <strong>LDAP</strong> Data Interchange Format (LDIF).These comm<strong>and</strong>s can be used to manipulate directory entries directly.ldapsearch(1)ldapmodify(1)ldapadd(1)ldapdelete(1)<strong>LDAP</strong> Tools Requiring <strong>LDAP</strong> <strong>Naming</strong> <strong>Services</strong>TABLE 14–3 <strong>LDAP</strong> ToolsToolldapaddent(1M)ldaplist(1)idsconfig(1M)FunctionUsed to create entries in <strong>LDAP</strong> containersfrom the corresponding /etc files. This toolallows populating the directory from files. Forexample, it reads /etc/passwd format file<strong>and</strong> populates passwd entries in the directory.Used to list contents of various services fromthe directory.Used to set up Sun Java System <strong>Directory</strong>Server to serve <strong>LDAP</strong> naming service clients.Example pam.conf File for pam_ldap## Authentication management## login service (explicit because of pam_dial_auth)#login auth requisite pam_authtok_get.so.1login auth required pam_dhkeys.so.1login auth required pam_dial_auth.so.1login auth required pam_unix_cred.so.1login auth sufficient pam_unix_auth.so.1login auth required pam_ldap.so.1#Chapter 14 • <strong>LDAP</strong> General Reference (Reference) 199

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!