13.07.2015 Views

Naming and Directory Services (DNS, NIS, and LDAP)

Naming and Directory Services (DNS, NIS, and LDAP)

Naming and Directory Services (DNS, NIS, and LDAP)

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Information Tree (DIT), the mapping file also allows establishing time-to-live (TTL) for<strong>NIS</strong>+ data sourced from <strong>LDAP</strong>. While there often is a one-to-one mapping between<strong>NIS</strong>+ column values <strong>and</strong> <strong>LDAP</strong> attribute values, the mapping file can be used tomaintain more complicated relationships as well.The /etc/default/rpc.nisd file is used to select <strong>LDAP</strong> server <strong>and</strong> authentication,<strong>and</strong> controls some general rpc.nisd behavior. See rpc.nisd(4). The details of themapping are specified via the /var/nis/<strong>NIS</strong>+<strong>LDAP</strong>mapping file. For moreinformation, see <strong>NIS</strong>+<strong>LDAP</strong>mapping(4). The name of the mapping file can be changedby editing the /lib/svc/method/nisplus file. See “<strong>NIS</strong>+ to <strong>LDAP</strong> Tools <strong>and</strong> theService Management Facility” on page 253 for more information.The following terms are used in this chapter.■ ContainerA container is the location in the <strong>LDAP</strong> DIT where all related entries are stored. Forexample, user account information is often stored in the ou=People container,while host address information can be stored in the ou=Hosts container.■■■NetnameA netname is an entity in secure RPC (user or machine) that can be authenticated.MappingMapping is the relationship between an <strong>NIS</strong>+ object <strong>and</strong> an <strong>LDAP</strong> entry. Forexample, data from the name column in the passwd.org_dir <strong>NIS</strong>+ table (such asthe user name of an account) corresponds to the <strong>LDAP</strong> uid attribute of theposixAccount object class in the ou=People container. The configuration canestablish a mapping between the name column <strong>and</strong> the uid attribute. You can alsosay that the name column is mapped to the uid attribute (or vice versa).PrincipalA principal is an entity in <strong>NIS</strong>+ (user or machine) that can be authenticated.Usually, there is a one-to–one correspondence between netnames <strong>and</strong> principalnames.rpc.nisd Configuration FilesTwo configuration files control rpc.nisd operation.■■/etc/default/rpc.nisdThis file contains information regarding the <strong>LDAP</strong> server <strong>and</strong> authentication, the<strong>NIS</strong>+ base domain, the <strong>LDAP</strong> default search base, exception processing, <strong>and</strong>general rpc.nisd configuration, which applies whether or not <strong>LDAP</strong> mapping isin effect./var/nis/<strong>NIS</strong>+<strong>LDAP</strong>mappingThis file contains information on mapping of <strong>NIS</strong>+ data to <strong>and</strong> from <strong>LDAP</strong>. Thetemplate file (/var/nis/<strong>NIS</strong>+<strong>LDAP</strong>mapping.template) covers all st<strong>and</strong>ard<strong>NIS</strong>+ objects, except client_info.org_dir <strong>and</strong> timezone.org_dir. See252 System Administration Guide: <strong>Naming</strong> <strong>and</strong> <strong>Directory</strong> <strong>Services</strong> (<strong>DNS</strong>, <strong>NIS</strong>, <strong>and</strong> <strong>LDAP</strong>) • January 2005

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!