13.07.2015 Views

Naming and Directory Services (DNS, NIS, and LDAP)

Naming and Directory Services (DNS, NIS, and LDAP)

Naming and Directory Services (DNS, NIS, and LDAP)

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

add: objectclassesobjectclasses: ( 1.3.6.1.4.1.42.2.27.5.42.42.16.0 NAME ’nisplusTimeZoneData’ \DESC ’<strong>NIS</strong>+ timezone table data’ \SUP top STRUCTURAL MUST ( cn ) \MAY ( nisplusTimeZone $ description ) )To create the ou=Timezone container, put the following LDIF data in a file. Substituteyour actual search base for searchBase.dn: ou=Timezone,searchBase ou: Timezone objectClass: topobjectClass: organizationalUnitUse the above file as input to ldapadd(1) in order to create the ou=Timezonecontainer. For example, if your <strong>LDAP</strong> administrator DN is cn=directory manager,<strong>and</strong> the file with the LDIF data is called tzfile.# ldapadd -D cn="directory manager" -f tzfileDepending on the authentication required, the ldapadd comm<strong>and</strong> might prompt fora password.The /var/nis/<strong>NIS</strong>+<strong>LDAP</strong>mapping.template file contains commented-outdefinitions for the timezone.org_dir table. Copy these to the actual mapping file,enable by removing the comment character ’#’, <strong>and</strong> restart the rpc.nisd daemon.# svcadm restart network/rpc/nisplus:defaultIf necessary, synchronize <strong>NIS</strong>+ <strong>and</strong> <strong>LDAP</strong> data as described in “<strong>NIS</strong>+ to <strong>LDAP</strong>Migration Scenarios” on page 264.Adding New Object Mappings (<strong>NIS</strong>+ to<strong>LDAP</strong>)The template mapping file, /var/nis/<strong>NIS</strong>+<strong>LDAP</strong>mapping.template, containsmapping information for all st<strong>and</strong>ard <strong>NIS</strong>+ objects. In order to support mapping ofsite or application specific objects, you will need to add new mapping entries. This is asimple task for non-entry (that is, directory, group, link, or table) objects, but canbecome complex for entry objects, if the <strong>LDAP</strong> organization of the correspondingentry data differs greatly from that used by <strong>NIS</strong>+. The following example shows thesimple case.▼How to Map Non-Entry Objects1. Find the fully qualified name of the object to be mapped.282 System Administration Guide: <strong>Naming</strong> <strong>and</strong> <strong>Directory</strong> <strong>Services</strong> (<strong>DNS</strong>, <strong>NIS</strong>, <strong>and</strong> <strong>LDAP</strong>) • January 2005

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!