- Install the necessary files:
yum install openldap openldap-clients openldap-servers
- Modify the following options in the /etc/openldap/slapd.d/cn\=config.ldif configuration file:
#olcAllows: bind_v2
olcIdleTimeout: 60
- Generate the SSHA hash for the admin user:
slappasswd -s password
(example output: {SSHA}abunchofhash)
- Modify the following configuration options in /etc/openldap/slapd.d/cn\=config/olcDatabase\=\{2\}bdb.ldif. The domain will be test.com
olcSuffix: dc=test,dc=com olcRootDN: cn=admin,dc=test,dc=com olcRootPW: {SSHA}abunchofhash
- Modify the olcAccess option in /etc/openldap/slapd.d/cn\=config/olcDatabase={1}monitor.ldif so the dn is correct:
olcAccess: {0}to * by/ dn.base="gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn=auth"/
read by dn.base="cn=admin,dc=test,dc=com" read by * none - Start the OpenLDAP server and configure it to start at boot time:
chkconfig slapd on service slapd start
- Create an LDIF (LDAP Interchange Format) file with the configuration for our organization LDAP tree. Here we will create two organizational units one called People, where all users be a member of this ou, and another ou called Groups, which will be used to create groups for our organization. At the end of the file specify who is the RootDN for this LDAP tree (cn=admin,dc=example,dc=com). I named this file ldapconfig.ldif:
dn: dc=test,dc=com objectclass: dcObject objectclass: organization o: Test Org dc: test dn: ou=Users,dc=test,dc=com objectClass: organizationalUnit objectClass: top ou: Users dn: ou=Groups,dc=test,dc=com objectClass: organizationalUnit objectClass: top ou: Groups dn: cn=admin,dc=test,dc=com objectclass: organizationalRole cn: admin
- Apply our LDIF file and test if the LDAP tree is ready with the ldapsearch command:
ldapadd -x -D "cn=admin,dc=test,dc=com" -W -f ldapconfig.ldif
ldapsearch -x -b 'dc=test,dc=com' '(objectclass=*)'
- Create an ldap user by adding the below to an ldif file and running ldapadd as above:
dn: uid=user1,ou=Users,dc=test,dc=com
objectclass: top
objectclass: person
objectclass: inetOrgPerson
objectclass: organizationalPerson
uid: user1
cn: User 1
sn: 1
givenName: User 1 - Assign a password for the user:
ldappasswd -S -x -D "cn=admin,dc=test,dc=com" -W/ uid=user1,ou=People,dc=test,dc=com
- Create a group in the Groups organizational unit by adding the below to an ldif file and running ldapadd as above:
dn: cn=group1,ou=Groups,dc=test,dc=com
cn: group1
objectclass: groupofnames
member: uid=user1,ou=Users,dc=test,dc=com - To add a newly created user to the group after the initial creation create another ldif file and add the below text to it. Then modify the group with ldapmodify:
dn: cn=group1,ou=Groups,dc=test,dc=com
changetype: modify
add: member
member: uid=user2,ou=Users,dc=test,dc=com
ldapmodify -x -D "cn=admin,dc=test,dc=com" -W -f addto_group1.ldif
- To remove a user from a group create another ldif file and add the below text. Use ldapmodify to again modify the group:
dn: cn=group1,ou=Groups,dc=test,dc=com
changetype: modify
delete: member
member: uid=user2,ou=Users,dc=test,dc=com
ldapmodify -x -D "cn=admin,dc=test,dc=com" -W -f removefrom_group1.ldif
2014/12/30
Quick OpenLDAP Setup on CentOS 6.6
Subscribe to:
Post Comments (Atom)
Great blog thanks for sharing Looking for the best creative agency to fuel new brand ideas? Adhuntt Media is not just a digital marketing company in chennai. We specialize in revamping your brand identity to drive in best traffic that converts.
ReplyDeleteNice blog thanks for sharing Growing your own plant comes with its own challenges and responsibilities. This is why you need a plant nursery in chennai who is ready to help you out throughout the way and guide you through the hurdles of growing a plant - Enter Karuna Nursery Gardens.
ReplyDeleteExcellent blog thanks for sharing Pixies Beauty Shop is unlike any of the other cosmetic shops in Chennai. With tons of exclusive imported brands to choose from and the best value, this is the best shopping destination for your personal and salon needs.
ReplyDeleteAwesome blog thanks for sharing While choosing your perfect ride for driving, Accord Cars comes with and the best packages for you to pick from. Self drive cars in Chennai are done the easier. Just pick out your plan from hourly, daily, weekly and even monthly plans available.
ReplyDeleteVery useful blog thanks for sharing IndPac India the German technology Packaging and sealing machines in India is the leading manufacturer and exporter of Packing Machines in India.
ReplyDelete
ReplyDeleteنجار ابواب بالرياض نجار بالرياض
تركيب ستائر بالرياض شركة تركيب ستائر بالرياض
تنظيف مكيفات بالرياض شركة تنظيف مكيفات بالرياض
شركة تنظيف افران الغاز بالرياض شركة تنظيف افران بالرياض
13 steps only, the quickest setup possible!
ReplyDeleteThanks for Sharing this information's about Packing Machines....I really like it, Thanks a lot!!!
ReplyDeleteJava training in chennai | Java training in annanagar | Java training in omr | Java training in porur | Java training in tambaram | Java training in velachery
IEEE Final Year Project centers make amazing deep learning final year projects ideas for final year students Final Year Projects for CSE to training and develop their deep learning experience and talents.
ReplyDeleteIEEE Final Year projects Project Centers in India are consistently sought after. Final Year Students Projects take a shot at them to improve their aptitudes, while specialists like the enjoyment in interfering with innovation.
corporate training in chennai corporate training in chennai
corporate training companies in india corporate training companies in india
corporate training companies in chennai corporate training companies in chennai
I have read your blog its very attractive and impressive. I like it your blog. Digital Marketing Company in Chennai
no deposit bonus forex 2021 - takipçi satın al - takipçi satın al - takipçi satın al - tiktok takipçi satın al - instagram beğeni satın al - instagram beğeni satın al - google haritalara yer ekleme - btcturk - tiktok izlenme satın al - sms onay - izlenme-satin-al.com/youtube - google haritalara yer ekleme - no deposit bonus forex 2021 - tiktok jeton hilesi - tiktok beğeni satın al - binance - takipçi satın al - uc satın al - finanspedia.com - sms onay - sms onay - tiktok takipçi satın al - tiktok beğeni satın al - twitter takipçi satın al - trend topic satın al - youtube abone satın al - instagram beğeni satın al - tiktok beğeni satın al - twitter takipçi satın al - trend topic satın al - youtube abone satın al - instagram beğeni satın al - tiktok takipçi satın al - tiktok beğeni satın al - twitter takipçi satın al - trend topic satın al - youtube abone satın al - instagram beğeni satın al - perde modelleri - instagram takipçi satın al - instagram takipçi satın al - cami avizesi - marsbahis
ReplyDeleteinstagram takipçi satın al
ReplyDeleteinstagram takipçi satın al
takipçi satın al
instagram takipçi satın al
takipçi satın al
aşk kitapları
tiktok takipçi satın al
instagram beğeni satın al
youtube abone satın al
twitter takipçi satın al
tiktok beğeni satın al
tiktok izlenme satın al
twitter takipçi satın al
tiktok takipçi satın al
youtube abone satın al
tiktok beğeni satın al
instagram beğeni satın al
trend topic satın al
trend topic satın al
youtube abone satın al
beğeni satın al
tiktok izlenme satın al
sms onay
youtube izlenme satın al
tiktok beğeni satın al
sms onay
sms onay
perde modelleri
instagram takipçi satın al
takipçi satın al
tiktok jeton hilesi
pubg uc satın al
sultanbet
marsbahis
betboo
betboo
betboo
ucuz takipçi
ReplyDeleteucuz takipçi
tiktok izlenme satın al
binance güvenilir mi
okex güvenilir mi
paribu güvenilir mi
bitexen güvenilir mi
coinbase güvenilir mi
instagram takipçi satın al
seo fiyatları
ReplyDeletesaç ekimi
dedektör
instagram takipçi satın al
ankara evden eve nakliyat
fantezi iç giyim
sosyal medya yönetimi
mobil ödeme bozdurma
kripto para nasıl alınır
bitcoin nasıl alınır
ReplyDeletetiktok jeton hilesi
youtube abone satın al
gate io güvenilir mi
referans kimliği nedir
tiktok takipçi satın al
bitcoin nasıl alınır
mobil ödeme bozdurma
mobil ödeme bozdurma
smm panel
ReplyDeletesmm panel
iş ilanları
instagram takipçi satın al
hirdavatciburada.com
https://www.beyazesyateknikservisi.com.tr
servis
tiktok jeton hilesi
WsCube Tech is a top-class institute for learning Ethical Hacking, Penetration Testing, and more cybersecurity skills. Wifi Hack Online
ReplyDeleteShareMouse Crack With Serial Key Free. ShareMouse Activation Key helps you choose between Unprotected Mode and Protected Mode from this tab ShareMouse Crack
ReplyDeleteBest first: I wish you a wonderful Christmas, fragrant with pine and cookies, filled with carols and giggling and plastic police car chases, with hugs Unique Christmas Wishes
ReplyDeleteGood content. You write beautiful things.
ReplyDeletemrbahis
taksi
hacklink
korsan taksi
sportsbet
hacklink
sportsbet
mrbahis
vbet