Apple Mac OS X Server Command-Line Specifications Page 199

  • Download
  • Add to my manuals
  • Print
  • Page
    / 295
  • Table of contents
  • BOOKMARKS
  • Rated. / 5. Based on customer reviews
Page view 198
Chapter 9 Maintaining Open Directory Services 199
Managing OpenLDAP
To provide directory services for mixed-platform environments, Open Directory
uses OpenLDAP, the open source implementation of LDAP. A common language for
directory access lets you consolidate information from dierent platforms and dene a
single name space for network resources.
Whether you have Mac, Windows, or Linux computers on your network, you can set up
and manage a single directory, eliminating the need to maintain a separate directory
or separate user records for each platform.
Conguring OpenLDAP
The OpenLDAP server daemon is slapd, in /usr/libexec/. The primary conguration
les for OpenLDAP are located in the /etc/openldap/. There you will nd the slapd.conf
and slapd_macosxserver.conf les, which contains conguration information.
slapd reads and writes conguration information to the cong backend database
/etc/openldap/slapd.d which is another database by the search base cn=cong. The
old /etc/openldap/slapd.conf and slapd_macosxserver.conf les are created by slapd
but are not read by slapd and should only be used for a reference to the one-to-one
corresponding congurations in the olcGlobal object class under the cong entry. The
attributes and object classes have a prex of olc.
The directory administrator can modify conguration settings such as ACL or schema
settings by using Workgroup Manager with the inspector mode turned on or using
dscl. Also some settings such as sizelimit, timelimit, and SSL settings should only be
set using Server Admin.
Conguring slapd and slurpd Daemons
To congure the slapd and slurpd LDAP daemons and related search policies, use the
slapconfig tool. For more information, see the slapconfig man page.
Standard Distribution Tools
Two types of tools come with OpenLDAP:
Tools that operate directly on the LDAP databases—These tools begin with  slap.
Tools that go through the LDAP protocol—These tools begin with  ldap.
You must run the slap tools on the computer hosting the LDAP database. When
using the slap tools, shut down the LDAP service. If you don’t, your database can get
out of sync.
Page view 198
1 2 ... 194 195 196 197 198 199 200 201 202 203 204 ... 294 295

Comments to this Manuals

No comments