This section provides a brief overview of how to configure
OpenLDAP user authentication. Unless you are an OpenLDAP expert,
more documentation than is provided here is necessary. Refer to the
references provided in Section 13.9 Additional
Resources for more information.
The /usr/share/openldap/migration/
directory contains a set of shell and Perl scripts for migrating
authentication information into an LDAP format.
|
Note |
|
Perl must be installed on the system to use these scripts.
|
First, modify the migrate_common.ph
file so that it reflects the correct domain. The default DNS domain
should be changed from its default value to something like:
$DEFAULT_MAIL_DOMAIN = "example";
|
The default base should also be changed, to something like:
$DEFAULT_BASE =
"dc=example,dc=com";
|
The job of migrating a user database into a format that is LDAP
readable falls to a group of migration scripts installed in the
same directory. Using Table 13-1, decide
which script to run to migrate the user database.
Run the appropriate script based on the existing name
service.
The README and the migration-tools.txt files in the /usr/share/openldap/migration/ directory provide
more details on how to migrate the information.
Existing name service |
Is LDAP running? |
Script to Use |
/etc flat files |
yes |
migrate_all_online.sh |
/etc flat files |
no |
migrate_all_offline.sh |
NetInfo |
yes |
migrate_all_netinfo_online.sh |
NetInfo |
no |
migrate_all_netinfo_offline.sh |
NIS (YP) |
yes |
migrate_all_nis_online.sh |
NIS (YP) |
no |
migrate_all_nis_offline.sh |
Table 13-1. LDAP Migration Scripts