This section provides a brief overview of how to configure OpenLDAP user
authentication. Unless you are an OpenLDAP expert, more documentation
than is provided here is necessary. Refer to the references provided in
Section 13.9 Additional Resources for more information.
The /usr/share/openldap/migration/ directory
contains a set of shell and Perl scripts for migrating
authentication information into an LDAP format.
| Note |
---|
| Perl must be installed on the system to use these scripts.
|
First, modify the migrate_common.ph file so that
it reflects the correct domain. The default DNS domain should be
changed from its default value to something like:
$DEFAULT_MAIL_DOMAIN = "example"; |
The default base should also be changed, to something like:
$DEFAULT_BASE =
"dc=example,dc=com"; |
The job of migrating a user database into a format that is LDAP
readable falls to a group of migration scripts installed in the same
directory. Using Table 13-1, decide which
script to run to migrate the user database.
Run the appropriate script based on the existing name service.
The README and the
migration-tools.txt files in the
/usr/share/openldap/migration/ directory provide
more details on how to migrate the information.
Existing name service | Is LDAP running? | Script to Use |
---|
/etc flat files | yes | migrate_all_online.sh |
/etc flat files | no | migrate_all_offline.sh |
NetInfo | yes | migrate_all_netinfo_online.sh |
NetInfo | no | migrate_all_netinfo_offline.sh |
NIS (YP) | yes | migrate_all_nis_online.sh |
NIS (YP) | no | migrate_all_nis_offline.sh |
Table 13-1. LDAP Migration Scripts