zdraveite
nqkoi imal li si e rabota s ldap
molq da me izvinite za "dulgiq mail" no mislq che nai dobre e da si opisha
problema taka:

user-a test (ldap user) si e opisan kakto si mu e reda (pone az taka si
mislq) kato posixAccount, shadowAccount
vijdam go s "finger" .. no inache "vse edno go nqma"
nss_ldap si e okay..
ili byrkam neshto

ldapsearch namira slednoto:
[EMAIL PROTECTED] root]# ldapsearch -x
version: 2

#
# filter: (objectclass=*)
# requesting: ALL
#

# link, bg
dn: dc=link,dc=bg
objectClass: domain
dc: link

# users, link, bg
dn: ou=users,dc=link,dc=bg
objectClass: top
objectClass: organizationalUnit
ou: users

# groups, link, bg
dn: ou=groups,dc=link,dc=bg
objectClass: top
objectClass: organizationalUnit
ou: groups

# testgroup, groups, link, bg
dn: cn=testgroup,ou=groups,dc=link,dc=bg
objectClass: top
objectClass: posixGroup
cn: testgroup
gidNumber: 1001

# test, users, link, bg
dn: uid=test,ou=users,dc=link,dc=bg
objectClass: top
objectClass: account
objectClass: inetOrgPerson
objectClass: posixAccount
objectClass: shadowAccount
uid: test
givenName: Stefan
sn: Saraev
loginShell: /bin/bash
uidNumber: 1001
gidNumber: 1001
mail: [EMAIL PROTECTED]
homeDirectory: /home/test
cn: test user

# search result
search: 2
result: 0 Success

# numResponses: 6
# numEntries: 5
v nsswitch.conf:
[EMAIL PROTECTED] root]# head -n3 /etc/nsswitch.conf
passwd:     ldap files nisplus
shadow:     ldap files nisplus
group:      ldap files nisplus

finger dava rezultat:
[EMAIL PROTECTED] root]# finger test
Login: test                             Name: test user
Directory: /home/test                   Shell: /bin/bash
Never logged in.
No mail.
No Plan.

no tuk... usera go nqma
[EMAIL PROTECTED] root]# id test
id: test: No such user

eto passwd:
[EMAIL PROTECTED] root]# getent passwd | grep ^test
test:x:1001:1001:test user:/home/test:/bin/bash

i shadow:
[EMAIL PROTECTED] root]# getent shadow | grep ^test
test:x:::::::0
(tuk "shadow" neshto ne e kakto trqbva)

v /etc/openldap/ldap.conf imam:
HOST 127.0.0.1
BASE dc=link,dc=bg
URI ldap://127.0.0.1

v /etc/openldap/slapd.conf access controla e sledniq:
access to *
        attrs=userPassword
        by self write
        by dn="cn=root,dc=link,dc=bg" write
        by users auth
        by anonymous auth

access to *
        by dn="cn=root,dc=link,dc=bg" write
        by self read
        by users read
        by anonymous read

blagodarq predvaritelno na tezi koito biha mogli da pomognat

============================================================================
A mail-list of Linux Users Group - Bulgaria (bulgarian linuxers).
http://www.linux-bulgaria.org - Hosted by Internet Group Ltd. - Stara Zagora
To unsubscribe: http://www.linux-bulgaria.org/public/mail_list.html
============================================================================

Reply via email to