Ldap¶
System Administration - LDAP¶
Table of Contents¶
Reference¶
Motivation¶
Installation - OpenLdap¶
In Fedora/CentOS, we install openldap and
yum install -y openldap openldap-servers
Openldap-servers is being installed along with slapd daemon, it support multiple of implementations that help in users authentication process.
Start the slapd daemon service:
systemctl start slapd systemctl enable slapd
It uses port 389/tcp, so add this port to the firewall:
firewall-cmd --permanent --add-port=389/tcp firewall-cmd reload
Set the configuration for the LDAP directory, which is a tree of data Entry “DIT” (Directory Information Tree).
Entry is a collection of Attribute, where each attribute has name/value pair.
Each collection of attributes are defined under ObjectClass.
Tree -> Collection of Entries Entry -> ObjectClass -> Attribute -> Name/Value Each Entry has a unique Identifier called *DN* (Distinguished Name)
To edit the configuration file:
ls /etc/openldap/slapd.d/cn\=config