14.02.2014 Views

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

ldapv3.pdf 7947KB Apr 17 2013 11:30:42 AM - mirror omadata

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Non-Conformists<br />

pam_ldap<br />

The current (as of RedHat 7.2) pam_ldap modules from PADL to not<br />

support resolving LDAP host location via DNS SRV. Since, where<br />

NSS LDAP is used P<strong>AM</strong> LDAP is almost always deployed, this<br />

severely limits the actual usefulness of DNS SRV at this point<br />

OpenLDAP utilities<br />

The ldap utilities seem to still require a BASE directive in<br />

/etc/openldap/ldap.conf, but do resolve the LDAP host using SRV<br />

records. This annoyance can be worked around by setting the<br />

LDAPBASE environment variable to the default base.<br />

export LDAPBASE=`hostname | sed "s/\./,dc=/g" | cut -f2,3 -d","`

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!