07.06.2014 Views

2 - Raspberry PI Community Projects

2 - Raspberry PI Community Projects

2 - Raspberry PI Community Projects

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Question<br />

Answer<br />

LDAP server Uniform Resource Identifier ldap://ldap.falcot.com<br />

Distinguished name of the search base dc=falcot,dc=com<br />

LDAP version to use 3<br />

Does the LDAP database require login? no<br />

LDAP account for root<br />

cn=admin,dc=falcot,dc=com<br />

LDAP root account password<br />

the administrative password<br />

Table 11.2<br />

Configuring the libnss-ldap package<br />

passwd: ldap compat<br />

group: ldap compat<br />

shadow: ldap compat<br />

hosts: files dns ldap<br />

networks: ldap files<br />

protocols: ldap db files<br />

services: ldap db files<br />

ethers: ldap db files<br />

rpc: ldap db files<br />

netgroup: files<br />

Example 11.31<br />

The /etc/nsswitch.conf file<br />

The ldap module is usually inserted before others, and it will therefore be queried first. The<br />

notable exception is the hosts service since contacting the LDAP server requires consulting<br />

DNS first (to resolve ldap.falcot.com). Without this exception, a hostname query would try to<br />

ask the LDAP server; this would trigger a name resolution for the LDAP server, and so on in an<br />

infinite loop. As for the netgroup services, it is not yet handled by the LDAP module.<br />

If the LDAP server should be considered authoritative (and the local files used by the files<br />

module disregarded), services can be configured with the following syntax:<br />

service:ldap [NOTFOUND=return] files.<br />

If the requested entry does not exist in the LDAP database, the query will return a “not existing”<br />

reply even if the resource does exist in one of the local files; these local files will only be used<br />

when the LDAP service is down.<br />

Chapter 11 — Network Services: Postfix, Apache, NFS, Samba, Squid, LDAP<br />

291

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!