22.12.2012 Views

Front cover - IBM Redbooks

Front cover - IBM Redbooks

Front cover - IBM Redbooks

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

14.3.1 Configuration of LDAP server<br />

To create this separate LDAP infrastructure, <strong>IBM</strong>’s Directory Server was installed<br />

on a basic Windows 2000 Service Pack 3 machine. After the base software was<br />

installed, users were created in the LDAP directory by importing an LDIF file.<br />

This LDIF file contained different LDAP Organizational Units (OUs) than the ones<br />

that were used in the Domino LDAP (East and West). The OUs created for this<br />

server were called Admin, Sales, Production, and Editorial. Several users were<br />

created for each OU.<br />

The LDIF file entry for a single user that was created, showing what fields were<br />

created for each person, is displayed in Example 14-1.<br />

Example 14-1 LDIF example for one person<br />

dn: UID=MMilza,OU=Admin,O=<strong>Redbooks</strong>,C=US<br />

objectclass: eDominoAccount<br />

objectclass: inetOrgPerson<br />

objectclass: organizationalPerson<br />

objectclass: person<br />

objectclass: top<br />

mail: M.Milza@redbooks.com<br />

fullName: CN=Matt Milza,OU=East,O=<strong>Redbooks</strong><br />

title: IT Mgr<br />

mailSystem: 1<br />

givenName: Matt<br />

sn: Milza<br />

cn: Matt Milza<br />

uid: MMilza<br />

userid: mmilza<br />

mailDomain: <strong>Redbooks</strong><br />

mailServer: CN=itsosec-dom,OU=Servers,O=<strong>Redbooks</strong><br />

mailFile: mail\mmilza<br />

Note: In this LDIF example, “dn” corresponds to the user’s LDAP hierarchical<br />

name, and “fullName” corresponds to the user’s Lotus Notes hierarchical<br />

name.<br />

14.3.2 Pointing the Lotus Domino server to the new LDAP<br />

Next, the Lotus Domino server configuration must be changed so that it can<br />

authenticate with the <strong>IBM</strong> Directory Server’s LDAP directory. Domino “Directory<br />

Assistance” capabilities are leveraged to allow Domino to authenticate to an<br />

external LDAP directory.<br />

Chapter 14. Scenario implementation details 611

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!