From owner-freebsd-questions@FreeBSD.ORG Wed Jul 16 19:57:15 2008 Return-Path: Delivered-To: questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 90EDF106566B for ; Wed, 16 Jul 2008 19:57:15 +0000 (UTC) (envelope-from dan@dan.emsphone.com) Received: from dan.emsphone.com (dan.emsphone.com [199.67.51.101]) by mx1.freebsd.org (Postfix) with ESMTP id 4CFB48FC18 for ; Wed, 16 Jul 2008 19:57:15 +0000 (UTC) (envelope-from dan@dan.emsphone.com) Received: from dan.emsphone.com (smmsp@localhost [127.0.0.1]) by dan.emsphone.com (8.14.3/8.14.2) with ESMTP id m6GJvCJu052560 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for ; Wed, 16 Jul 2008 14:57:12 -0500 (CDT) (envelope-from dan@dan.emsphone.com) Received: (from dan@localhost) by dan.emsphone.com (8.14.3/8.14.2/Submit) id m6GJvBYE052548; Wed, 16 Jul 2008 14:57:11 -0500 (CDT) (envelope-from dan) Date: Wed, 16 Jul 2008 14:57:10 -0500 From: Dan Nelson To: sgmayo@mail.bloomfield.k12.mo.us Message-ID: <20080716195709.GA19044@dan.emsphone.com> References: <1105.204.184.27.217.1216233869.squirrel@mail.bloomfield.k12.mo.us> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <1105.204.184.27.217.1216233869.squirrel@mail.bloomfield.k12.mo.us> X-OS: FreeBSD 7.0-STABLE User-Agent: Mutt/1.5.18 (2008-05-17) Cc: questions@freebsd.org Subject: Re: nsswitch.conf man page X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 16 Jul 2008 19:57:15 -0000 In the last episode (Jul 16), sgmayo@mail.bloomfield.k12.mo.us said: > I don't see anything in the man page about adding ldap into the > nsswitch.conf file. Is that something that I can do so that I can > get applications to use my openldap? > > I would assume I could add something to the affect of: > > passwd files ldap > group files ldap > > but all I see is compat, files, nis and dns for options. The manpage only lists the builtin sources. If a builtin source with the specified name isn't found, the code will search for an nss_xxxx.so.1 shared object and load that. So once you install the nss_ldap port, then the ldap source will start working. Also consider enabling nscd and adding the "cache" source before your "ldap" source. ldap group memership queries are slow :) -- Dan Nelson dnelson@allantgroup.com