Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 9 Jan 2007 17:12:57 +0200
From:      "Vitali Malicky" <life@sitevalley.com>
To:        <freebsd-hackers@freebsd.org>
Subject:   Re: LDAP integration
Message-ID:  <005701c73400$b6747bc0$2401010a@zone3000.net>
References:  <20070107190616.73dee7b0@vixen42><45A1DE76.7000201@FreeBSD.org> <20070108185247.2b6e1f69@vixen42> <20070109091920.5l66ow3exww04ckk@webmail.leidinger.net>

next in thread | previous in thread | raw e-mail | index | archive | help
----- Original Message -----
From: "Alexander Leidinger" <Alexander@Leidinger.net>
To: "Vulpes Velox" <v.velox@vvelox.net>
Cc: <freebsd-hackers@freebsd.org>; "Doug Barton" <dougb@freebsd.org>
Sent: Tuesday, January 09, 2007 10:19 AM
Subject: Re: LDAP integration


Quoting Vulpes Velox <v.velox@vvelox.net> (from Mon, 8 Jan 2007
18:52:47 -0600):

> On Sun, 07 Jan 2007 22:02:30 -0800
> Doug Barton <dougb@FreeBSD.org> wrote:
>
>> Vulpes Velox wrote:
>> > I was just wondering. How many people here have given lots of
>> > though about integrating FreeBSD configuration with LDAP. I've
>> > just begun looking at it a lot more and was curious as to what
>> > other people think in this area.

I''ve been using LDAP a year and a half already:

OpenLDAP master
OpenLDAP slave
TLS supposed of course

system users' logins (pam_ldap, nss_ldap)
samba (integration with windowz/domain controlling)
squid authentication (squid_ldap_auth)
apache authentication (modauthldap_apache2) native apache's module is
incredibly raw :(
vpopmail authentication (I had to write a patch to make vpop work correctly
with openldap, but it wasn't accepted in vpopmail community and I dropped
it, and now using it only in the house's projects)
am going to do qmail with ldap (qmail cluster I mean)

a nice management tool phpLDAPadmin helps a lot to manage the DB tree...

actually it's been said above: the LDAP play is not trivial and LDAP doesn't
give up to a high hand. much reading and experimenting is supposed, - but
the output is worthy of it. a year an a half of smooth work and flexibility.

I want to describe it step by step and publish, even have some drafts of the
future documentation (actually they are scripts with the comments and
configuration files), anyway one must learn LDAP very hard to be
understanding it very cleary, because any documentation won't help if you're
just going to take LDAP with a high hand...


--
"Making it complicated is easy, making it SIMPLE is an art"





Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?005701c73400$b6747bc0$2401010a>