informatica:linux:ldap:instalacion
Differences
This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
informatica:linux:ldap:instalacion [2012/09/12 22:44] – creado jose | informatica:linux:ldap:instalacion [2015/08/24 07:49] (current) – jose | ||
---|---|---|---|
Line 1: | Line 1: | ||
- | Se instala | + | ====== Instalacion ====== |
+ | |||
+ | Se instala | ||
+ | # apt-get install sldap ldap-utils | ||
Para ver la estructura del directorio: | Para ver la estructura del directorio: | ||
Line 55: | Line 58: | ||
</ | </ | ||
+ | BUSCAR | ||
+ | < | ||
+ | $ ldapsearch -x -w prova -D " | ||
+ | # extended LDIF | ||
+ | # | ||
+ | # LDAPv3 | ||
+ | # base < | ||
+ | # filter: (objectclass=*) | ||
+ | # requesting: ALL | ||
+ | # | ||
+ | # jose, admin, local | ||
+ | dn: cn=jose, | ||
+ | aliasedObjectName: | ||
+ | objectClass: | ||
+ | objectClass: | ||
+ | objectClass: | ||
+ | cn: jose | ||
+ | |||
+ | # search result | ||
+ | search: 2 | ||
+ | result: 0 Success | ||
+ | |||
+ | # numResponses: | ||
+ | # numEntries: 1 | ||
+ | </ | ||
+ | |||
+ | Añadir usuario: | ||
+ | ldapadd -H ldap:// | ||
+ | |||
+ | Podemos poner la contraseña encriptada o sin encriptar y luego la encripta. Una lleva dos veces dos puntos y la otra solo una | ||
+ | userPassword:: | ||
+ | userPassword: | ||
+ | |||
+ | Ejemplo / | ||
+ | |||
+ | < | ||
+ | dn: cn=jose, | ||
+ | objectClass: | ||
+ | objectClass: | ||
+ | cn: jose | ||
+ | description: | ||
+ | userPassword: | ||
+ | </ | ||
+ | |||
+ | Luego podemos cambiar la contraseña como admin a todos o cada usuario a si mismo: | ||
+ | # ldappasswd -x -h 192.168.1.103 -D " | ||
+ | | ||
+ | ====== Cambiar Sufijo ====== | ||
+ | Fuente: http:// | ||
+ | |||
+ | < | ||
+ | ldapmodify -Q -Y EXTERNAL -H ldapi:/// <<EOF | ||
+ | dn: olcDatabase={1}mdb, | ||
+ | changetype: modify | ||
+ | replace: olcSuffix | ||
+ | olcSuffix: dc=matarosensefils, | ||
+ | |||
+ | EOF | ||
+ | </ | ||
+ | |||
+ | < | ||
+ | ldapmodify -Q -Y EXTERNAL -H ldapi:/// <<EOF | ||
+ | dn: olcDatabase={1}mdb, | ||
+ | changetype: modify | ||
+ | replace: olcRootDN | ||
+ | olcRootDN: cn=admin, | ||
+ | |||
+ | EOF | ||
+ | </ | ||
+ | |||
+ | < | ||
+ | # slappasswd | ||
+ | |||
+ | New password: | ||
+ | Re-enter new password: | ||
+ | {SSHA}rrcFTS2o1GZDWmZKv9XS8p3UO4mNG1RP | ||
+ | </ | ||
+ | |||
+ | < | ||
+ | ldapmodify -Q -Y EXTERNAL -H ldapi:/// <<EOF | ||
+ | dn: olcDatabase={1}mdb, | ||
+ | changetype: modify | ||
+ | replace: olcRootPW | ||
+ | olcRootPW: *********** | ||
+ | |||
+ | EOF | ||
+ | </ | ||
+ | |||
+ | < | ||
+ | ldapsearch -h 192.168.1.103 -D " | ||
+ | </ | ||
+ | |||
+ | < | ||
+ | ldapadd -x -W -D cn=admin, | ||
+ | dn: dc=matarosensefils, | ||
+ | objectClass: | ||
+ | dc: matarosensefils | ||
+ | description: | ||
+ | |||
+ | EOF | ||
+ | </ | ||
+ | |||
+ | Añadimos un usuario: | ||
+ | < | ||
+ | ldapadd -x -W -D " | ||
+ | dn: cn=jose, | ||
+ | objectClass: | ||
+ | objectClass: | ||
+ | cn: jose | ||
+ | description: | ||
+ | userPassword: | ||
+ | |||
+ | EOF | ||
+ | </ | ||
+ | |||
+ | ====== Creación usuarios y grupos ====== | ||
+ | ===== Grupos ===== | ||
+ | # ldapadd -x -w fragacabron -D " | ||
+ | < | ||
+ | dn: ou=usuaris, dc=matarosensefils, | ||
+ | ou: usuaris | ||
+ | description: | ||
+ | objectclass: | ||
+ | </ | ||
+ | ===== Usuarios ===== | ||
+ | # ldapadd -x -w fragacabron -D " | ||
+ | < | ||
+ | dn: cn=jose, | ||
+ | objectclass: | ||
+ | cn: Jose Legido | ||
+ | sn: Legido | ||
+ | uid: jose | ||
+ | userpassword: | ||
+ | mail: jose@legido.com | ||
+ | description: | ||
+ | ou: admin | ||
+ | ou: fades | ||
+ | </ |
informatica/linux/ldap/instalacion.1347489861.txt.gz · Last modified: 2015/04/13 20:19 (external edit)