qitian100 发表于 2015-03-25 18:54

关于LDAP的几个问题,麻烦大神看下

(1)server侧:
看到一篇帖子说要创建基础LDIF并将server本机上的用户转换为ldif文件并导入LDAP数据库
转换没有问题,再导入数据库时出现如下错误
ldapadd -x -D "cn=Manager,dc=example,dc=com,dc=cn" -W -f base.ldif
Enter LDAP Password:
adding new entry "dc=zte,dc=com,dc=cn"
ldap_add: Invalid syntax (21)
      additional info: objectClass: value #0 invalid per syntax

转换后的base.ldif文件为
# cat /tmp/base.ldif
dn: dc=example,dc=com,dc=cn
dc: example
objectClass: top
objectClass: domain

dn: ou=Hosts,dc=example,dc=com,dc=cn
ou: Hosts
objectClass: top
objectClass: organizationalUnit

dn: ou=Rpc,dc=example,dc=com,dc=cn
ou: Rpc
objectClass: top
objectClass: organizationalUnit

dn: ou=Services,dc=example,dc=com,dc=cn
ou: Services
objectClass: top
objectClass: organizationalUnit

dn: nisMapName=netgroup.byuser,dc=example,dc=com,dc=cn
nismapname: netgroup.byuser
objectClass: top
objectClass: nisMap

dn: ou=Mounts,dc=example,dc=com,dc=cn
ou: Mounts
objectClass: top
objectClass: organizationalUnit

dn: ou=Networks,dc=example,dc=com,dc=cn
ou: Networks
objectClass: top
objectClass: organizationalUnit

dn: ou=People,dc=example,dc=com,dc=cn
ou: People
objectClass: top
objectClass: organizationalUnit

dn: ou=Group,dc=example,dc=com,dc=cn
ou: Group
objectClass: top
objectClass: organizationalUnit

dn: ou=Netgroup,dc=example,dc=com,dc=cn
ou: Netgroup
objectClass: top
objectClass: organizationalUnit

dn: ou=Protocols,dc=example,dc=com,dc=cn
ou: Protocols
objectClass: top
objectClass: organizationalUnit

dn: ou=Aliases,dc=example,dc=com,dc=cn
ou: Aliases
objectClass: top
objectClass: organizationalUnit

dn: nisMapName=netgroup.byhost,dc=example,dc=com,dc=cn
nismapname: netgroup.byhost
objectClass: top
objectClass: nisMap

看描述是语法错误,objectClass的值无效,请大神看下怎么回事?

(2)客户端侧需要启用sssd服务,我的CENTOS有/etc/sssd这个文件夹,但里面是空的,没有sssd.conf文件,网上关于这个的说明貌似很少。
# service sssd restart
停止 sssd:cat: /var/run/sssd.pid: 没有那个文件或目录
[失败]
[失败]动 sssd:[失败]

需要重装sssd么?

qitian100 发表于 2015-03-26 08:37

不能给沉了啊

jacquelineoklui 发表于 2015-04-15 21:50

...很好.很辛苦!
页: [1]
查看完整版本: 关于LDAP的几个问题,麻烦大神看下