zone "easy.com" { #正解 type master; file "/var/named/easy.com.hosts"; };
zone "1.168.192.in-addr.arpa" { #反解 type master; file "/var/named/192.168.1.rev"; };
在/var/named/chroot/var/named/目录建立正解easy.com.hosts文件,文件完整内容如下:
详细内容: $ttl 38400 easy.com. IN SOA ldap.easy.com. fandy.easy.com. ( 1137063120 10800 3600 604800 38400 ) easy.com. IN NS ldap.easy.com. easy.com. IN A 192.168.1.254 ldap.easy.com IN A 192.168.1.254 mail.easy.com. IN A 192.168.1.253 mail.easy.com. IN MX 10 mail.easy.com
在/var/named/chroot/var/named/目录建立正解192.168.1.rev文件,文件完整内容如下::
详细内容: $ttl 38400 1.168.192.in-addr.arpa. IN SOA mail.easy.com. fandy.easy.com. ( 1137063268 10800 3600 604800 38400 ) 1.168.192.in-addr.arpa. IN NS ldap.easy.com. 254.1.168.192.in-addr.arpa. IN PTR easy.com. 253.1.168.192.in-addr.arpa. IN PTR mail.easy.com. 254.1.168.192.in-addr.arpa. IN PTR ldap.easy.com.
Setp3、OpenLDAP的详细配置过程:
在配置OpenLDAP前,先复制samba.schema文件到/etc/openldap/schema/目录下(添加ldap所需要的samba认证的资料文件到schema目录):
详细操作: # cp /usr/share/doc/samb-3.0.10/LDAP/samba.schema /etc/openldap/schema/
----------------------------------------------------------------------------------------------------------------------- 说明:请一定要复制samba.schema文件到/etc/openldap/schema目录下, 否则在启动ldap时会出现以下的错误提示信息: # service ldap start 检查 的配置文件:slaptest: bad configuration file! [失败] -----------------------------------------------------------------------------------------------------------------------
修改/etc/openldap/目录中的slapd.conf文件,主要说明修改的关键部分,详细内容如下:
详细配置内容: include /etc/openldap/schema/core.schema include /etc/openldap/schema/cosine.schema include /etc/openldap/schema/inetorgperson.schema include /etc/openldap/schema/nis.schema 部分增加以下一行内容: include /etc/openldap/schema/samba.schema
database ldbm(定义ldap的数据库类型) 更改为: database bdb
suffix "dc=my-domain,dc=com" (定义ldap搜索的域后缀) rootdn "cn=Manager,dc= my-domain,dc=com" (定义ldap的管理DN) 更改为: suffix "dc=easy,dc=com" rootdn "cn=Manager,dc=easy,dc=com"
# rootpw {crypt}ijFYNcSNctBYg (设置管理DN的密码) 更改为: rootpw {SSHA}zW6nrZ8Muho9GOl/nAk3grt4Xqq0ZpJi
----------------------------------------------------------------------------------------------------------------------- 说明:DN管理者密码的制造过程: # slappasswd -h {SSHA} -s jinbiao {SSHA}zW6nrZ8Muho9GOl/nAk3grt4Xqq0ZpJi
复制本页网址和标题,发送给你QQ/Msn的好友一起分享
上一篇:GoogleMaps探秘
下一篇:CSDN blog 添加音乐和天气预报效果