39
7.2.3 Remote OSD Administration Tab
(
continued
)
7. Administration
(
continued
)
Starting the OpendLDAP Server
TostarttheOpenLDAPServer,runslapd(theOpenLDAPServer
executable file) from the command line. slapd supports a number of
command line options, the most important option is the d switch that
triggers debug information. For example, a command of slapd -d 256
wouldstartOpenLDAPwithadebuglevelof256,asshowninthe
following screenshot:
Note: For details about slapd options and their meanings, refer to the
OpenLDAP documentation.
Customizing the OpenLDAP Schema
The schema that slapd uses may be extended to support additional
syntaxes, matching rules, attribute types, and object classes. In the case of
theB020-U08-19-IP,theUser class and the permission attribute are
extended to define a new schema. The extended schema file used to
authenticateandauthorizeusersloggingintotheKVMswitchisshown
in the following figure:
LDAP Data Stucture
AnLDAPdirectorystoresinformationinatreestructureknownasthe
Directory Information Tree (DIT). The nodes in the tree are directory
entries,andeachentrycontainsinformationinattribute-valueform.An
exampleoftheLDAPdirectorytreeisshowninthefigure:
DIT Creation
The LDAP Data Interchange Format (LDIF)isusedtorepresentLDAP
entriesinasimpletextformat(pleaserefertoRFC2849).Thefollowing
figureillustratesanLDIFfilethatcreatestheDITfortheB020-U08-19-
IP directory tree:
ThefollowingfigureillustratesanLDIFfilethatdefinestheOpenLDAP
groupfortheB020-U08-19-IP.
201009236 93-2985.indd 39 11/18/2010 4:21:47 PM