39
7.2.3 Remote OSD Administration Tab
(
continued
)
7. Administration
(
continued
)
Customizing the OpenLDAP Schema
The schema that slapd uses may be extended to support additional
syntaxes, matching rules, attribute types, and object classes. In the case
oftheKVM,theUser class and the permission attribute are extended
to define a new schema. The extended schema file used to authenticate
andauthorizeusersloggingintotheKVMswitchisshowninthe
following figure:
LDAP Data Stucture
AnLDAPdirectorystoresinformationinatreestructureknownasthe
Directory Information Tree (DIT). The nodes in the tree are directory
entries,andeachentrycontainsinformationinattribute-valueform.An
exampleoftheLDAPdirectorytreeisshowninthefigure:
DIT Creation
The LDAP Data Interchange Format (LDIF)isusedtorepresentLDAP
entriesinasimpletextformat(pleaserefertoRFC2849).The
followingfigureillustratesanLDIFfilethatcreatestheDITforthe
KVMdirectorytree:
ThefollowingfigureillustratesanLDIFfilethatdefinesthe
OpenLDAPgroupfortheKVM.