Changes between Version 12 and Version 13 of ldapiam2018


Ignore:
Timestamp:
Sep 12, 2018, 5:26:55 PM (6 years ago)
Author:
admin
Comment:

--

Legend:

Unmodified
Added
Removed
Modified
  • ldapiam2018

    v12 v13  
    202202}}}
    203203=== Create User Structure ===
    204 Depending on your Institutes's Requirement, you may create group as follows:
    205 {{{
    206 dn: ou=People,dc=instXY,dc=ac,dc=lk
     204Depending on your Institutes's Requirement, you may create test Groups/Users as follows:
     205{{{
     206dn: ou=People,dc=inst00,dc=ac,dc=lk
    207207objectClass: organizationalUnit
    208208objectClass: top
    209209ou: People
    210  
    211 dn: ou=Group,dc=instXY,dc=ac,dc=lk
     210
     211dn: ou=Group,dc=inst00,dc=ac,dc=lk
    212212objectClass: organizationalUnit
    213213objectClass: top
     
    215215description: All groups
    216216
    217 # System Admin Staff Group
    218 dn:cn=adm,ou=Group,dc=instXY,dc=ac,dc=lk
    219 cn:adm
    220 description:System Admin Staff
    221 gidNumber:1500
    222 objectClass:posixGroup
    223 objectClass:top
    224 
    225 # Acadamic staff Group
    226 dn:cn=acd,ou=Group,dc=instXY,dc=ac,dc=lk
    227 cn:acd
    228 description:Acadamic Staff
    229 gidNumber:2000
    230 objectClass:posixGroup
    231 objectClass:top
    232 
    233 # Students Group
    234 dn:cn=student,ou=Group,dc=instXY,dc=ac,dc=lk
    235 cn:student
    236 description:Students
    237 gidNumber:5000
    238 objectClass:posixGroup
    239 objectClass:top
    240 
    241 # servers OU
    242 dn:ou=servers,dc=instXY,dc=ac,dc=lk
    243 description:servers
    244 objectClass:top
    245 objectClass:organizationalUnit
    246 ou:servers
    247 
    248 # idp servers
    249 dn:cn=idp,ou=servers,dc=instXY,dc=ac,dc=lk
    250 cn:idp
    251 description:Identity Server
     217dn: cn=adm,ou=Group,dc=inst00,dc=ac,dc=lk
     218cn: adm
     219description: System Admin Staff
     220gidNumber: 1500
     221objectClass: posixGroup
     222objectClass: top
     223
     224dn: cn=acd,ou=Group,dc=inst00,dc=ac,dc=lk
     225cn: acd
     226description: Acadamic Staff
     227gidNumber: 2000
     228objectClass: posixGroup
     229objectClass: top
     230
     231dn: cn=student,ou=Group,dc=inst00,dc=ac,dc=lk
     232cn: student
     233description: Students
     234gidNumber: 5000
     235objectClass: posixGroup
     236objectClass: top
     237
     238dn: ou=servers,dc=inst00,dc=ac,dc=lk
     239description: servers
     240objectClass: top
     241objectClass: organizationalUnit
     242ou: servers
     243
     244dn: cn=idp,ou=servers,dc=inst00,dc=ac,dc=lk
     245cn: idp
     246description: Identity Server
    252247ipHostNumber: 3ffe:ffff:ffff::9
    253 objectClass:top
    254 objectClass:device
    255 objectClass:ipHost
    256 objectClass:simpleSecurityObject
    257 userPassword:{crypt}idpldap
    258 
    259 
    260 # test User
    261 
    262 dn:uid=testme,ou=people,dc=instXY,dc=ac,dc=lk
    263 cn:Test Me
    264 uid:testme
    265 uidNumber:1001
    266 gidNumber:1000
    267 givenName:Test Me
    268 homeDirectory:/dev/null
    269 homePhone:none
    270 objectClass:person
    271 objectClass:organizationalPerson
    272 objectClass:inetOrgPerson
     248objectClass: top
     249objectClass: device
     250objectClass: ipHost
     251objectClass: simpleSecurityObject
     252userPassword: {crypt}idpldap
     253
     254dn: uid=testme,ou=people,dc=inst00,dc=ac,dc=lk
     255cn: Test Me
     256uid: testme
     257uidNumber: 1001
     258gidNumber: 1000
     259givenName: Test Me
     260homeDirectory: /dev/null
     261homePhone: none
     262objectClass: person
     263objectClass: organizationalPerson
     264objectClass: inetOrgPerson
    273265objectClass: eduPerson
    274 objectClass:posixAccount
    275 objectClass:top
    276 objectClass:shadowAccount
    277 sn:Test
    278 mobile:+94791234567
    279 userPassword:testme
     266objectClass: posixAccount
     267objectClass: schacEntryMetadata
     268objectClass: schacLinkageIdentifiers
     269objectClass: top
     270objectClass: shadowAccount
     271sn: Test
     272mobile: +94791234567
     273userPassword: testme
    280274mail: testme@YOUR_DOMAIN
    281 eduPersonPrincipalName: testme@YOUR_DOMAIN
    282 }}}
    283 
    284 Save the above as a ldif file and add it to your directory as
     275eduPersonAffiliation: member
     276}}}
     277
     278Save the above as a .ldif file and add it to your directory as
    285279{{{
    286280sudo ldapadd -H ldap:// -x -D "cn=admin,dc=instXY,dc=ac,dc=lk" -W -Z -f path_to_file.ldif