openLDAP in karmic
Javier Urúen Val
juruen at warp.es
Tue Aug 18 14:02:34 UTC 2009
Hi guys,
I saw that a new Ubuntu version of openLDAP has been uploaded to Karmic.
According to the change log:
* Install a minimal slapd configuration instead of creating a default
database with a default DIT:
+ Move openldap user home from /var/lib/ldap to /nonexistent.
+ Remove all code and templates dealing with the default database and DIT
creation.
+ Add an Authz map from root user (UID=0) to cn=localroot,cn=config and
grant all access to the latter in the cn=config database as well as the
default backend configuration.
If I understand correctly, only a minimal cn=config database is created.
In previous versions, users were asked to provide a default base DN
and a administration password.
Then, maintainer scripts took care of initialising both cn=config and
a minimal database with the base DN provided
and the administrator user.
I'm wondering what plans you guys have in regards of this. Is this
just work in progress and you are going to provide
some scripts to initialise the database, or the user will have to do
it manually?
IIRC from the last UDS, you would like to provide a nice kerberos
installation by default. So maybe these are the initial steps.
I'm asking this because in eBox [0] we would like to integrate our
LDAP module as much as possible with the default openLDAP installation
in karmic. With previous versions of slapd (<= 2.4.17-1ubuntu3), we
asked the user the administration password, and having that we added
an eBox user to both databases, in order to be able to automatically
add schemas, acls, entries-.. by other eBox modules that use LDAP
such as ebox-samba, ebox-mail, ebox-asterisk and so on.
What I'm basically asking, if possible, is some pointer to what you
have planned for karmic to try integrate it with our LDAP modules.
[0] http://trac.ebox-platform.com
Thanks a lot,
--
Javi
More information about the ubuntu-server
mailing list