-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
- Loading branch information
Showing
7 changed files
with
81 additions
and
74 deletions.
There are no files selected for viewing
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1 @@ | ||
.idea |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,5 +1,22 @@ | ||
uri ldap://ldap-server.magic.com:389 | ||
ssl start_tls | ||
tls_cacertdir /etc/openldap/cacerts | ||
tls_cacertfile /etc/openldap/cacerts/magicCA.pem | ||
tls_reqcert never | ||
# | ||
# LDAP Defaults | ||
# | ||
|
||
# See ldap.conf(5) for details | ||
# This file should be world readable but not world writable. | ||
|
||
#BASE dc=example,dc=com | ||
#URI ldap://ldap.example.com ldap://ldap-master.example.com:666 | ||
|
||
#SIZELIMIT 12 | ||
#TIMELIMIT 15 | ||
#DEREF never | ||
|
||
TLS_CACERTDIR /etc/openldap/cacerts | ||
TLS_CACERT /etc/openldap/cacerts/magicCA.pem | ||
TLS_REQCERT never | ||
|
||
# Turning this off breaks GSSAPI used with krb5 when rdns = false | ||
SASL_NOCANON on | ||
URI ldap://ldap-server.magic.com | ||
BASE dc=magic,dc=com |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,8 @@ | ||
uid nslcd | ||
gid ldap | ||
uri ldap://ldap-server.magic.com | ||
base dc=magic,dc=com | ||
ssl start_tls | ||
tls_cacertdir /etc/openldap/cacerts | ||
tls_cacertfile /etc/openldap/cacerts/magicCA.pem | ||
tls_reqcert never |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,16 @@ | ||
passwd: files ldap | ||
shadow: files ldap | ||
group: files ldap | ||
hosts: files dns myhostname | ||
bootparams: nisplus [NOTFOUND=return] files | ||
ethers: files | ||
netmasks: files | ||
networks: files | ||
protocols: files | ||
rpc: files | ||
services: files sss | ||
netgroup: files sss ldap | ||
publickey: nisplus | ||
automount: files ldap | ||
aliases: files nisplus | ||
sudoers: files ldap |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,5 @@ | ||
uri ldap://ldap-server.magic.com | ||
ssl start_tls | ||
tls_cacertdir /etc/openldap/cacerts | ||
tls_cacertfile /etc/openldap/cacerts/magicCA.pem | ||
tls_reqcert never |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,3 +1,3 @@ | ||
uri ldap://ldap-server.host.com:389 | ||
uri ldap://ldap-server.magic.com | ||
# ou 与页面配置的 ou 保持一致 | ||
sudoers_base ou=sudoers,dc=magic,dc=com | ||
sudoers_base ou=sudoers,dc=magic,dc=com |