锘??xml version="1.0" encoding="utf-8" standalone="yes"?>а√在线天堂官网,国产亚洲精品久,日韩亚洲精品电影http://www.aygfsteel.com/yellowstonemay/category/40989.htmlzh-cnTue, 21 Jul 2009 10:20:36 GMTTue, 21 Jul 2009 10:20:36 GMT60LDAP 鍗忚綆浠?/title><link>http://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287686.html</link><dc:creator>yellowstone</dc:creator><author>yellowstone</author><pubDate>Tue, 21 Jul 2009 09:33:00 GMT</pubDate><guid>http://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287686.html</guid><wfw:comment>http://www.aygfsteel.com/yellowstonemay/comments/287686.html</wfw:comment><comments>http://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287686.html#Feedback</comments><slash:comments>0</slash:comments><wfw:commentRss>http://www.aygfsteel.com/yellowstonemay/comments/commentRss/287686.html</wfw:commentRss><trackback:ping>http://www.aygfsteel.com/yellowstonemay/services/trackbacks/287686.html</trackback:ping><description><![CDATA[<p><a name="2.LDAP 鍗忚綆浠?><span id="wmqeeuq" class="atitle">LDAP 鍗忚綆浠?/span></a></p> <p>LDAP 錛堣交閲忕駭鐩綍璁塊棶鍗忚錛孡ightweight Directory Access Protocol) 鏄疄鐜版彁渚涜縐頒負鐩綍鏈嶅姟鐨勪俊鎭湇鍔°傜洰褰曟湇鍔℃槸涓縐嶇壒孌婄殑鏁版嵁搴撶郴緇燂紝鍏朵笓闂ㄩ拡瀵硅鍙栵紝嫻忚鍜屾悳绱㈡搷浣滆繘琛屼簡鐗瑰畾鐨勪紭鍖栵紝鍥犳瀹冧笉鍚屼簬甯歌鐨勫叧緋誨瀷鏁版嵁搴撱傜洰褰曚竴鑸敤鏉ュ寘鍚弿榪版х殑錛屽熀浜庡睘鎬х殑淇℃伅騫舵敮鎸佺簿緇嗗鏉傜殑榪囨護鑳藉姏銆傜洰褰曚竴鑸笉鏀寔閫氱敤鏁版嵁搴撻拡瀵瑰ぇ閲忔洿鏂版搷浣滄搷浣滈渶瑕佺殑澶嶆潅鐨勪簨鍔$鐞嗘垨鍥炲嵎絳栫暐銆傝岀洰褰曟湇鍔$殑鏇存柊鍒欎竴鑸兘闈炲父綆鍗曘傝繖縐嶇洰褰曞彲浠ュ瓨鍌ㄥ寘鎷釜浜轟俊鎭亀eb 閾劇粨銆乯peg 鍥懼儚絳夊悇縐嶄俊鎭備負浜嗚闂瓨鍌ㄥ湪鐩綍涓殑淇℃伅錛屽氨闇瑕佷嬌鐢ㄨ繍琛屽湪 TCP/IP 涔嬩笂鐨勮闂崗璁?鈥斺?LDAP銆?/p> <p>LDAP 鐩綍涓殑淇℃伅鏄槸鎸夌収鏍戝瀷緇撴瀯緇勭粐錛屽叿浣撲俊鎭瓨鍌ㄥ湪鏉$洰 (entry) 鏁版嵁緇撴瀯涓傛潯鐩浉褰撲簬鍏崇郴鏁版嵁搴撲腑琛ㄧ殑璁板綍錛涙潯鐩槸鍏鋒湁鍖哄埆鍚?DN 錛圖istinguished Name錛夌殑灞炴э紙Attribute錛夛紝DN 鏄敤鏉ュ紩鐢ㄦ潯鐩殑錛孌N 鐩稿綋浜庡叧緋繪暟鎹簱琛ㄤ腑鐨勫叧閿瓧錛圥rimary Key錛夈傚睘鎬х敱綾誨瀷錛圱ype錛夊拰涓涓垨澶氫釜鍊鹼紙Values錛夌粍鎴愶紝鐩稿綋浜庡叧緋繪暟鎹簱涓殑瀛楁錛團ield錛夌敱瀛楁鍚嶅拰鏁版嵁綾誨瀷緇勬垚錛屽彧鏄負浜嗘柟渚挎绱㈢殑闇瑕侊紝LDAP 涓殑 Type 鍙互鏈夊涓?Value錛岃屼笉鏄叧緋繪暟鎹簱涓負闄嶄綆鏁版嵁鐨勫啑浣欐ц姹傚疄鐜扮殑鍚勪釜鍩熷繀欏繪槸涓嶇浉鍏崇殑銆侺DAP 涓潯鐩殑緇勭粐閫氬父鎸夌収鍦扮悊浣嶇疆鍜岀粍緇囧叧緋昏繘琛岀粍緇囷紝榪欐牱浼氶潪甯哥殑鐩磋銆?br /> <a name="N10095"><strong>鍥?1. LDAP 淇℃伅鐨勬爲鍨嬬粨鏋勫瓨鍌?/strong></a><br /> <img style="width: 360px; height: 490px" border="0" alt="" src="http://www.aygfsteel.com/images/blogjava_net/yellowstonemay/ldap.jpg" width="360" height="490" /><br /> </p> <p>濡傚浘 1 鎵紺猴紝LDAP 鐨勪俊鎭槸浠ユ爲鍨嬬粨鏋勫瓨鍌ㄧ殑錛屽湪鏍戞牴涓鑸畾涔夊浗瀹?(c=CN) 鎴栧煙鍚?(dc=com)錛屽湪鍏朵笅鍒欏線寰瀹氫箟涓涓垨澶氫釜緇勭粐 (organization)(o=CSDL) 鎴栫粍緇囧崟鍏?(organizational units) (ou=Regular)銆備竴涓粍緇囧崟鍏冨彲鑳藉寘鍚濡傛寮忛泧鍛樸佸悎鍚屽伐綾誨瀷闆囧憳絳変俊鎭?/p> <p>姝ゅ錛孡DAP 鏀寔瀵規潯鐩兘澶熷拰蹇呴』鏀寔鍝簺灞炴ц繘琛屾帶鍒訛紝榪欐槸鏈変竴涓壒孌婄殑縐頒負瀵硅薄綾誨埆 (objectClass) 鐨勫睘鎬ф潵瀹炵幇鐨勩傝灞炴х殑鍊煎喅瀹氫簡璇ユ潯鐩繀欏婚伒寰殑涓浜涜鍒欙紝鍏惰瀹氫簡璇ユ潯鐩兘澶熷強鑷沖皯搴旇鍖呭惈鍝簺灞炴с備緥濡傦細 Person 瀵硅薄綾婚渶瑕佹敮鎸?sn(surname) 鍜?cn(common name) 灞炴э紝浣嗕篃鍙互鍖呭惈鍙夌殑濡傞偖浠?(E-mail)錛岀數璇濆彿鐮?(Phone) 絳夊睘鎬с俤c錛氫竴鏉¤褰曟墍灞炲尯鍩燂紱ou錛氫竴鏉¤褰曟墍灞炵粍緇囷紱cn/uid錛氫竴鏉¤褰曠殑鍚嶅瓧 /ID銆?br /> <br /> </p> <img src ="http://www.aygfsteel.com/yellowstonemay/aggbug/287686.html" width = "1" height = "1" /><br><br><div align=right><a style="text-decoration:none;" href="http://www.aygfsteel.com/yellowstonemay/" target="_blank">yellowstone</a> 2009-07-21 17:33 <a href="http://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287686.html#Feedback" target="_blank" style="text-decoration:none;">鍙戣〃璇勮</a></div>]]></description></item><item><title>Centralized Logins Using LDAP and RADIUShttp://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287609.htmlyellowstoneyellowstoneTue, 21 Jul 2009 03:51:00 GMThttp://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287609.htmlhttp://www.aygfsteel.com/yellowstonemay/comments/287609.htmlhttp://www.aygfsteel.com/yellowstonemay/archive/2009/07/21/287609.html#Feedback0http://www.aygfsteel.com/yellowstonemay/comments/commentRss/287609.htmlhttp://www.aygfsteel.com/yellowstonemay/services/trackbacks/287609.htmlhttp://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch31_:_Centralized_Logins_Using_LDAP_and_RADIUS

 

Sponsors

Introduction

Many centralized database programs have been developed to allow users to log in on multiple computers using a single password. NIS was one of the first, but it doesn't encrypt the password transaction. It also uses the portmapper daemon, which uses an unpredictable range of TCP ports that are difficult for firewalls to track. LDAP (Lightweight Directory Access Protocol) provides an alternative based on the X.500 standard.

The X.500 standard defines how globally referenced directories of people should be structured. X.500 directories are organized under a common root directory in a tree hierarchy with different levels for each category of information, such as country, state, city, organization, organizational unit, and person. Designed to provide a simpler yet robust implementation of X.500, LDAP was originally used as the backbone of Microsoft's Active Directory Service and Novell's Novell Directory Services (NDS) products. LDAP can also interact with other login programs, such as Remote Authentication Dial-in User Service (RADIUS), which the network equipment of many ISPs uses to manage dialup Internet access.

It was later recognized that LDAP had features that could make it a desirable replacement for NIS in some scenarios. For example, it uses a single TCP port (389) for regular communication and another port (636) for encrypted transactions. LDAP also can interact with many login authentication, authorization, and accounting programs external to Linux and UNIX.

This chapter will first show you how to install and use LDAP on Fedora Linux systems, then go on to explain how LDAP interacts with RADIUS.

The LDAP Directory Structure

Like X.500, LDAP directory entries are arranged in a tree structure. Under the root, there are branches that represent countries, organizations, organizational units, and people.

In complicated LDAP deployments, in which you have to exchange information with the LDAP databases of other companies, you may want to get a formal organization number from the Internet Assigned Numbers Authority (IANA) to reduce any data conflicts. In the chapter's example this won't be necessary. Because there will be no data sharing, I'll just make up one.

Scenario

These concepts are easier to explain when working from an example, so imagine the IT department in a small organization called example.com has many Linux servers it needs to administer.

........

]]>
主站蜘蛛池模板: 德兴市| 长兴县| 浦东新区| 甘南县| 乳山市| 宁蒗| 驻马店市| 通道| 三穗县| 江源县| 巴中市| 宜兰县| 海安县| 明溪县| 蓬莱市| 县级市| 容城县| 扎赉特旗| 郯城县| 依兰县| 盖州市| 莆田市| 嘉兴市| 邮箱| 邻水| 闽侯县| 五寨县| 霸州市| 巧家县| 金门县| 商南县| 霍邱县| 华池县| 涪陵区| 定襄县| 南丰县| 平乐县| 环江| 靖安县| 邵阳市| 且末县|