This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
|
авторизация_с_использованием_ldap_сервера [2024/01/23 11:25] val [Microsoft Active Directory] |
авторизация_с_использованием_ldap_сервера [2026/04/10 13:50] (current) val [Microsoft Active Directory] |
||
|---|---|---|---|
| Line 21: | Line 21: | ||
| <code> | <code> | ||
| gate# ldapsearch -x -b"dc=corpX,dc=un" -H ldap://server "uid=user1" | gate# ldapsearch -x -b"dc=corpX,dc=un" -H ldap://server "uid=user1" | ||
| + | </code> | ||
| + | ==== FreeIPA ==== | ||
| + | <code> | ||
| + | gate# ldapsearch -x -b"dc=corpX,dc=un" -H ldap://server "uid=user1" | ||
| + | |||
| + | gate# ldapsearch -x -D "uid=admin,cn=users,cn=accounts,dc=corpX,dc=un" -W -H ldap://server -b "dc=corpX,dc=un" "uid=user1" | ||
| + | ... | ||
| + | mail: user1@corpX.un | ||
| + | ... | ||
| </code> | </code> | ||
| Line 30: | Line 39: | ||
| <code> | <code> | ||
| gate# ldapsearch -x -D "cn=Administrator,cn=Users,dc=corpX,dc=un" -W -H ldap://server -b "dc=corpX,dc=un" "sAMAccountName=user1" | gate# ldapsearch -x -D "cn=Administrator,cn=Users,dc=corpX,dc=un" -W -H ldap://server -b "dc=corpX,dc=un" "sAMAccountName=user1" | ||
| + | |||
| + | или обычным пользователем | ||
| + | |||
| + | mail.corp2.un:~# ldapsearch -x -D "user102@corp2.un" -W -H ldap://server -b "dc=corp2,dc=un" | ||
| или через ldaps: | или через ldaps: | ||
| Line 173: | Line 186: | ||
| <code> | <code> | ||
| # export LDAPTLS_REQCERT=never | # export LDAPTLS_REQCERT=never | ||
| + | </code> | ||
| + | |||
| + | ===== Дополнительные материалы ===== | ||
| + | |||
| + | ==== Изменения в Debian 12 ==== | ||
| + | <code> | ||
| + | debian12# apt install libnss-ldapd | ||
| + | |||
| + | debian12# grep "^[^#]" /etc/nslcd.conf | ||
| + | uid nslcd | ||
| + | gid nslcd | ||
| + | uri ldap://server/ | ||
| + | base dc=corp20,dc=un | ||
| + | tls_cacertfile /etc/ssl/certs/ca-certificates.crt | ||
| + | |||
| + | service nslcd restart | ||
| + | |||
| + | gate# chown -R user1:user1 /home/user1 | ||
| + | gate# chown -R user2:user2 /home/user2 | ||
| </code> | </code> | ||