不懂LDAP是什么的可以先看看这个:LDAP 认知入门,转自大牛,比喻的很清晰
因为使用了jumpserver堡垒机,已经安装过LDAP了,所以我们只需要配置:
jumpserver堡垒机官网和jumpserver堡垒机安装文档(推荐 极速安装,四个命令行就ok)
安装openldap包
yum install -y openldap openldap-clients openldap-servers
服务端LDAP配置:
1、配置文件的配置:slapd.ldip
cd /etc/openldap
mv slapd.d slapd.d.bak
mkdir slapd.d
# 设置超级管理员的密码
slappasswd
New password:
Re-enter new password:
{SSHA}EJLfph5NJjFApk6iAWyOIV789DkWw7h3
# 复制好这个密钥,下面配置中会用到
cp /usr/share/openldap-servers/slapd.ldif /etc/openldap/
vim /etc/openldap/slapd.ldif
#在文档中的 include: file:///etc/openldap/schema/core.ldif 下面加上所有schema(也不知道会用到啥,就全部加上了)
include: file:///etc/openldap/schema/collective.ldif
include: file:///etc/openldap/schema/corba.ldif
include: file:///etc/openldap/schema/cosine.ldif
include: file:///etc/openldap/schema/duaconf.ldif
include: file:///etc/openldap/schema/dyngroup.ldif
include: file:///etc/openldap/schema/inetorgperson.ldif
include: file:///etc/openldap/schema/java.ldif
include: file:///etc/openldap/schema/misc.ldif
include: file:///etc/openldap/schema/nis.ldif
include: file:///etc/openldap/schema/ppolicy.ldif
include: file:///etc/openldap/schema/openldap.ldif
include: file:///etc/openldap/schema/pmi.ldif
在 slapd.ldif 中,引入schem