From owner-freebsd-questions@FreeBSD.ORG Tue Mar 25 13:38:28 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id E3BB8106566B for ; Tue, 25 Mar 2008 13:38:28 +0000 (UTC) (envelope-from outbackdingo@gmail.com) Received: from qb-out-0506.google.com (qb-out-0506.google.com [72.14.204.231]) by mx1.freebsd.org (Postfix) with ESMTP id 912B78FC1E for ; Tue, 25 Mar 2008 13:38:28 +0000 (UTC) (envelope-from outbackdingo@gmail.com) Received: by qb-out-0506.google.com with SMTP id a10so6034042qbd.7 for ; Tue, 25 Mar 2008 06:38:27 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=beta; h=domainkey-signature:received:received:message-id:date:from:to:subject:in-reply-to:mime-version:content-type:references; bh=18PNqNPhDV+j9uCng36Od4BR78nLPk3g6K6l9FrPOuc=; b=WF9sxWxIUFSwhhM9BD2OFGKAD4M7e9GA/zzDylW8FAupdcMIVHAJ4T05jkIAy0bIcbBxPsCiKtTFXLcWNAtNhugTJBAVi/TnJpNmOfYN5LOeE5+IeKXvt55vzQW1Vo3TtCWqUpOPAHrNZQfCIee05Zs6nGFmhPKtzZwu95ny7ec= DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=beta; h=message-id:date:from:to:subject:in-reply-to:mime-version:content-type:references; b=MCuFsBcFA4W4PHggBZBGFngcHtgSzRpqJoPZaM0cFatsb0Xye6EMIu0WW1i8O2cMTMXVN+VKw5m9YaRZU6SMVvXEoGf/20krENxVnW2KuaVR0A1QgycR3YK4VR+os3RK5uitnhRpfE/6M9D48QFZCdwU8TWkuadZawmno/fS3Sk= Received: by 10.114.15.1 with SMTP id 1mr14314760wao.27.1206452307196; Tue, 25 Mar 2008 06:38:27 -0700 (PDT) Received: by 10.114.52.2 with HTTP; Tue, 25 Mar 2008 06:38:27 -0700 (PDT) Message-ID: <5635aa0d0803250638i43b3813fn31a7d3fc28325f55@mail.gmail.com> Date: Tue, 25 Mar 2008 20:38:27 +0700 From: "Outback Dingo" To: "Tim Judd" , "Jon Theil Nielsen" , freebsd-questions@freebsd.org In-Reply-To: <20080325131140.GA1746@valkyrie> MIME-Version: 1.0 References: <8f82c35c0803231523i52e55906tfd3cf96b36fe70d7@mail.gmail.com> <8f82c35c0803231526n5a429cb5t1c81a7f98dfb19ea@mail.gmail.com> <8f82c35c0803241540k36c8d551tfcfd172d6a4a7f9b@mail.gmail.com> <47E83215.8030705@gmail.com> <20080325131140.GA1746@valkyrie> Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 7bit Content-Disposition: inline X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Cc: Subject: Re: A general purpose LDAP solution? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 25 Mar 2008 13:38:29 -0000 As would I also like to On Tue, Mar 25, 2008 at 8:11 PM, Trey Sizemore wrote: > On Mon Mar 24, 2008 04:58PM, Tim Judd wrote: > > Jon Theil Nielsen wrote: > >> I asked this on freebsd-net@ but got no replies. So now I ask the same > >> question here. > >> > >>> Hi list! > >>> > >> > > >> > I have speculated a lot about implementation of (Open)LDAP on my > >> > sever. By I haven't yet found the right (and logical) way to do it. > >> > I'm running FreeBSD 7.0-Release with some different server > applications > >> > - Samba PDC > >> > - Virtual mail server (Postfix, MySQL, Courier-IMAP) > >> > - VPN (currently with mpd4) > >> > - Apache-2.2.8 web server (with PHP and MySQL) > >> > I would like to implement LDAP for: > >> > - authentication of UNIX/login users > >> > - authentication of Samba users > >> > - authentication/authorization of virtual mail users > >> > For the first part, I got useful information from a previsous > thread > >> > ( > http://unix.derkeiler.com/Mailing-Lists/FreeBSD/questions/2008-02/msg01047.html > ) > >> > and for the second part, i guess there is sufficient howtos to make > it > >> > work. > >> > My biggest question right now is if is possible to combine all > three > >> > things in one data structure. And which in which order I should > make > >> > the different implimentions. > >> > Excuse my total lack of understanding, but is it possible to have a > >> > structure with a superior unit such as OU= which > >> > could contain several virtual domains and the actual doamin for my > >> > PDC? > >> > > >> > -- > >> > Jon Theil Nielsen > >> > >> Oh, i forgot one more thing: I would also like to be able to > >> authenticate VPN users the same way. > >> -- > >> Jon Theil Nielsen > >> > > > > It's easy to find out if LDAP is a global solution for you. See if LDAP > > is an available option in each port's config. > > > > I just finished setting up a LDAP-based email system. Samba is capable, > > unix logins are capable. There's a good chance everything is. > > > > I liked the virtual part of everything, so I stopped after getting email > > working. I didn't want to open up my system to all sorts of unix/samba > > logins that might exploit or give me problems. > > > > The email system I documented isn't ready for publishing. I'm having > > some select friends review it and proofread it first. > > > > If there's any interest here, I will provide a 2nd publishing to the > > general public as a draft. Not to be used exclusively yet. > > > > Jon, you should be able to get most if not all of it working though. > > > > --Tim > > I would like to see the documentation as well. > > -- > Cheers, > Trey > ---- > > The universe is change; our life is what our thoughts make it. > --Antoninus, Marcus Aurelius > > Linux valkyrie 2.6.22.17-0.1-bigsmp i686 GNU/Linux > 9:10am up 11:11, 7 users, load average: 0.98, 0.98, 1.06 > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to " > freebsd-questions-unsubscribe@freebsd.org" >