Last-modified: Mon, 09 May 2005 07:58:48 JST (1240d) FreeBSD Install vmwareãå©ç¨ããããã¯ã¼ã¯ã¯virtual switchã¢ã¼ãã¨ããã FreeBSD-5.4-RC3 ãå©ç¨ã --> 5.3ã¨nssã®è¨å®ãã¡ã¤ã«ã®ç½®ãå ´æãå¤æ´ããã¦ããã£ã½ãã®ã§æ³¨æ.. openldap, nss_ldap, pam_ldap ã®å°å ¥ openldap-sasl-client, openldap-sasl-server # cd /usr/ports/net/openldap22-sasl-server # make install nss_ldap # cd /usr/ports/net/nss_ldap # make install ãä¸ç¥ã ======================================
ã¨ãããã¨ã§ã¤ã³ã¿ã©ãããããªããstraceã¨ããã¦èª¿ã¹ã¦ããã£ãï¼ã¤ããã®ï¼ãã¨ï¼ LDAPã«ããUNIXã¢ã«ã¦ã³ã管çï¼èªè¨¼ã¯ãnscdãããªãã¨é ãã ãã¨ãã·ã¹ãã å ¨ä½ãLDAPãµã¼ãã®èµ·åã»åèµ·åçã§ãLDAPãµã¼ããåä½ãã¦ããªãã¨ãrootã¨ãldapèªèº«ã¨ãã®ã°ã«ã¼ãæ¤ç´¢ãã¿ã¤ã ã¢ã¦ãããã®ã§æ²æ¨ã ãªã®ã§ã/etc/ldap.confã«nss_initgroups_ignoreusers root,ldap,...ã®ããã«ã·ã¹ãã ã¢ã«ã¦ã³ããåæããªãã¨ãããªãã ã¨ããããããã«ãnscdãããåæããã¦ãã¾ãã¨ããªãã/var/run/nscd/socketãä½æãããªããªãããã®ããã«nscd -gï¼ã¹ãã¼ã¿ã¹åå¾ï¼ã¨ãnscd -Kï¼ãã¼ã¢ã³åæ¢ï¼ã¨ããåä½ããã/etc/init.d/nscd stopãrestartã失æããã ã¨ãããã¨ã§ã/etc/pa
PAM (Pluggable Authentication Modules)èªè¨¼ã§ãpam_ldap.so ã¢ã¸ã¥ã¼ã«ã使ç¨ããã¨ããLDAPã«æ¥ç¶ã§ããªãã¨ãé·ããã¨å¾ ãããããLDAPå´ã§ç®¡çãã¦ããã¦ã¼ã¶ã§ã¯ãªããshadowãã¡ã¤ã«ãªã©ã§èªè¨¼ãã§ãã¯ãOKã¨ãªã£ã¦ãã2åãããå¾ ããããããªãã§ããã PAMã®system-authã¯ãããªæãã #%PAM-1.0 auth required /lib/security/pam_env.so auth sufficient /lib/security/pam_unix.so likeauth nullok auth sufficient /lib/security/pam_ldap.so use_first_pass auth required /lib/security/pam_deny.so account required
NSSã¨PAMã«ã¤ãã¦ã ç¾å¨ãSolarisãLinuxããã®ä»ã®Unuxç³»ã®å¤ãã§ã¯ã¦ã¼ã¶èªè¨¼ã¨ãã¦PAMï¼Pluggable Authentication Modulesï¼ã¨ããæè¡ã«ãã£ã¦ãèªè¨¼æ©æ§ããã©ã°ã¤ã³ã§æ¡å¼µã§ããããã«ãªã£ã¦ãã¾ãããä¾ãã°ãé常Linuxã§ã¯ã¦ã¼ã¶èªè¨¼ã¨ã㦠/etc/password 㨠/etc/shadow ã¨ããï¼ã¤ã®ãã¡ã¤ã«ã«ç»é²ããã¦ããã¦ã¼ã¶æ å ±ã使ã£ã¦ãã°ã¤ã³ã®èªè¨¼ããã¦ãã¾ãããPAMã®è¨å®ãè¡ããã¨ã§ LDAP ããã®ä»ã®èªè¨¼æ©æ§ãå©ç¨ãã¦ãã°ã¤ã³èªè¨¼ãè¡ãããäºãæ¡å¼µã§ããããã«ãªã£ã¦ãã¾ãã NSSï¼Network Service Switchï¼ã¯ã DNS ã NIS ã /etc/protocols ãªã©ã®ãã¼ã«ã«ã«æã£ãå種ã®æ¤ç´¢ç¨ã®ãµã¼ãã¹ã®éã«ãã©ã®ãã¼ã¿ãåç §ãã«ããããã¹ã¤ãããããæ©è½ã§ãããä¾ãã°ããã®æ©è½ã使
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ã©ã³ãã³ã°
ãªãªã¼ã¹ãé害æ å ±ãªã©ã®ãµã¼ãã¹ã®ãç¥ãã
ææ°ã®äººæ°ã¨ã³ããªã¼ã®é ä¿¡
å¦çãå®è¡ä¸ã§ã
j次ã®ããã¯ãã¼ã¯
kåã®ããã¯ãã¼ã¯
lãã¨ã§èªã
eã³ã¡ã³ãä¸è¦§ãéã
oãã¼ã¸ãéã
{{#tags}}- {{label}}
{{/tags}}