Ê×Ò³ | ¹«Ë¾¼ò½é | Êý¾Ý»Ö¸´ | ±¸·Ý·þÎñ | ³É¹¦°¸Àý | ¼¼ÊõÖÐÐÄ | ¿Í»§·þÎñ | ·þÎñ±¨¼Û | Êý¾Ý»Ö¸´Èí¼þ | ÁªÏµÎÒÃÇ | ±±ÑDz©¿Í  
 
  ±±¾©×ܲ¿£º 4006-505-646
  Ìì ½ò ²¿£º 4006-505-646
  ÉÏ º£ ²¿£º 4006-505-646
  Éî ÛÚ ²¿£º 4006-505-646
  ¹ã ÖÝ ²¿£º 4006-505-646
  ÖØ Çì ²¿£º 4006-505-646
  ÄÏ ¾© ²¿£º 4006-505-646
  ÆäËüµØÇø£º 4006-505-646
±±ÑÇÊý¾Ý»Ö¸´Èí¼þWindowsרҵ°æ
ÈýÐÇÊÖ»úÊý¾Ý»Ö¸´Èí¼þV1.0
±±ÑÇÆ»¹ûÊÖ»úÊý¾Ý»Ö¸´Èí¼þV2.0
±±ÑÇÓ²Å̼Ïñ»úÊý¾Ý»Ö¸´Èí¼þ V
±±ÑÇvmwareÐéÄâ»úÊý¾Ý»Ö¸´Èí¼þ
±±ÑÇÕÕƬÊý¾Ý»Ö¸´Èí¼þ
±±ÑÇÉãÏñ»úÊý¾Ý»Ö¸´Èí¼þ v2.1
±±ÑÇSybaseÊý¾Ý¿âÐÞ¸´Èí¼þ V2.
raid´ÅÅÌÕóÁÐÓ¦¼±·½°¸
HP EVA4400/6400/8400/P6000
iphone Í¨Ñ¶Â¼¶ªÊ§ÈçºÎ»Ö¸´£¿
xen server ´æ´¢¿â(sr)Ë𻵺ó
RAID6½á¹¹Ô­ÀíÏê½â£¨±±ÑÇÊý¾Ý
AIXÏÂɾ³ýLVºóµÄÏÖ³¡±£»¤ºÍÊý
RAIDË𻵺ó ¶ÔÊý¾ÝµÄÍêÕû±¸·Ý
Äúµ±Ç°µÄλÖãºÊ×Ò³ >> ¼¼ÊõÖÐÐÄ >> ·þÎñÆ÷Êý¾Ý»Ö¸´ÎÄÀ¸ >> ÕýÎÄ

AIX 5L LDAP Óû§¹ÜÀí


ÆäÖУ¬foo ÊÇ Active Directory Öж¨ÒåµÄÒ»¸öʾÀýÓû§¡£ ÔÚÍê³É¸Ã¸ü¸ÄÖ®ºó£¬Óû§ foo ¾Í¿ÉÒԵǼµ½ AIX 5L ²Ù×÷ϵͳ¡£

Çë×¢Ò⣬µ±Óû§µÄ Windows ÃÜÂë¸ü¸Äʱ£¬Windows 2000 ºÍ 2003 ·þÎñÆ÷»áΪÕâЩ֧³Ö UNIX µÄÓû§ÉèÖà UNIX ÃÜÂë¡£¸ÃÓû§¿ÉÒÔʹÓÃÕâ¸öÃÜÂëµÇ¼µ½ AIX 5L ²Ù×÷ϵͳ£¬Ö±µ½ AIX 5L ²Ù×÷ϵͳ¶ÔÕâ¸öÃÜÂë½øÐÐÁ˸ü¸Ä¡£ÔÚ׫д±¾ÎÄʱ£¬µ±Óû§µÄ Windows ÃÜÂë¸ü¸Äʱ£¬Window 2003 R2 ²»»áÉèÖà UNIX ÃÜÂë¡£ÔÚÕâЩÇé¿öÏ£¬root Óû§±ØÐëÔÚ AIX 5L ²Ù×÷ϵͳÖÐÔËÐÐ passwd ÃüÁÒÔ±ãΪ Windows Óû§ÉèÖà UNIX ÃÜÂ룬´Ó¶øʹËûÃÇÄܹ»µÇ¼µ½ AIX¡£

Èç¹ûÒªÈÃËùÓÐµÄ Windows Óû§¶¼Äܹ»µÇ¼µ½ AIX 5L ²Ù×÷ϵͳ£¬¶Ôÿ¸öÓû§½øÐÐÕâÑùµÄ²Ù×÷¿ÉÄܷdz£Âé·³¡£ÔÚÕâЩÇé¿öÏ£¬¹ÜÀíÔ±¿ÉÒÔÊÖ¶¯±à¼­ /etc/security/user Îļþ£¬²¢½« default ½ÚµÄ SYSTEM ºÍ registry ÊôÐÔÉèÖÃΪ LDAP¡£Èç¹û default ½ÚÖв»°üº¬ÕâЩÊôÐÔ£¬ÄÇôÐèÒªÌí¼ÓËüÃÇ¡£Ð޸ĺóµÄ default ½ÚÓ¦¸ÃÓëÏÂÃæËùʾÀàËÆ£º default:
 ...
 SYSTEM = "LDAP"
 registry = LDAP
 ...

 

Èç¹ûÒѽ« default ½Ú¸ü¸ÄΪ LDAP£¬ÕâЩ±¾µØ¶¨ÒåµÄÓû§¿ÉÄÜÎÞ·¨µÇ¼µ½ AIX 5L ²Ù×÷ϵͳ£¬³ý·Ç½«ËûÃÇµÄ SYSTEM ÉèÖÃΪ compat£¬registry ÉèÖÃΪ files¡£¹ÜÀíÔ±±ØÐëÕÒ³öÕâЩÕÊ»§£¬²¢ÎªÃ¿¸öÓû§ÔËÐÐÏÂÃæµÄÃüÁîÒÔ½øÐÐÏàÓ¦µÄ¸ü¸Ä¡£ # chuser SYSTEM=compat registry=files <local user>

 

ÅäÖà AIX 5L ÒÔʹÓà ldap_auth Éí·ÝÑé֤ģʽÓë Active Directory Эͬ¹¤×÷ # mksecldap -c -h <Active Directory hostname> -a
<cn=binduser,cn=users,dc=ADdomain,dc=abc,dc=com> -p <password> -A ldap_auth

 

ÆäÖУº
Active Directory hostname ÊÇÄúµÄ Windows Active Directory ·þÎñÆ÷¡£
cn=binduser,cn=users,dc=ADdomain,dc=abc,dc=com ÊÇÒ»¸öʾÀý°ó¶¨Æ¾¾Ý¡£Ëü¿ÉÒÔÊÇ Active Directory Öж¨ÒåµÄÒ»¸öÓû§ÕÊ»§¡£
ÃÜÂë Ö¸µÄÊÇÉÏÃæµÄ binduser ÕÊ»§µÄÃÜÂë¡£

ÒªÑéÖ¤ÊÇ·ñÕýÈ·ÅäÖÃÁË AIX 5L ²Ù×÷ϵͳ£¬¿ÉÒÔÔËÐÐ lsuser ÃüÁîÒÔÁгö Active Directory Öж¨ÒåµÄÓû§£º # lsuser -R LDAP <username>


ÆäÖÐ username Ó¦¸ÃÊÇ Active Directory Öж¨ÒåµÄÓÐЧÓû§¡£

×¢Ò⣺Èç¹ûÄúÉÐδ°²×° APAR IY91514£¨Çë²Î¼û Microsoft Active Directory ²¿·Ö£¬ÒÔÁ˽âÈçºÎ²é¿´ÊÇ·ñ°²×°Á˸à APAR£©£¬ÄÇô¿ÉÄÜÎÞ·¨ ½« AIX 5L spassword ÊôÐÔÓ³ÉäΪÕýÈ·µÄ Active Directory ÃÜÂëÊôÐÔ¡£Õâ¿ÉÄܵ¼ÖÂÉí·ÝÑé֤ʧ°Ü£¬¼´Ê¹ÄúʹÓÃÁËÕýÈ·µÄÃÜÂë¡£Çë°´ÕÕÏÂÃæµÄ²½Öè¶ÔÓ³Éä½øÐиüÕý£º
±à¼­ /etc/security/ldap/sfu30user.map Îļþ£¬ÕÒµ½ÒÔµ¥´Ê spassword ¿ªÍ·µÄÐУ¬ÀýÈç spassword   SEC_CHAR    msSFU30Password     s


£¬½« msSFU30Password Ì滻Ϊ unicodePwd¡£ËäÈ»ÉÏÃæµÄʾÀýÖÐÏÔʾµÄÊÇ msSFU30Password£¬µ«Ò²¿ÉÄÜÊÇÆäËûµÄÄÚÈÝ¡£

ÕâÒ»Ðбä³ÉÁË£º spassword   SEC_CHAR    unicodePwd    s


±£´æ¸ÃÎļþ¡£
ÖØÐÂÆô¶¯ secldapclntd ÊØ»¤½ø³ÌÒÔʹÉÏÃæµÄ¸ü¸ÄÉúЧ£º # restart-secldapclntd

 

ÒªÔÊÐí Windows Óû§µÇ¼µ½ AIX 5L ²Ù×÷ϵͳ£¬¹ÜÀíÔ±ÐèҪͨ¹ýÔÚ AIX 5L ²Ù×÷ϵͳÖÐÔËÐÐÏÂÁÐÃüÁ¶ÔÓû§µÄ SYSTEM ºÍ registry ÊôÐÔ½øÐÐÕýÈ·ÉèÖ㺠# chuser -R LDAP SYSTEM=LDAP registry=LDAP foo


ÆäÖУ¬foo ÊÇ Active Directory Öж¨ÒåµÄÒ»¸öʾÀýÓû§¡£

ÔÚÍê³É¸Ã¸ü¸ÄÖ®ºó£¬Óû§ foo ¾Í¿ÉÒÔʹÓÃÆä Windows ÃÜÂëµÇ¼µ½ AIX 5L ²Ù×÷ϵͳ¡£

Èç¹ûÒªÈÃËùÓÐµÄ Windows Óû§¶¼Äܹ»µÇ¼µ½ AIX 5L ²Ù×÷ϵͳ£¬ÎªÃ¿¸öÓû§½øÐÐÉÏÊöµÄ²Ù×÷¿ÉÄܷdz£Âé·³¡£ÔÚÕâЩÇé¿öÏ£¬¹ÜÀíÔ±¿ÉÒÔÊÖ¶¯±à¼­ /etc/security/user Îļþ£¬²¢½« default ½ÚµÄ SYSTEM ºÍ registry ÊôÐÔÉèÖÃΪ LDAP¡£Èç¹û default ½ÚÖв»°üº¬ÕâЩÊôÐÔ£¬ÄÇôÐèÒªÌí¼ÓËüÃÇ¡£default ½ÚÓ¦¸ÃÓëÏÂÃæËùʾÀàËÆ£º 

±¾ÐÂÎŹ²10Ò³,µ±Ç°ÔÚµÚ04Ò³  01  02  03  04  05  06  07  08  09  10  

ÉÏһƪ£ºÊ¹ÓÃSUMA ¸üÐÂAIXϵͳ
ÏÂһƪ£ºÔõÑùÔÚAIX ·À»ðǽÉÏ×·×ÙIPͨÐŵÄ×´¿ö
·µ»ØÊ×Ò³ | ÁªÏµÎÒÃÇ | ¹ØÓÚÎÒÃÇ | ÕÐƸÐÅÏ¢ | ÓÑÇéÁ´½Ó | ÍøÕ¾µØͼ | ºÏ×÷»ï°é
°æȨËùÓÐ ±±¾©±±ÑÇå·ÐǿƼ¼ÓÐÏÞ¹«Ë¾
È«¹úͳһ¿Í·þÈÈÏߣº4006-505-646
±±¾©×ܲ¿£º±±¾©Êк£µíÇøÓÀ·á»ùµØ·á»ÛÖз7ºÅвÄÁÏ´´Òµ´óÏÃB×ù205ÊÒ
¾©ICP±¸09039053ºÅ

ÜeY¬/