Red Hat NETSCAPE DIRECTORY SERVER 6.0 Guida di Installazione

Navigare online o scaricare Guida di Installazione per Server Red Hat NETSCAPE DIRECTORY SERVER 6.0. Red Hat NETSCAPE DIRECTORY SERVER 6.0 Installation guide Manuale Utente

  • Scaricare
  • Aggiungi ai miei manuali
  • Stampa
Vedere la pagina 0
Landmann
Red Hat Directory Server 8.2
Installation Guide
Installing Red Hat Directory Server 8.2
Edition 8.2.2
Vedere la pagina 0
1 2 3 4 5 6 ... 117 118

Sommario

Pagina 1 - Installation Guide

LandmannRed Hat Directory Server 8.2Installation GuideInstalling Red Hat Directory Server 8.2Edition 8.2.2

Pagina 2 - Edition 8.2.2

NOTEA note provides additional information that can help illustrate the behavior of the system orprovide more detail for a specific issue.IMPORTANTImp

Pagina 3

GSS- APIGeneric Security Services. T he generic access protocol that is the native way for UNIX-basedsystems to access and authenticate Kerberos servi

Pagina 4 - Table of Contents

indirect CoSAn indirect CoS identifies the template entry using the value of one of the target entry'sattributes.int ernational indexSpeeds up se

Pagina 5

LDAPv3Version 3 of the LDAP protocol, upon which Directory Server bases its schema format.LDBM databaseA high-performance, disk-based database consist

Pagina 6

master agentSee SNMP master agent.matching ruleProvides guidelines for how the server compares strings during a search operation. In aninternational s

Pagina 7

The problem of managing multiple instances of the same information in different directories,resulting in increased hardware and personnel costs.name c

Pagina 8 - 1. Examples and Formatting

OIDSee object identifier.operational attribut eContains information used internally by the directory to keep track of modifications and subtreepropert

Pagina 9 - 1.3. LDAP Locations

presence indexAllows searches for entries that contain a specific indexed attribute.prot ocolA set of rules that describes how devices on a network ex

Pagina 10 - 2. Additional Reading

string to form the full distinguished name. Also relative distinguished name.read- only replicaA replica that refers all update operations to read-wri

Pagina 11 - 4. Documentation History

RFCRequest for Comments. Procedures or standards documents submitted to the Internetcommunity. People can send comments on the technologies before the

Pagina 12 - # DNS information

Server ConsoleJava-based application that allows you to perform administrative management of your DirectoryServer from a GUI.server daemonThe server d

Pagina 13 - 1.2.2. Port Numbers

Red Hat Directory Server Schema Reference provides reference information about the DirectoryServer schema.Red Hat Directory Server Plug-in Programmer&

Pagina 14 - IMPORTANT

SNMPUsed to monitor and manage application processes running on the servers by exchanging dataabout network activity. Also Simple Network Management P

Pagina 15 - 1.2.8. Directory Suffix

supplier serverIn the context of replication, a server that holds a replica that is copied to a different server iscalled a supplier for that replica.

Pagina 16 - 1.2.10. Administration Domain

Transport Layer SecuritySee TLS.UuidA unique number associated with each user on a Unix system.URLUniform Resource Locater. The addressing system used

Pagina 17

Administration domain, Administration DomainCClients cannot locat e the server, Problem: Clients cannot locate the serverCommand- line arguments, Sen

Pagina 18

- starting, Starting the Directory Server ConsoleDirect ory suffix, Directory Suffixdskt une, Using dsktuneEExpress setup- Red Hat Enterprise Linux, E

Pagina 19

- setup-ds-admin.pl, Overview of Setup- silent, Overview of SetupMMigrat ing, Migrat ing from Previous Versions- overview, Migration and Upgrade Overv

Pagina 20 - 1.4. Overview of Setup

Perl- Red Hat Enterprise Linux, Perl PrerequisitesPort number- finding Admin Server, Getting the Admin Server Port NumberRRed Hat Ent erprise Linux, S

Pagina 21

- modes compared, Overview of Setup- Red Hat Enterprise Linux- custom, Custom Setup- express, Express Setup- typical, T ypical Setup- silent setup, Si

Pagina 22

Typical setup- Red Hat Enterprise Linux, T ypical SetupUUninstalling Directory Server- Red Hat Enterprise Linux, Uninstalling Directory Serverupgrade-

Pagina 23

Chapter 1. Preparing for a Directory Server InstallationBefore you install Red Hat Directory Server 8.2, there are required settings and information t

Pagina 24

lab.eng.exam ple.com , so the domain name used by the setup script is lab.eng.exam ple.com .Any information in the /etc/resolv.conf file must match th

Pagina 25

NOTEWhen determining the port numbers you will use, verify that the specified port numbers are notalready in use by running a command like netstat.If

Pagina 26 - 2.1.1. Required JDK

Section 1.2.2, “Port Numbers” has more information on port numbers in Directory Server.1.2.5. Directory ManagerThe Directory Server setup creates a sp

Pagina 27 - 2.2. Using dsktune

The directory suffix is the first entry within the directory tree. At least one directory suffix must beprovided when the Directory Server is set up.

Pagina 28

configuration settings for the Directory Server and Admin Server instances. For example:setup-ds-admin.plThe setup-ds-adm in.pl script can also accept

Pagina 29

NOTEThe section names and parameter names used in the .inf files and on the command line arecase sensitive. Refer to T able 1.1, “setup-ds-admin Optio

Pagina 30

Table 1.1. set up- ds-admin Opt ionsOption Alternate Options Description Example--silent -s This sets that thesetup script will run insilent mode, dra

Pagina 31 - Enterprise Linux

Red Hat Directory Server 8.2 Installation GuideInstalling Red Hat Directory Server 8.2Edition [email protected] m

Pagina 32 - 3.1. Installing OpenJDK

inf.WARNINGThe cache filecontains thecleartextpasswordssupplied duringsetup. Useappropriatecaution andprotection withthis file.--logfile name -l This

Pagina 33 - 3.3. Express Setup

information about the directory service, like suffix and configuration directory information, while stillproceeding quickly through the setup process.

Pagina 34 - # /usr/sbin/setup-ds-admin.pl

Table 1.2. Comparison of Setup TypesSetupScreenParameterInputExpress Typical Custom Silent SetupFileParameterContinue withsetupYes or no N/AAccept lic

Pagina 35

Give theConfigurationDirectoryServer user ID[a]admin[General]ConfigDirectoryAdminID=adminGive theConfigurationDirectoryServer userpassword [a]password

Pagina 36 - 3.4. Typical Setup

DirectoryManager IDManager[slapd]RootDN=cn=DirectoryManagerSet theDirectoryManagerpasswordpassword[slapd]RootDNPwd=passwordInstall sampleentriesYes or

Pagina 37 - System Group [nobody]:

runsnobodyAre you readyto configureyour servers?Yes or no N/A[a] This o p tio n is o nly availab le if yo u c ho o se to reg ister the Direc to ry Se

Pagina 38 - Administration port [9830]:

Chapter 2. System RequirementsBefore configuring the default Red Hat Directory Server 8.2 instances, it is important to verify that thehost server has

Pagina 39 - 3.5. Custom Setup

2.1.2. Directory Server Supported PlatformsDirectory Server 8.2 is supported on the following platforms:Red Hat Enterprise Linux 4 x86 (32-bit)Red Hat

Pagina 40

Along with meeting the required operating system patches and platforms, system settings, like thenumber of file descriptors and T CP information, shou

Pagina 41

NOTERed Hat Directory Server is also supported running on a virtual guest on a Red Hat EnterpriseLinux virtual server.Both Red Hat Enterprise Linux ve

Pagina 42

Legal NoticeCopyright © 2010 Red Hat, Inc..This document is licensed by Red Hat under the Creative Commons Attribution-ShareAlike 3.0 UnportedLicense

Pagina 43

2.3.2. Red Hat Enterprise Linux System ConfigurationAfter verifying the system's kernel and glibc configuration and installing any required modul

Pagina 44 - /usr/bin/redhat-idm -console

Chapter 3. Setting up Red Hat Directory Server on Red HatEnterprise LinuxInstalling and configuring Red Hat Directory Server on Red Hat Enterprise Lin

Pagina 45

3.1. Installing OpenJDKNecessary Java libraries are not bundled with Directory Server. T hey must be downloaded andextracted separately before install

Pagina 46

channel on Red Hat Network, http://rhn.redhat.com.It is also possible to install the Directory Server packages from media:a. Download the packages fr

Pagina 47 - 4.5. Silent Setup

NOTEThe Directory Server requires the fully-qualified domain name to set up the servers, as describedin Section 1.2.1, “Resolving the Fully-qualified

Pagina 48

NOTETo register the Directory Server instance with an existing Configuration Directory Server,select yes. This continues with the registration process

Pagina 49

1. Get the Admin Server port number from the Listen parameter in the console.confconfiguration file.grep \^Listen /etc/dirsrv/adm in-serv/console.con

Pagina 50

defaults to the fully-qualified domain name (FQDN) for the host. For example:Computer name [ldap.example.com]:NOTEThe Directory Server requires the fu

Pagina 51

NOTETo register the Directory Server instance with an existing Configuration Directory Server,select yes. This continues with the registration process

Pagina 52

Are you ready to set up your servers? [yes]:Creating directory server . . .Your new DS instance 'example2' was successfully created.Creating

Pagina 53

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Pagina 54

WARNINGIf Directory Server is already installed on your machine, it is extremely important that you performa migration, not a fresh installation. Migr

Pagina 55

instance, called the Configuration Directory Server. T his registers the new instance so it can bemanaged by the Console. If this is the first Directo

Pagina 56 - Specifies the password

the Directory Server database. T his option is helpful for evaluation or testing Directory Serverfeatures.This is not required.17. Select whether to

Pagina 57

/usr/bin/redhat-idm -console -a http://localhost:9830NOTEIf you do not pass the Admin Server port number with the redhat-idm-console command,then you

Pagina 58

Chapter 4. Advanced Setup and ConfigurationAfter the default Directory Server and Admin Server have been configured, there are tools available tomanag

Pagina 59

If there are proxies for the HT T P connections on the client machine running the Directory ServerConsole, the configuration must be changed in one of

Pagina 60

NOTENew Directory Server instances can be created through the Directory Server Console; this isdescribed in the Directory Server Administrator's

Pagina 61

4.3.2. Registering an Existing Directory Server Instance with the ConfigurationDirectory ServerThe Configuration Directory Server uses the o=NetscapeR

Pagina 62

1. Install the Directory Server packages.2. Make the setup .inf file. It must specify the following directives:[General] FullMachineName= dir.exampl

Pagina 63

NOTEWhen creating a single instance of Directory Server, the Directory Server packages must alreadybe installed, and the Admin Server must already be

Pagina 64

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Pagina 65

/usr/sbin/setup-ds-admin.pl General.FullMachineName=ldap.exam ple.com “slapd.Suffix=dc=example,dc=com” slapd.ServerPort=389NOTEPassing argumen

Pagina 66

Table 4 .2. setup- ds-admin OptionsOption Alternate Options Description Example--silent -s This sets that thesetup script will run insilent mode, draw

Pagina 67 - 5.2. Migrating 7.1 Servers

WARNINGThe cache filecontains thecleartextpasswordssupplied duringsetup. Useappropriatecaution andprotection withthis file.--logfile name -l This para

Pagina 68 - /usr/sbin directory

dn: cn=replica,cn=dc=example\,dc=com,cn=mapping tree,cn=configchangetype: addobjectclass: topobjectclass: nsds5replicaobjectclass: extensibleObjectcn:

Pagina 69

[General] directive=value directive=value directive=value ...[slapd] directive=valuedirective=value directive=value ...[admin]directive=value directiv

Pagina 70

Table 4 .3. [General] DirectivesDirect ive Description Required ExampleFullMachineName Specifies the fullyqualified domain nameof the machine onwhich

Pagina 71 - 5.2.2. Before Migration

ConfigDirectoryAdminPwdSpecifies the passwordfor the admin user.YesChapter 4. Advanced Setup and Configuration 53

Pagina 72

Table 4 .4 . [slapd] DirectivesDirect ive Description Required ExampleServerPort Specifies the port theserver will use for LDAPconnections. Forinforma

Pagina 73

structure and accesscontrol. If this directiveis used and InstallLdifFile isalso used, then thisdirective has no effect.The default is no.AddSampleEnt

Pagina 74

is not used, then thedefault is yes, meaningthe configuration dataare stored in the newinstance.UseExistingMC Sets whether to storethe configuration d

Pagina 75

. . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . .

Pagina 76

Table 4 .5. [admin] DirectivesDirect ive Description Required ExampleSysUser Specifies the user aswhich the Admin Serverwill run. The default isuser n

Pagina 77

Example 4 .1. .inf File for a Custom Installat ion[General]FullMachineName= ldap.exam ple.comSuiteSpotUserID= nobodySuiteSpotGroup=

Pagina 78 - 5.3. Upgrading 8.1 Servers

Example 4 .2. .inf File for Registering the Instance with a Configuration Directory Server(Typical Setup)[General] FullMachineName= dir.example.com Su

Pagina 79

NOTEThere are two PassSync packages available, one for 32-bit Windows servers and one for64-bit. Make sure to select the appropriate packages for your

Pagina 80

certutil.exe -d . -L -n "DS CA cert"13. Reboot the Windows machine. The Password Sync service is not available until after a systemreboot.N

Pagina 81

4.7.1. Removing a Single Directory Server InstanceIt is possible to remove a single instance of Directory Server without uninstalling the system./usr/

Pagina 82

Chapter 5. Migrating from Previous VersionsRed Hat Directory Server 8.2 supports both a migration path and an in-place upgrade, depending on theversio

Pagina 83

5.2. Migrating 7.1 ServersRed Hat Directory Server 7.1 servers are migrated to a new Directory Server 8.2 instance. This uses aspecial script which ca

Pagina 84

old Directory Server. There is also one required argument, General.ConfigDirectoryAdminPwd,which gives the password of the directory administrator for

Pagina 85

Table 5.1. migrate-ds-admin Opt ionsOption Alternate Options DescriptionGeneral.ConfigDirectoryAdminPwd=passwordRequired. This is the passwordfor the

Pagina 86 - 5.4. Upgrading Password Sync

Red Hat Directory Server 8.2 Installation Guide4

Pagina 87

another with a differentarchitecture. For cross-platformmigrations, only certain data aremigrated. This migration actiontakes database informationexpo

Pagina 88 - 6.2. LDAP Tool Locations

5.2.2. Before MigrationFor the safety of the Directory Server data, do these things before beginning to migrate the DirectoryServer instances:Shut dow

Pagina 89 - Listen 0.0.0.0:port

10presence.ldif05rfc2247.ldif5.2.3. Migrating a Server or Single InstanceTo migrate a Directory Server installation to a new one on the same machine,

Pagina 90

resynchronized.a. Reboot the Windows machine.b. In the Directory Server Console, open the Configuration tab.c. Expand the Replication folder, and s

Pagina 91 - 6.7. Troubleshooting

packages.Make the first migrated master the configuration instance since it is not replicated. T hen,register other master and hub servers with the fi

Pagina 92

NOTEIf the new machine has a different architecture than the old machine, such as moving from x86 tox86_64, you must perform a cross platform migratio

Pagina 93

1. Stop all Directory Server instances and the Admin Server.2. Back up all the Directory Server user and configuration data.3. Install the Director

Pagina 94

NOTEOn Red Hat Enterprise Linux 5 (64-bit) machines, the m igrate-ds-adm in tool is in the /usr/sbin directory.The command format to move from one pla

Pagina 95

/usr/sbin/migrate-ds-admin.pl --cross --oldsroot server2:/migration/opt/redhat-ds --actualsroot /opt/redhat-ds General.ConfigDirectoryAdminPwd=passwor

Pagina 96

IMPORTANTIf there are any duplicate entries (based on duplicate DNs), then the upgrade process makes acopy of the database. It is possible, in an extr

Pagina 97

PrefaceThis installation guide describes the Red Hat Directory Server 8.2 installation process and the migrationprocess. T his manual provides detaile

Pagina 98

rpm -qf /usr/sbin/setup-ds-admin.pl redhat-ds-admin-8.2.0-0.el5dsrv6. Verify that the directory databases have been successfully migrated. Directory

Pagina 99

ls -R /var/lib/dirsrv/slapd-instance_name/dbdb:abcRoot abcRoot.orig DBVERSION guardian log.0000000001 userRootdb/abcRoot:aci.db4 DBVERSIO

Pagina 100 - Glossary

NOTEManually restarting the server should only be required for Red Hat Enterprise Linux 4systems. Other systems should restart automatically.NOTEThe s

Pagina 101

[..] - upgradedn userRoot: Duplicated entrydn detected: "cn=uid\3djsmith1\2cou\3ddev0\2co\3dengineering0,ou=people,dc=example,dc=com ": Entr

Pagina 102

To upgrade Directory Server and move the instance from one machine to another, the 8.1 informationmust be imported into the new instance manually. T h

Pagina 103

4. Copy the LDIF files from the old machine to the new machine.5. Import the LDIF files into the new Directory Server 8.2 databases.ldif2db -n userR

Pagina 104

8. Run setup-ds.pl with the -u option. This updates the DN formats in any migrated databases tobe compliant with RFC 4514.setup-ds.pl -u9. Restart t

Pagina 105

Chapter 6. General Usage InformationThis chapter contains common information that you will use after installing Red Hat Directory Server 8.2,such as w

Pagina 106

Table 6.2. Red Hat Enterprise Linux 4 and 5 (x86_64 )File or Directory LocationLog files /var/log/dirsrv/slapd-instanceConfiguration files /etc/dirsr

Pagina 107

redhat-idm-console -a http://localhost:9830 -u "cn=Directory Manager" -w secretTable 6.3. redhat- idm-console OptionsOption Description-a ad

Pagina 108

1.1. Command and File ExamplesAll of the examples for Red Hat Directory Server commands, file locations, and other usage are given forRed Hat Enterpri

Pagina 109

Passing the instance name stops or starts only that instance; not giving any name starts or stops allinstances.NOTEThe service name for the Directory

Pagina 110

cd /etc/dirsrv/slapd-instance/vi dse.ldif4. Locate the nsslapd-rootpw parameter.nsslapd-rootpw: {SS HA}x03lZLMyOPaGH5VB8fcys1IV+TVNbBIOwZEYoQ==Delete

Pagina 111

Example 6.1. dskt une OutputRed Hat Directory Server system tuning analysis version 10-AUGUST-2007.NOTICE : System is i686-unknown-linux2.6.9-34.EL (1

Pagina 112

/etc/dirsrv/slapd-instance_name directory.GlossaryAaccess cont rol instructionSee ACI.access cont rol listSee ACL.access right sIn the context of acce

Pagina 113

regardless of the conditions of the bind.approximate indexAllows for efficient approximate or "sounds-like" searches.at tributeHolds descrip

Pagina 114

bind DNDistinguished name used to authenticate to Directory Server when performing an operation.bind ruleIn the context of access control, the bind ru

Pagina 115

server. Programs written to use CGI are called CGI programs or CGI scripts and can be writtenin many of the common programming languages. CGI programs

Pagina 116

alphabet or how to compare letters with accents to letters without accents.consumerServer containing replicated directory trees or subtrees from a sup

Pagina 117

definition entrySee CoS definition entry.Direct ory Access ProtocolSee DAP.Direct ory ManagerThe privileged database administrator, comparable to the

Pagina 118

called realthing.yourdomain.domain where the server currently exists.EentryA group of lines in the LDIF file that contains information about an object

Commenti su questo manuale

Nessun commento