<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>opuntia.biz &#187; OpenLDAP</title>
	<atom:link href="http://opuntia.biz/tag/openldap/feed/" rel="self" type="application/rss+xml" />
	<link>http://opuntia.biz</link>
	<description>Piccoli appunti per grandi appassionati di sistemi open source ...</description>
	<lastBuildDate>Wed, 08 Feb 2012 22:30:27 +0000</lastBuildDate>
	<language>it</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='opuntia.biz' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>opuntia.biz &#187; OpenLDAP</title>
		<link>http://opuntia.biz</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://opuntia.biz/osd.xml" title="opuntia.biz" />
	<atom:link rel='hub' href='http://opuntia.biz/?pushpress=hub'/>
		<item>
		<title>Aggiungere/modificare utenti ad un PDC realizzato con Samba e OpenLDAP</title>
		<link>http://opuntia.biz/2010/04/19/aggiungeremodificare-utenti-ad-un-pdc-realizzato-con-samba-e-openldap/</link>
		<comments>http://opuntia.biz/2010/04/19/aggiungeremodificare-utenti-ad-un-pdc-realizzato-con-samba-e-openldap/#comments</comments>
		<pubDate>Mon, 19 Apr 2010 07:55:35 +0000</pubDate>
		<dc:creator>BoB</dc:creator>
				<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Linux tips]]></category>
		<category><![CDATA[Samba]]></category>
		<category><![CDATA[OpenLDAP]]></category>
		<category><![CDATA[PDC]]></category>

		<guid isPermaLink="false">http://opuntia.biz/?p=904</guid>
		<description><![CDATA[Aggiungere un utente: &#8230; come &#8220;Administrator&#8221; smbldap-useradd -N &#8220;Nome&#8221; -S &#8220;Cognome&#8221; -P -a -m -c &#8220;Nome Cognome&#8221; username_assegnato -s /bin/bash -g &#8220;Domain Admins&#8221; -u 500 Administrator &#8230; come utente normale smbldap-useradd -N &#8220;Nome&#8221; -S &#8220;Cognome&#8221; -P -a -m -c &#8220;Nome Cognome&#8221; username_assegnato Aggiungere un gruppo all&#8217;utente: Aggiungere l&#8217;utente &#8220;username_asegnato&#8221; al gruppo &#8220;Amministratori&#8221; (oltre al gruppo <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=904&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Aggiungere un utente:</p>
<blockquote><p>
<em>&#8230; come &#8220;Administrator&#8221;</em><br />
smbldap-useradd -N &#8220;Nome&#8221; -S &#8220;Cognome&#8221; -P -a -m -c &#8220;Nome Cognome&#8221; username_assegnato -s /bin/bash -g &#8220;Domain Admins&#8221; -u 500 Administrator</p>
<p><em>&#8230; come utente normale</em><br />
smbldap-useradd -N &#8220;Nome&#8221; -S &#8220;Cognome&#8221; -P -a -m -c &#8220;Nome Cognome&#8221; username_assegnato
</p></blockquote>
<p>Aggiungere un gruppo all&#8217;utente:</p>
<blockquote><p>
Aggiungere l&#8217;utente &#8220;username_asegnato&#8221; al gruppo &#8220;Amministratori&#8221; (oltre al gruppo principale di appartenenza)<br />
smbldap-usermod -G &#8220;Domain Admins&#8221; username_assegnato
</p></blockquote>
<p>Vedere chi appartiene ad un determinato gruppo:</p>
<blockquote><p>
smbldap-groupshow &#8220;Domain Admins&#8221;
</p></blockquote>
<p>Ottenere una lista degli utenti presenti sul sistema:</p>
<blockquote><p>
smbldap-userlist
</p></blockquote>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rpennol.wordpress.com/904/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rpennol.wordpress.com/904/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rpennol.wordpress.com/904/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rpennol.wordpress.com/904/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rpennol.wordpress.com/904/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rpennol.wordpress.com/904/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rpennol.wordpress.com/904/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rpennol.wordpress.com/904/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=904&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://opuntia.biz/2010/04/19/aggiungeremodificare-utenti-ad-un-pdc-realizzato-con-samba-e-openldap/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f61ec7465405898a903989b59eb20a4f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">BoB</media:title>
		</media:content>
	</item>
		<item>
		<title>Postfix e LDAP-aliases</title>
		<link>http://opuntia.biz/2010/02/22/postfix-e-ldap-aliases/</link>
		<comments>http://opuntia.biz/2010/02/22/postfix-e-ldap-aliases/#comments</comments>
		<pubDate>Mon, 22 Feb 2010 15:24:30 +0000</pubDate>
		<dc:creator>BoB</dc:creator>
				<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Posta elettronica]]></category>
		<category><![CDATA[Postfix]]></category>
		<category><![CDATA[OpenLDAP]]></category>

		<guid isPermaLink="false">http://opuntia.biz/?p=428</guid>
		<description><![CDATA[Molto spesso risulta comodo gestire gli aliases di posta elettronica direttamente tramite LDAP. Assunto che gli aliases di posta elettronica siano stati migrati da un precedente sistema tramite lo script migrate-aliases e che all&#8217;interno dell&#8217;albero LDAP sia stata creata la UO &#8220;Aliases&#8221; &#8230; Queste sono le modifiche da apportare: /etc/postfix/main.conf alias_maps = hash:/etc/aliases, ldap:/etc/postfix/ldap-aliases.cf /etc/postfix/ldap-aliases.conf <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=428&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Molto spesso risulta comodo gestire gli aliases di posta elettronica direttamente tramite LDAP.<br />
Assunto che gli aliases di posta elettronica siano stati migrati da un precedente sistema tramite lo script migrate-aliases e che all&#8217;interno dell&#8217;albero LDAP sia stata creata la UO &#8220;Aliases&#8221; &#8230;<br />
Queste sono le modifiche da apportare:</p>
<blockquote><p>
<strong>/etc/postfix/main.conf</strong></p>
<p>alias_maps = hash:/etc/aliases, ldap:/etc/postfix/ldap-aliases.cf
</p></blockquote>
<blockquote><p>
<strong>/etc/postfix/ldap-aliases.conf</strong></p>
<p>server_host = 127.0.0.1<br />
search_base = ou=Aliases, dc=math, dc=unipa, dc=it<br />
bind_dn = cn=admin, dc=math, dc=unipa, dc=it<br />
bind_pw = AtavacroN<br />
query_filter = (&amp;(objectClass=nisMailAlias)(cn=%u))<br />
result_attribute = rfc822MailMember<br />
#result_format  =  %s<br />
scope = sub<br />
#cache = yes<br />
bind = yes
</p></blockquote>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rpennol.wordpress.com/428/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rpennol.wordpress.com/428/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rpennol.wordpress.com/428/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rpennol.wordpress.com/428/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rpennol.wordpress.com/428/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rpennol.wordpress.com/428/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rpennol.wordpress.com/428/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rpennol.wordpress.com/428/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=428&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://opuntia.biz/2010/02/22/postfix-e-ldap-aliases/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f61ec7465405898a903989b59eb20a4f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">BoB</media:title>
		</media:content>
	</item>
		<item>
		<title>Script per la creazione di un utente tramite CPU(Change Password Utility)/OpenLDAP</title>
		<link>http://opuntia.biz/2010/02/17/script-per-la-creazione-di-un-utente-tramite-cpuldap/</link>
		<comments>http://opuntia.biz/2010/02/17/script-per-la-creazione-di-un-utente-tramite-cpuldap/#comments</comments>
		<pubDate>Wed, 17 Feb 2010 13:10:06 +0000</pubDate>
		<dc:creator>BoB</dc:creator>
				<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Linux tips]]></category>
		<category><![CDATA[CPU]]></category>
		<category><![CDATA[OpenLDAP]]></category>

		<guid isPermaLink="false">http://opuntia.biz/?p=420</guid>
		<description><![CDATA[#!/bin/sh # # Nome utente &#8230; echo -e &#8220;Immettere nome utente: \c &#8220; read USER_NAME # # Password utente echo -e &#8220;Introdurre password: \c &#8220; read PASSWORD # # Oggetto dell&#8217;email SUBJECT=&#8221;Creazione account utente&#8221; # # Invia l&#8217;email all&#8217;utente appena creato &#8230; EMAIL=$USER_NAME # # Aggiunge l&#8217;utente all&#8217;albero LDAP /usr/sbin/cpu useradd &#8211;password=$PASSWORD $USER_NAME &#8211;makehome &#8211;directory=/home/$USER_NAME <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=420&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>#!/bin/sh<br />
#<br />
# Nome utente &#8230;<br />
echo -e &#8220;Immettere nome utente: \c &#8220;<br />
read USER_NAME<br />
#<br />
# Password utente<br />
echo -e &#8220;Introdurre password: \c &#8220;<br />
read PASSWORD<br />
#<br />
# Oggetto dell&#8217;email<br />
SUBJECT=&#8221;Creazione account utente&#8221;<br />
#<br />
# Invia l&#8217;email all&#8217;utente appena creato &#8230;<br />
EMAIL=$USER_NAME<br />
#<br />
# Aggiunge l&#8217;utente all&#8217;albero LDAP<br />
/usr/sbin/cpu useradd &#8211;password=$PASSWORD $USER_NAME &#8211;makehome &#8211;directory=/home/$USER_NAME &#8211;skel=/etc/skel/ &#8211;shell=/sbin/nologin &#8211;gid=100<br />
#<br />
# Testo dell&#8217;email da inviare all&#8217;utente<br />
EMAILMESSAGE=&#8221;/tmp/emailmessage.txt&#8221;<br />
echo &#8220;Gentile utente&#8221; $USER_NAME&#8221;,&#8221;&gt; $EMAILMESSAGE<br />
echo &#8220;si comunica che il suo account e&#8217; stato attivato. Il suo indirizzo di posta e&#8217;: &#8220;$USER_NAME&#8221;@server.it&#8221; &gt;&gt;$EMAILMESSAGE<br />
echo &#8220;Si ricorda che la password (che deve essere tenuta nascosta) e&#8217;: &#8221; $PASSWORD &gt;&gt;$EMAILMESSAGE<br />
echo &#8220;Cordiali saluti.&#8221; &gt;&gt;$EMAILMESSAGE<br />
echo &#8221; &#8221; &gt;&gt;$EMAILMESSAGE<br />
echo &#8220;Area ICT &#8211; server.it&#8221; &gt;&gt;$EMAILMESSAGE<br />
echo &#8221; &#8221; &gt;&gt;$EMAILMESSAGE<br />
echo &#8220;&#8211; Questo messaggio e&#8217; stato generato automaticamente dal sistema &#8211;&#8221; &gt;&gt;$EMAILMESSAGE<br />
#<br />
# Invia l&#8217;email di comunicazione creazione account all&#8217;utente<br />
/bin/mail -s &#8220;$SUBJECT&#8221; &#8220;$EMAIL&#8221;  $EMAILMESSAGEITADMIN<br />
echo &#8220;si comunica che l&#8217;account dell&#8217;utente &#8216;&#8221;$USER_NAME&#8221;&#8216; e&#8217; stato attivato. E&#8217; stato attivato, altresi&#8217;, l&#8217;indirizzo di posta: &#8220;$USER_NAME&#8221;@server.it&#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
echo &#8220;Si ricorda che per l&#8217;inserimento dei dati telefonici all&#8217;interno della rubrica centralizzata e&#8217; necessario utilizzare PHPldapADMIN.&#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
echo &#8220;Cordiali saluti.&#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
echo &#8221; &#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
echo &#8220;Il vostro umile ed indefesso servo &#8211; server.it&#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
echo &#8221; &#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
echo &#8220;&#8211; Questo messaggio e&#8217; stato generato automaticamente dal sistema &#8211;&#8221; &gt;&gt;$EMAILMESSAGEITADMIN<br />
#<br />
# Invia l&#8217;email di comunicazione creazione account all&#8217;amministratore di sistema<br />
/bin/mail -s &#8220;$SUBJECT&#8221; area-ict@localhost &lt; $EMAILMESSAGEITADMIN<br />
# Aggiunge l&#8217;utente all&#8217;albero LDAP<br />
#/usr/sbin/cpu useradd &#8211;password=$PASSWORD $USER_NAME &#8211;makehome &#8211;directory=/home/$USER_NAME &#8211;skel=/etc/skel/ &#8211;shell=/sbin/nologin &#8211;gid=100</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rpennol.wordpress.com/420/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rpennol.wordpress.com/420/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rpennol.wordpress.com/420/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rpennol.wordpress.com/420/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rpennol.wordpress.com/420/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rpennol.wordpress.com/420/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rpennol.wordpress.com/420/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rpennol.wordpress.com/420/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=420&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://opuntia.biz/2010/02/17/script-per-la-creazione-di-un-utente-tramite-cpuldap/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f61ec7465405898a903989b59eb20a4f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">BoB</media:title>
		</media:content>
	</item>
		<item>
		<title>Aggungere un utente su un server LDAP</title>
		<link>http://opuntia.biz/2010/02/17/aggungere-un-utente-su-un-server-ldap/</link>
		<comments>http://opuntia.biz/2010/02/17/aggungere-un-utente-su-un-server-ldap/#comments</comments>
		<pubDate>Wed, 17 Feb 2010 09:14:40 +0000</pubDate>
		<dc:creator>BoB</dc:creator>
				<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Linux tips]]></category>
		<category><![CDATA[OpenLDAP]]></category>

		<guid isPermaLink="false">http://opuntia.biz/?p=416</guid>
		<description><![CDATA[Dopo avere installato, configurato ed abbondantemente testato un server LDAP sorge generalmente un &#8220;piccolo&#8221; problema: per aggiungere un utente fino ad oggi siamo stati abituati a digitare &#8230; useradd nome utente Con questo comando, però, aggiungiamo un utente al sistema. Per aggiungere un utente all&#8217;albero LDAP abbiamo diverse scelte. Possiamo farlo via web (PHPldapAdmin) e <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=416&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Dopo avere installato, configurato ed abbondantemente testato un server LDAP sorge generalmente un &#8220;piccolo&#8221; problema: per aggiungere un utente fino ad oggi siamo stati abituati a digitare &#8230;</p>
<blockquote><p>useradd nome utente</p></blockquote>
<p>Con questo comando, però, aggiungiamo un utente al sistema.<br />
Per aggiungere un utente all&#8217;albero LDAP abbiamo diverse scelte. Possiamo farlo via web (<em><a href="http://phpldapadmin.sourceforge.net/wiki/index.php/Main_Page">PHPldapAdmin</a></em>) e da shell (utilizzando il comando <em>ldapadd</em>).<br />
In quest&#8217;ultimo caso, però, dovremmo creare una struttura <a href="http://www.pluto.it/files/ildp/HOWTO/LDAP-HOWTO/x744.html">ldif</a>, cosa che magari non è di immediato utilizzo.<br />
Siccome Linux=semplicità &#8230;<br />
La soluzione si chiama: <a href="http://cpu.sourceforge.net/">CPU</a> (<strong>C</strong>hange <strong>P</strong>assword <strong>U</strong>tility) !!!<br />
Basterà scaricare da <a href="http://dag.wieers.com/rpm/packages/cpu/">qui</a> la versione più adatta alla propria distribuzione Linux (per CentOS io ho sempre utilizzato <a href="http://dag.wieers.com/rpm/packages/cpu/cpu-1.4.3-0.2.el4.rf.i386.rpm">questo</a> rpm) e digitare il comando:</p>
<blockquote><p>rpm -Uvh cpu-1.4.3-0.2.el4.rf.i386.rpm</p></blockquote>
<p>Una volta effettuata l&#8217;installazione potremo aggiungere un nuovo utente digitando il comando:</p>
<blockquote><p>cpu useradd &#8211;password=passowrd_utente nome_utente &#8211;makehome &#8211;directory=/home/nome_utente &#8211;skel=/etc/skel/ &#8211;shell=/sbin/nologin &#8211;exec=/root/mandamail.sh &#8211;gid=100 &#8211;firstname=&#8221;Utente&#8221; &#8211;lastname=&#8221;Fittizio&#8221;</p>
<p>dove:<br />
&#8211;password = password dell&#8217;utente<br />
&#8211;makehome = crea la home dell&#8217;utente<br />
&#8211;directory = home directory dell&#8217;utente<br />
&#8211;skel = quando viene creata la home directory di un nuovo utente, viene inizializzata con i file dalla directory /etc/skel . L&#8217;amministratore di sistema può creare dei file in /etc/skel  che daranno un ambiente di default per gli utenti. Ad esempio può creare un file /etc/skel/.profile  che imposta la variabile d&#8217;ambiente EDITOR ad un editor facile da usare.<br />
&#8211;shell = shell di default del nuovo utente<br />
&#8211;exec = file batch da eseguire alla creazione del nuovo utente<br />
&#8211;gid = gruppo di afferenza dell&#8217;utente<br />
&#8211;firstname/&#8211;lastname = dati dell&#8217;utente</p></blockquote>
<p>CPU può essere finemente parametrizzato tramite il file /etc/cpu.conf<br />
Ecco un esempio del file &#8230;</p>
<blockquote><p># See cpu.conf(5) for documentation</p>
<p>[GLOBAL]<br />
DEFAULT_METHOD  = ldap<br />
CRACKLIB_DICTIONARY = /usr/lib/cracklib_dict</p>
<p>[LDAP]<br />
LDAP_HOST       = 127.0.0.1<br />
LDAP_PORT       = 389<br />
# Can also use LDAP_URI = ldaps://localhost:389 for TLS support<br />
BIND_DN         = cn=admin,dc=ldap,dc=server,dc=it<br />
BIND_PASS       = password_amministrazione_ldap_server<br />
USER_BASE       = ou=People,dc=ldap,dc=server,dc=it<br />
# replace account with inetOrgPerson if you want first or last name<br />
GROUP_BASE      = ou=group,dc=ldap,dc=server,dc=it<br />
USER_OBJECT_CLASS       = account,posixAccount,shadowAccount,top<br />
GROUP_OBJECT_CLASS      = posixGroup,top<br />
USER_FILTER     = (objectClass=posixAccount)<br />
GROUP_FILTER    = (objectClass=posixGroup)<br />
USER_CN_STRING  = uid<br />
GROUP_CN_STRING = cn<br />
SKEL_DIR        = /etc/skel<br />
DEFAULT_SHELL   = /sbin/nologin<br />
HOME_DIRECTORY  = /home<br />
MAX_UIDNUMBER = 10000<br />
MIN_UIDNUMBER = 2000<br />
MAX_GIDNUMBER = 10000<br />
MIN_GIDNUMBER = 100<br />
ID_MAX_PASSES = 1000<br />
USERGROUPS = yes<br />
USERS_GID = 100<br />
RANDOM = &#8220;false&#8221;<br />
PASSWORD_FILE = &#8220;/etc/passfile&#8221;<br />
SHADOW_FILE = &#8220;/etc/shadowfile&#8221;<br />
HASH = &#8220;md5&#8243;<br />
#ADD_SCRIPT = &#8220;contrib/postaddscript.sh&#8221;<br />
#DEL_SCRIPT = &#8220;foo&#8221;<br />
SHADOWLASTCHANGE        = 11192<br />
SHADOWMAX               = 99999<br />
SHADOWWARING            = 7<br />
SHADOWEXPIRE            = -1<br />
SHADOWFLAG              = 134538308<br />
SHADOWMIN               = -1<br />
SHADOWINACTIVE          = -1</p>
<p>[PASSWD]<br />
# Broken<br />
GROUP   =       1000<br />
HOME    =       /home<br />
INACTIVE =      -1<br />
#EXPIRE =<br />
SHELL   =       /bin/bash<br />
SKEL    =       /etc/skel<br />
COMMENT =       &#8220;Default Gecos&#8221;<br />
PASSWORD =      /etc/passwd<br />
SHADOW  =       /etc/shadow</p></blockquote>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rpennol.wordpress.com/416/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rpennol.wordpress.com/416/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rpennol.wordpress.com/416/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rpennol.wordpress.com/416/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rpennol.wordpress.com/416/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rpennol.wordpress.com/416/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rpennol.wordpress.com/416/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rpennol.wordpress.com/416/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=416&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://opuntia.biz/2010/02/17/aggungere-un-utente-su-un-server-ldap/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f61ec7465405898a903989b59eb20a4f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">BoB</media:title>
		</media:content>
	</item>
		<item>
		<title>Attivare un servizio di replica di un server LDAP</title>
		<link>http://opuntia.biz/2010/02/11/attivare-un-servizio-di-replica-di-un-server-ldap/</link>
		<comments>http://opuntia.biz/2010/02/11/attivare-un-servizio-di-replica-di-un-server-ldap/#comments</comments>
		<pubDate>Thu, 11 Feb 2010 10:01:38 +0000</pubDate>
		<dc:creator>BoB</dc:creator>
				<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Linux tips]]></category>
		<category><![CDATA[OpenLDAP]]></category>

		<guid isPermaLink="false">http://opuntia.biz/?p=403</guid>
		<description><![CDATA[Dati due server: - il server principale (MASTER) con indirizzo ip 192.168.1.10 - il server di backup (SLAVE) con indirizzo ip 192.168.1.20 per potere duplicare l&#8217;albero LDAP dal server MASTER al server SLAVE occorre configurare adeguatamente il file slapd.conf -+-+-+-+-+-+-+-+-+-+-+-+&#8211;+-+-+-+-+-+-+-+-+-+-+-+- slapd.conf &#8211; MASTER (192.168.1.10) &#8230;. &#8230;. # Replica del database overlay syncprov &#8230;. &#8230;. -+-+-+-+-+-+-+-+-+-+-+-+&#8211;+-+-+-+-+-+-+-+-+-+-+-+- <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=403&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Dati due server:<br />
- il server principale (MASTER) con indirizzo ip 192.168.1.10<br />
- il server di backup (SLAVE) con indirizzo ip 192.168.1.20<br />
per potere duplicare l&#8217;albero LDAP dal server MASTER al server SLAVE occorre configurare adeguatamente il file slapd.conf</p>
<p>-+-+-+-+-+-+-+-+-+-+-+-+&#8211;+-+-+-+-+-+-+-+-+-+-+-+-<br />
<strong>slapd.conf &#8211; MASTER (192.168.1.10)</strong></p>
<p>&#8230;.<br />
&#8230;.<br />
# Replica del database<br />
overlay         syncprov<br />
&#8230;.<br />
&#8230;.<br />
-+-+-+-+-+-+-+-+-+-+-+-+&#8211;+-+-+-+-+-+-+-+-+-+-+-+-</p>
<p>-+-+-+-+-+-+-+-+-+-+-+-+&#8211;+-+-+-+-+-+-+-+-+-+-+-+-<br />
<strong>slapd.conf &#8211; SLAVE (192.168.1.20)</strong></p>
<p>&#8230;.<br />
&#8230;.<br />
rootdn &#8220;cn=admin,dc=intranet,dc=server,dc=it&#8221;</p>
<p>syncrepl rid=001<br />
    provider=ldap://192.168.1.10<br />
    tls_reqcert=allow<br />
    type=refreshAndPersist<br />
    retry=&#8221;60 +&#8221;<br />
    searchbase=&#8221;dc=intranet,dc=server,dc=it&#8221;<br />
    filter=&#8221;(objectClass=*)&#8221;<br />
    scope=sub<br />
    attrs=&#8221;*&#8221;<br />
    schemachecking=off<br />
    bindmethod=simple<br />
    binddn=&#8221;cn=admin,dc=intranet,dc=server,dc=it&#8221;<br />
    credentials=password_ldap<br />
&#8230;.<br />
&#8230;.<br />
-+-+-+-+-+-+-+-+-+-+-+-+&#8211;+-+-+-+-+-+-+-+-+-+-+-+-</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rpennol.wordpress.com/403/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rpennol.wordpress.com/403/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rpennol.wordpress.com/403/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rpennol.wordpress.com/403/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rpennol.wordpress.com/403/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rpennol.wordpress.com/403/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rpennol.wordpress.com/403/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rpennol.wordpress.com/403/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=403&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://opuntia.biz/2010/02/11/attivare-un-servizio-di-replica-di-un-server-ldap/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f61ec7465405898a903989b59eb20a4f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">BoB</media:title>
		</media:content>
	</item>
		<item>
		<title>Permettere all&#8217;utente di cambiare la password in sistema con LDAP</title>
		<link>http://opuntia.biz/2009/11/30/permettere-allutente-di-cambiare-la-password-in-sistema-con-ldap/</link>
		<comments>http://opuntia.biz/2009/11/30/permettere-allutente-di-cambiare-la-password-in-sistema-con-ldap/#comments</comments>
		<pubDate>Mon, 30 Nov 2009 14:33:41 +0000</pubDate>
		<dc:creator>BoB</dc:creator>
				<category><![CDATA[LDAP]]></category>
		<category><![CDATA[OpenLDAP]]></category>

		<guid isPermaLink="false">http://opuntia.biz/?p=190</guid>
		<description><![CDATA[Creare il file: /etc/openldap/slapd.access.conf Aggiungere al file: /etc/openldap/slapd.access.conf le seguenti righe &#8230; access to attrs=userPassword by dn=&#8221;cn=admin,dc=dominio,dc=com&#8221; write by self write by anonymous auth by * none access to dn.base=&#8221;" by * read access to * by dn=&#8221;cn=admin,dc=dominio,dc=com&#8221; write by * read Editare il file /etc/openldap/slapd.conf ed aggiungere la seguente riga: include /etc/openldap/slapd.access.conf<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=190&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Creare il file: /etc/openldap/slapd.access.conf<br />
Aggiungere al file: /etc/openldap/slapd.access.conf  le seguenti righe &#8230;</p>
<p>access to attrs=userPassword<br />
	by dn=&#8221;cn=admin,dc=dominio,dc=com&#8221; write<br />
	by self write<br />
	by anonymous auth<br />
	by * none</p>
<p>access to dn.base=&#8221;" by * read</p>
<p>access to *<br />
	by dn=&#8221;cn=admin,dc=dominio,dc=com&#8221; write<br />
	by * read</p>
<p>Editare il file /etc/openldap/slapd.conf ed aggiungere la seguente riga:</p>
<p>include /etc/openldap/slapd.access.conf </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/rpennol.wordpress.com/190/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/rpennol.wordpress.com/190/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/rpennol.wordpress.com/190/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/rpennol.wordpress.com/190/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/rpennol.wordpress.com/190/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/rpennol.wordpress.com/190/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/rpennol.wordpress.com/190/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/rpennol.wordpress.com/190/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=opuntia.biz&amp;blog=8227010&amp;post=190&amp;subd=rpennol&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://opuntia.biz/2009/11/30/permettere-allutente-di-cambiare-la-password-in-sistema-con-ldap/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/f61ec7465405898a903989b59eb20a4f?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">BoB</media:title>
		</media:content>
	</item>
	</channel>
</rss>
