[LDAPannounce] LDAP Presentation: Version 21 March 2003
Adam Williams
awilliam@whitemice.org
22 Mar 2003 03:14:09 -0500
Download from ftp://ftp.kalamazoolinux.org/pub/pdf/ldapv3.pdf
-----------------------
21 March 2003 Changes (The Cleansed Wood Edition)
1. Slide on PAM authentication for Squid users.
2. New section on the LDAP patch for ISC DHCPd. This section is relatively
complete with configuration information and example objects.
3. Completed the 1.1.x slide for expiremental schema OIDs.
4. New slide on changes to the LDAP related elements of recent Samba version
(2.2.5, 2.2.6, 2.2.8).
5. Note on the suffixAlias slide about the disabling of this feature in 2.1.6
and later.
6. Note on RDN enforcement in OpenLDAP 2.1.14 and later.
7. Completed section on AIX; using NSS LDAP on AIX and configuring the AIX
resolver.
Section List - Basics (slide 6), Schema (slide 18), Structure (slide 30),
Special Objects & Attributes (slide 35), Global Configuration (slide 48),
SASL Configuration (slide 63), Backend Configuration (slide 85), Performance
Tips (slide 98), Back-SQL (slide 105), Replication & Redundancy (slide 119),
Access Control (slide 131), Access Control With ACI (slide 145), Common
Objectclasses (slide 155), System Integration (slide 164), Migration
(slide 177), NFS Automounter (slide 183), URLs (slide 184), Example NSS
Objects (slide 186), Bind & SRV Records (slide 193), Defaul Referral
(Slide 200), Data Tips (slide 203), Utilities (slide 210), Third Party
Utilities (slide 221), Third Party Utilities for Legacy Platforms (slide 242),
Cyrus saslauthd (slide 248), Sendmail (slide 259), Samba PDC (slide 290),
Squid (slide 308), Bind (slide 320), DHCP (slide 334), LTSP (slide 345),
pppd (slide 346), Turba (slide 355), pine (slide 365), evolution (slide 370),
Mozilla (slide 382), M$-Outlook (slide 385), GQ (slide 386), Star Office
(slide 393), ILS (slide 402), xml & xml-rpc (slide 418), xmlblaster
(slide 427), Active Directory (slide 431), PHP (slide 435), C (slide 457),
AIX (slide 488), More Information.... (slide 499)
-----------------------
05 January 2003 Changes (The 20,000 Leagues Edition)
1. New Squid sections. Covers authenticating proxy requests against an LDAP
DSA as well as performaning external ACL lookups into the DSA so that access
via the proxy can determined based upon group membership.
------------------------
25 December 2002 Changes (The Springheel Jack Edition)
New uncapped FTP server available!
Download from ftp://ftp.kalamazoolinux.org/pub/pdf/ldapv3.pdf
The capped mirror at ftp://kalamazoolinux.org may take 24 hours to update.
1. Split a SASL section out of the Global Configuration section. Covers SASL's
common command line utilities, supported methods, and OpenLDAP 2.1.x's
sasl-regexp directivive for authentication request dn mapping.
2. Add a security factor chart to the SSF slide.
3. Slide added to global configuration section for the "security" directive.
4. Added section on Cyrus SASL's saslauthd, particularly the "ldap" mechansm.
It currently cover's most of saslauthd's configuration directives.
------------------------
18 December 2002 Changes (The Two Towers Edition)
1. Started section on GQ - includeing color coding of attribute names
2. Added sufficient content to the BIND/SDB/LDAP section that is could almost
be considered complete.
3. Declared a automounter section, no content yet
4. Started a section on LDAP URLs. Currently this just included information
copied from http://www.int-evry.fr/mci/user/procacci/ldap/ldapv3-jp.pdf
5. Started a Mozilla section, currently contains an attribute list/map.
---------------------------
20 October 2002 Changes
1. Added another "OpenLDAP + SASL + GSSAPI" slide, and reorganized the existing
one. These instructions are more complete and more non-Kerberos-V-guru
friendly.
2. Added a set of "OpenLDAP + SASL + GSSAPI" that cover the common error
messages encountered when OpenLDAP and Kerberos is misconfigured (which is
easy to do).
3. Added a ldap_set_options slide to the "C" section, noting that LDAPv2 is
always the default.
4. Finally did the "What is Active Directory" slide.
5. Added a Star Office / Open Office section covering creating an LDAP address
book, browsing the address book, and inserting data into a spread sheet.
---------------------------
08September2002 Changes
1. Added "Supported Advanced Features" slide to OpenLDAP overview
2. Added "Unsupported Advanced Features" slide to OpenLDAP overview
3. Added slide for Sympa mail list package
4. Added slide for hasSubordinates attribute
5. Added slide about the authconfig utility
6. Fixed missing dc= before estate1 in roodn line of back-passwd slide
7. Fixed the naming of "<" as "greater than" sign when it is actually a less
than sign. Yes, I went to public school.
8. Gave defaultsearchbase directive its own slide as this is a useful, and
often overlooked, trick.
9. Added a slide for suffixAlias in the "OpenLDAP Configuration, Backends"
section
10. Added "-1" to list list of log levels
11. Changed the black lines in the log levels list to "green 8". Yay! I
can read them now. :)
12. Moved the back-ldbm slide into the back-* section, rather than in the
general configuration section
13. Added a pair of back-bdb slides to the back-* section
14. Retooled the slapadd slide.
15. Started in on the PHP section
-----------------------------------------------------
07July2002 Changes.
1. Many type and spelling fixes.
2. Changed several of the 'tables' (such as attribute matching rules,
etc..) into inserted spreadsheet objects. This makes layout and
appearance much better as Open Office has a habit of eating multiple
tabs.
3. Completed section on using the MUA Pine with LDAP
4. Added slide concerning RFC2739 (calEntry) to the Common Objectclasses
section
5. New section on Ximian Evolution and LDAP, including the mapping of
contact information fields to LDAP attributes and the evolutionPerson
objectclass.
6. Some small corrections in the section concerning Turba.
7. Added slide referencing http://kalamazoolinux.org/projects/awilliam/
and this list.
------------
TODO
----
1. A slide on the 1.1.x OID tree *DONE*
2. Update SSL/TLS information, current instructions are obselete.
3. Add more SASL information
4. A section on M$-Outlook
5. A section on storing Horde preferences in LDAP
6. A slide for http://pegacat.com/jxplorer/index.html
7. back-monitor (database monitor in 2.1.x)