Hi list!

we want to set up an openldap server for managing our user accounts
(unix/samba) and
personal user data (addressbook). I read a lot of howtos and technical
papers, which
are fine for technical overview but dont show how to orginanize the data
in the
DIT. Im planing to split up the ldap in 3 containers (poeples for
unix/samba accounts),
groups and machines. Thats simple but when i think about the addressbook i
cant find a
solution. The first thing i was thinking about was to add a ou=addressbook
and store just
the contact info (e.g. phonenumber, title ...) and then add a seeAlso
entry to the people
entry. The other ting was just to add the attributes (phonenumber, title
...)
to the people container and set the search base in the client application
to ou=people, dc=example, dc=com.
But i had some problem with the security when the user could also
read/change the unix/samba
data. I know i can fix that with ACL but its more complex 
The addressbook should be managed from a different person. Whats the best
solution to
do that? Are there any good examples on the web or any concepts for
organize the DIT?

i would be grateful for your information.

Best regards

---
You are currently subscribed to [email protected] as: [EMAIL PROTECTED]
To unsubscribe send email to [EMAIL PROTECTED] with the word UNSUBSCRIBE as the 
SUBJECT of the message.

Reply via email to