Hi list! we want to set up an openldap server for managing our user accounts (unix/samba) and personal user data (addressbook). I read a lot of howtos and technical papers, which are fine for technical overview but dont show how to orginanize the data in the DIT. Im planing to split up the ldap in 3 containers (poeples for unix/samba accounts), groups and machines. Thats simple but when i think about the addressbook i cant find a solution. The first thing i was thinking about was to add a ou=addressbook and store just the contact info (e.g. phonenumber, title ...) and then add a seeAlso entry to the people entry. The other ting was just to add the attributes (phonenumber, title ...) to the people container and set the search base in the client application to ou=people, dc=example, dc=com. But i had some problem with the security when the user could also read/change the unix/samba data. I know i can fix that with ACL but its more complex The addressbook should be managed from a different person. Whats the best solution to do that? Are there any good examples on the web or any concepts for organize the DIT?
i would be grateful for your information. Best regards --- You are currently subscribed to [email protected] as: [EMAIL PROTECTED] To unsubscribe send email to [EMAIL PROTECTED] with the word UNSUBSCRIBE as the SUBJECT of the message.
