Yes, I started with Turbo's LDAP3 document, but ran into several problems/issues/difficulties:

- his document is based on using 1 box for the Kerberos Primary, LDAP Primary and Secondary. I've separated it so that the Kerberos Primary, Kerberos Secondaries, LDAP Primary and LDAP Secondaries are on separate boxes.

- while his document was last revised 11/01/02, it's based on Debian Potato, with updates for Woody. Many of the patches he mentions are not needed with Woody.

- I just couldn't get SSL LDAP replication going based on his document. Now, I might have missed a crucial step, but I banged my head against a wall for nearly a week on this.

Other good documents on Kerberos and/or LDAP are:

www.isi.edu/~brian/security/kerberos.html
www.cryptnet.net/fdp/crypto/kerby-infra.html
www.ornl.gov/~jar/HowToKerb.html
www.ofb.net/~jheiss/krbldap/howto.html -- based on RedHat, but reading this document gave me the answer I needed to get SSL replication going for LDAP.

For those who emailed me for a copy of my docs, please give me a day or two to review and make sure they're complete and misteak free :) I want to make sure I can do a full install from just the docs (not missing anything).

Thanks,

Ken


Tarjei Huse wrote:

http://www.bayour.com/LDAPv3-HOWTO.html
all you need :)

Magnus M@ wrote:
<snip>




-------------------------------------------------------
This SF.NET email is sponsored by: FREE  SSL Guide from Thawte
are you planning your Web Server Security? Click here to get a FREE
Thawte SSL guide and find the answers to all your  SSL security issues.
http://ads.sourceforge.net/cgi-bin/redirect.pl?thaw0026en
_____________________________________________________________________
Ltsp-discuss mailing list.   To un-subscribe, or change prefs, goto:
     https://lists.sourceforge.net/lists/listinfo/ltsp-discuss
For additional LTSP help,   try #ltsp channel on irc.freenode.net

Reply via email to