{"id":7771,"date":"2024-01-10T08:26:03","date_gmt":"2024-01-09T23:26:03","guid":{"rendered":"https:\/\/www.taruki.com\/wp\/?p=7771"},"modified":"2024-01-10T08:26:03","modified_gmt":"2024-01-09T23:26:03","slug":"389ds%e5%b0%8e%e5%85%a5%e8%a8%ad%e5%ae%9a%ef%bd%9e%e3%81%9d%e3%81%ae2%ef%bd%9e","status":"publish","type":"post","link":"https:\/\/www.taruki.com\/wp\/?p=7771","title":{"rendered":"389ds\u5c0e\u5165\u8a2d\u5b9a\uff5e\u305d\u306e2\uff5e"},"content":{"rendered":"<h1>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u95a2\u4fc2\u306e\u8a2d\u5b9a<\/h1>\n<p>anonymous bind\u3092rootdse\u306e\u307f\u306b\u5236\u9650<br \/>\n<code>dsconf localhost config replace nsslapd-allow-anonymous-access=rootdse<\/code><br \/>\nbind\u7528cn\u3092\u4f5c\u6210<br \/>\n<code><br \/>\ndn: cn=readonly,dc=taruki,dc=com<br \/>\nobjectClass: person<br \/>\ncn: readonly<br \/>\nsn: readonly<br \/>\nuserPassword: password<br \/>\n<\/code><br \/>\n\u4f5c\u6210\u3057\u305fbinddn_acl.ldif\u3092\u9069\u7528<br \/>\n<code>ldapadd -h localhost -p 389 -D \"cn=Directory Manager\" -W -f binddn_acladd.ldif<\/code><br \/>\n<code><br \/>\ndn: dc=taruki,dc=com<br \/>\nadd: aci<br \/>\naci: (targetattr=*)(version 3.0;acl\"\";allow(read,search,compare)(userdn=\"ldap:\/\/\/cn=readonly,dc=taruki,dc=com\");)<br \/>\n<\/code><br \/>\n<code>ldapmodify -h localhost -p 389 -D \"cn=Directory Manager\" -W -f binddn_aclmod.ldif<\/code><br \/>\nreadonly\u30e6\u30fc\u30b6\u30fc\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u8a2d\u5b9a<br \/>\n<code>ldappasswd -Z -h ldap01 -D \"cn=Directory Manager\" -W -S cn=readonly,dc=taruki,dc=com<\/code><br \/>\nmemberof\u306e\u6709\u52b9\u5316<br \/>\n<code>dsconf localhost plugin memberof enable<\/code><\/p>\n<h2>LDAP\u30e6\u30fc\u30b6\u30fc\u306e\u4f5c\u6210<\/h2>\n<h2>\u30b0\u30eb\u30fc\u30d7\u4f5c\u6210<\/h2>\n<p><code><br \/>\n$ dsidm localhost posixgroup create --cn ldapusers --gidNumber 20000<br \/>\n$ dsidm localhost posixgroup create --cn daisuketaruki --gidNumber 20001<br \/>\n<\/code><\/p>\n<h2>\u30e6\u30fc\u30b6\u30fc\u4f5c\u6210<\/h2>\n<p><code><br \/>\n# dsidm localhost user create<br \/>\nEnter password for cn=Directory Manager on ldap:\/\/192.168.24.21:<br \/>\nEnter value for uid : daisuketaruki<br \/>\nEnter value for cn : daisuketaruki<br \/>\nEnter value for displayName : daisuketaruki<br \/>\nEnter value for uidNumber : 20001<br \/>\nEnter value for gidNumber : 20001<br \/>\nEnter value for homeDirectory : \/home\/daisuketaruki<br \/>\nSuccessfully created daisuketaruki<\/p>\n<p># dsidm localhost group add_member ldapusers uid=daisuketaruki,ou=people,dc=taruki,dc=com<br \/>\n# dsidm localhost group add_member daisuketaruki uid=daisuketaruki,ou=people,dc=taruki,dc=com<br \/>\n# dsidm localhost account reset_password<br \/>\n# dsidm localhost user get daisuketaruki<br \/>\n<\/code><br \/>\n\u81ea\u5206\u81ea\u8eab\u306e\u30d1\u30b9\u30ef\u30fc\u30c9\u5909\u66f4\u3092\u3067\u304d\u308b\u3088\u3046\u306b\u3057\u3066\u304a\u304f<br \/>\n<code><br \/>\ndn: ou=People,dc=taruki,dc=com<br \/>\nchangetype: modify<br \/>\nadd: aci<br \/>\naci: (targetattr=\"userPassword\") (version 3.0; acl<br \/>\n  \"Allow users updating their password\";<br \/>\n  allow (write) userdn= \"ldap:\/\/\/self\";)<br \/>\n<\/code><br \/>\n<code>ldapmodify -h localhost -p 389 -D \"cn=Directory Manager\" -W -f passwd.ldif<\/code><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u30bb\u30ad\u30e5\u30ea\u30c6\u30a3\u95a2\u4fc2\u306e\u8a2d\u5b9a anonymous bind\u3092rootdse\u306e\u307f\u306b\u5236\u9650 dsconf localhost config replace nsslapd-allow-anonymous-access=rootdse [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_crdt_document":"","footnotes":""},"categories":[24],"tags":[],"class_list":["post-7771","post","type-post","status-publish","format-standard","hentry","category-pc"],"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=\/wp\/v2\/posts\/7771","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=7771"}],"version-history":[{"count":0,"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=\/wp\/v2\/posts\/7771\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=7771"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=7771"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.taruki.com\/wp\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=7771"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}