Goal: This«OpenLDAP tutorial» aims to show how to improve the basic server configuration viewed in OpenLDAP tutorial – Installation and basic configuration post. This reconfiguration allows to customize settings made by default in the installation procedure. This is a further step to prepare th server use in a real environment. Prerequisite: The OpenLDAP server is installed with its default configuration. The installation is done on a host with Debian / Ubuntu OS or compliant. This reconfiguration must be made before filling the directory server with data. The reason is this will reset the database and set its contents to empty. This reconfiguration is done with the command:
sudo dpkg-reconfigure slapdFollowing this a series of screens appear and asks you to enter settings or make choices.
Reconfiguring OpenLDAP – step 1
data:image/s3,"s3://crabby-images/a6e28/a6e288e7a97e04170445d99a3eacfc30d07cf4db" alt="openldap tutorial openldap ubuntu"
Reconfiguring OpenLDAP – step 2
data:image/s3,"s3://crabby-images/34040/34040e31525e8d4756ab193ff6c5413f302a5597" alt="openldap tutorial"
Reconfiguring OpenLDAP – step 3
data:image/s3,"s3://crabby-images/09e4e/09e4ea6b0d15f1d032f2c1ccd17fcdf89b00691c" alt="openldap tutorial openldap ubuntu"
Reconfiguring OpenLDAP – step 4
data:image/s3,"s3://crabby-images/2ff4b/2ff4bcc4eb4298ab76687a003969b7dd0aecd294" alt="openldap tutorial openldap ubuntu"
Reconfiguring OpenLDAP – step 5
data:image/s3,"s3://crabby-images/f0985/f098547848352c546e3464c3ed769b6a0548a6b6" alt="openldap tutorial"
Reconfiguring OpenLDAP – step 6
data:image/s3,"s3://crabby-images/2299e/2299e1e4374888911e2642ffa200c03dc6348325" alt="openldap tutorial openldap ubuntu"
Reconfiguring OpenLDAP – step 7
data:image/s3,"s3://crabby-images/747a3/747a3bb4d36bd1594a0d59157c3dd494aecf0c6a" alt="openldap tutorial"
Reconfiguring OpenLDAP – step 8 (if it apears)
data:image/s3,"s3://crabby-images/5e2dd/5e2ddde67b0b26fa13a67d9c88e3404b614c2c4f" alt="openldap tutorial openldap ubuntu"
Check the new setting
sudo ldapsearch -Y external -H ldapi:/// -b dc=ldaptuto,dc=net ↵ SASL/EXTERNAL authentication started SASL username: gidNumber=0+uidNumber=0,cn=peercred,cn=external,cn=auth SASL SSF: 0 # extended LDIF # # LDAPv3 # base <dc=ldaptuto,dc=net> with scope subtree # filter: (objectclass=*) # requesting: ALL # # ldaptuto.net dn: dc=ldaptuto,dc=net objectClass: top objectClass: dcObject objectClass: organization o: OpenLDAP tutorial dc: ldaptuto # admin, ldaptuto.net dn: cn=admin,dc=ldaptuto,dc=net objectClass: simpleSecurityObject objectClass: organizationalRole cn: admin description: LDAP administrator # search result search: 2 result: 0 Success # numResponses: 3 # numEntries: 2Noice the new DIT dc=ldaptuto,dc=net and its label o: OpenLDAP tutorial]]>