Dell Wyse Enhanced Ubuntu Linux T50 Manual de usuario Pagina 104

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 220
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 103
Chapter 9. Authentication in ThinLinc
9.3.1.3. Proceeding with eDirectory Integration after running TLNC
After running TLNC, a few things need to to be done manually
9.3.1.3.1. Test and Distribute ldap.conf
After creating the search user needed by pam_ldap and nss_ldap in LDAP, TLNC writes the file
/opt/thinlinc/etc/ldap.conf.template with information about the DN and password of the
created user. The file resides on the filesystem of the server that hosts the ThinLinc Web Administration
service.
This file can serve as a good starting-point for the contents of the real configuration file for pam_ldap and
nss_ldap. The recommended procedure is to configure LDAP authentication using your distribution’s
tools, and then replace the ldap.conf generated with the one generated by TLNC.
9.3.1.3.2. Configure Missing Index and Default POSIX Group if Needed
Some versions of eDirectory fail to create an index on the Object Class attribute via LDAP. The reason
for this is unknown, but if TLNC indicates that this is the case, the index needs to be configured by hand.
See Section C.2 for documentation on how to do this manually.
Also, some versions of eDirectory fail to create the default POSIX group tl-users via LDAP. Reason for
this is also unknown, but if TLNC indicates that this is the case, create the default group by hand by
creating a group object with cn=tl-users in eDirectory, and assign a gidNumber of 1000 to it.
9.3.1.3.3. Trigger a LIMBER Run on the eDirectory Servers
When an index is created in eDirectory via LDAP, for example by TLNC, they are not immediately built
and used. Instead, eDirectory waits for a process called LIMBER to run. There are several ways to make
this happen:
Wait
LIMBER is automatically run every three hours, or when another server starts a connectivity check.
When this happens, all indexes pending creation will be built.
Trigger a run via DSTRACE/ndstrace
On Netware, load DSTRACE, and then run SET DSTRACE=*L. This will trigger LIMBER to run
immediately.
If the eDirectory server runs on Linux, for example on Open Enterprise Server, a LIMBER run can be
triggered by running ndstrace. Within ndstrace, write set dstrace=*l and press enter. This will also
trigger a LIMBER run.
Trigger a run via iManager
Enter iManager, Agent Configuration/Agent triggers, and trigger a LIMBER run.
After triggering the LIMBER on all eDirectory servers, run TLNC again to see if the status of the defined
indices have changed to online.
94
Vista de pagina 103
1 2 ... 99 100 101 102 103 104 105 106 107 108 109 ... 219 220

Comentarios a estos manuales

Sin comentarios