Answer the question
In order to leave comments, you need to log in
How to setup pam ldap without using uidNumber?
There is a user base in LDAP, attached to mail, authorization on sites, internal portals, etc. It seems to be a classic option, but there was a difficulty in connecting to authorization pam on a Linux server.
Users have a minimal set of fields, objectClass = inetOrgPerson and a few other small objectClasses
. this field is not used.
You can, of course, add objectClass = posixAccount, but then you will have to somehow fill it for several thousand users and monitor its relevance for new users.
Question:
Answer the question
In order to leave comments, you need to log in
1. Throw in pam_ldap and use sss
2. Install UNIX services for Windows, run a script that renumbers AD and, when added, numbers them. It's boring, but at one time I even wrote a ready-made script in vbs. But I did not like the need to run this script every time I added a user
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question