V
V
Vladimir2018-09-27 16:30:41
linux
Vladimir, 2018-09-27 16:30:41

How to setup pam ldap without using uidNumber?

There is a user base in LDAP, attached to mail, authorization on sites, internal portals, etc. It seems to be a classic option, but there was a difficulty in connecting to authorization pam on a Linux server.
Users have a minimal set of fields, objectClass = inetOrgPerson and a few other small objectClasses
. this field is not used.
You can, of course, add objectClass = posixAccount, but then you will have to somehow fill it for several thousand users and monitor its relevance for new users.
Question:

Answer the question

In order to leave comments, you need to log in

1 answer(s)
C
CityCat4, 2018-09-28
@CityCat4

1. Throw in pam_ldap and use sss
2. Install UNIX services for Windows, run a script that renumbers AD and, when added, numbers them. It's boring, but at one time I even wrote a ready-made script in vbs. But I did not like the need to run this script every time I added a user

Didn't find what you were looking for?

Ask your question

Ask a Question

731 491 924 answers to any question