Re: LDAP Question
- From: "Jonas Back" <jonasback@xxxxxxxxx>
- Date: Thu, 21 Apr 2005 09:52:02 -0700
This is a little bit off topic, but before asking the question as it's own
topic, I'll try here since it seems like it's in the same area.
We have a Win 2003 Active Directory. Our Linux guys want synhronize out
AD-atabase to their OpenLDAP server. I know I think it's a bad idea since we
only need one LDAP database but it's better than keeping their completely own
database.
I've found ways to do it by creating LDIF-files. But what about the
passwords. Are they impossible to extract/get to the OpenLDAP? I know you can
use MIIS but that's a bit pricy.
"Joe Richards [MVP]" wrote:
> If you are asking, will AD use the OpenLDAP users and passwords, the answer is
> no. AD uses kerberos for auth, not LDAP. LDAP is a not an authentication
> protocol, it just gets hacked into being used for it.
>
> You will need to sync the info from OpenLDAP to AD. You may want to look into
> making AD your primary store and then using AD/AM for any LDAP app needs that
> you use OpenLDAP for since you won't have to worry about syncing passwords/IDs then.
>
> joe
>
> --
> Joe Richards Microsoft MVP Windows Server Directory Services
> www.joeware.net
>
>
> rick wrote:
> > I have an OpenLdap Server were all my account creation, passwords.... is
> > kept. We are in the process of setting up a windows domain so we can manage
> > updates, machines.. easier. My question that I have is, is the LDAP server
> > still going to be able to be were all the accounts... are created, and were
> > everyone gets authenicated back to when logging in to the domain? Thanks
>
.
- Follow-Ups:
- Re: LDAP Question
- From: Joe Richards [MVP]
- Re: LDAP Question
- References:
- LDAP Question
- From: rick
- Re: LDAP Question
- From: Joe Richards [MVP]
- LDAP Question
- Prev by Date: RE: domain controllers
- Next by Date: Re: automatic inscription of computer in DNS
- Previous by thread: Re: LDAP Question
- Next by thread: Re: LDAP Question
- Index(es):
Relevant Pages
|