LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > CentOS
User Name
Password
CentOS This forum is for the discussion of CentOS Linux. Note: This forum does not have any official participation.

Notices


Reply
  Search this Thread
Old 02-04-2015, 09:52 AM   #1
robertkwild
Member
 
Registered: Feb 2015
Posts: 382

Rep: Reputation: Disabled
LDAP - not creating user home directory


hi all,

i have installed openldap with phpldapadmin and on a centos client machine i can login using the ldap user i created on the ldap server via phpldapadmin

but i get couple of error messages when i log in -

1.could not update ICEauthority
2.there is a problem with the configuration server
3.nautilus could not create the following required folders

i did research and i found i needed to run this command so it creates a home directory when it first logs in -

authconfig --enablemkhomedir --update

but it doesnt solve the problem

can anyone please help

rob
 
Old 02-05-2015, 02:13 PM   #2
frndrfoe
Member
 
Registered: Jan 2008
Distribution: RHEL, CentOS, Ubuntu
Posts: 379

Rep: Reputation: 38
Make sure autofs is not running. If running and set with defaults autofs will control /home and not allow mkhomedir to create directories
 
Old 02-05-2015, 05:47 PM   #3
robertkwild
Member
 
Registered: Feb 2015
Posts: 382

Original Poster
Rep: Reputation: Disabled
after nearly 2 weeks all done

this is how i installed on both server and client

server -

openldap -

http://docs.adaptivecomputing.com/vi...ttingUpOpenLDA...

phpldapadmin -

http://blog.zwiegnet.com/linux-serve...n-on-centos-6/

i maked a directory /home_share and exported it like this -

/home_share *(rw,sync,no_subtree_check,no_root_squash)

chkconfig iptables/ip6tables off

chkconfig httpd/slapd/nfs on

client -

i created a directory /home_share and then in fstab i mounted the export on the server like so -

/ipaddress:/home_share /home_share nfs defaults 0 0

installed "openldap" "openldap-clients" "nss-pam-ldapd"

edited the file "/etc/sysconfig/authconfig" changed "forcelegacy" from no to yes

open up terminal and run this command -

authconfig --enablemkhomedir --update

open up terminal and run -

authconfig-tui

choose both LDAP options and on the next screen enter in ldap ip and domain info

chkconfig iptables/ip6tables off

chkconfig oddjobd on
 
Old 02-06-2015, 08:06 AM   #4
frndrfoe
Member
 
Registered: Jan 2008
Distribution: RHEL, CentOS, Ubuntu
Posts: 379

Rep: Reputation: 38
Quote:
Originally Posted by robertkwild View Post
/home_share *(rw,sync,no_subtree_check,no_root_squash)
Feeling lucky?
 
Old 02-06-2015, 08:12 AM   #5
robertkwild
Member
 
Registered: Feb 2015
Posts: 382

Original Poster
Rep: Reputation: Disabled
why do you say that?

what should it be
 
Old 02-06-2015, 08:25 AM   #6
frndrfoe
Member
 
Registered: Jan 2008
Distribution: RHEL, CentOS, Ubuntu
Posts: 379

Rep: Reputation: 38
I would only export to machines that were under my control and be picky with the no_root_squash or remove it completely.

Anyone with their own machine could mount /home_share, become root and see every one else's home directory.
 
Old 02-06-2015, 08:28 AM   #7
robertkwild
Member
 
Registered: Feb 2015
Posts: 382

Original Poster
Rep: Reputation: Disabled
but doesnt it need to be no root squash so the home directoeys can get created by the ldap server?

my old export lookewd like this -

rw,nohide,insecure,async,no_subtree_check

would the above work?
 
Old 02-11-2015, 08:19 AM   #8
frndrfoe
Member
 
Registered: Jan 2008
Distribution: RHEL, CentOS, Ubuntu
Posts: 379

Rep: Reputation: 38
But you exports entry shows it exported to every host with no_root_squash even if you need that for one server.
 
Old 02-17-2015, 05:26 AM   #9
robertkwild
Member
 
Registered: Feb 2015
Posts: 382

Original Poster
Rep: Reputation: Disabled
so how would you do it?
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] Change Default Home Directory for Ldap User sunveer Linux - Newbie 1 08-14-2012 11:27 PM
[SOLVED] Creating local NFS mounted home directory for remote LDAP authenticated user someshpr Linux - Newbie 2 12-15-2009 06:14 PM
RHEL 5.2+LDAP Server+File already exists while creating directory in /home sharjeel Linux - Server 2 08-05-2009 10:05 PM
Creating a user without a home directory. deedawn Linux - Newbie 2 10-29-2008 11:36 AM
Limiting ldap user on its own home directory sarajevo Linux - Server 1 08-11-2008 11:36 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Distributions > CentOS

All times are GMT -5. The time now is 05:56 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration