LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices



Reply
 
Search this Thread
Old 04-01-2008, 07:59 AM   #1
Felipe
Member
 
Registered: Oct 2006
Posts: 294

Rep: Reputation: 31
Extend Active Directory with OpenLdap


Im trying to extend Active Directory(ADS) with OpenLdap.

I can access to ADS for search, but not to modify it. So Im trying to configure OpenLdap to extend information of ADS.
Ex: Create new groups in OpenLDAP with users of ADS.

1- Is it possible? Any reference/documentation about it?

2- Is possible that Clients connect to OpenLDAP and information not found in OpenLDAP be searched by server in DAS?

Thanks
 
Old 04-01-2008, 08:49 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,415

Rep: Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968
nope. why would you want to do that?? you can extend AD with AD schemas and you could arbitrarily add information in which you could refer to other groups, but it'd be your call to use that information.
 
Old 04-01-2008, 08:56 AM   #3
Felipe
Member
 
Registered: Oct 2006
Posts: 294

Original Poster
Rep: Reputation: 31
I cant modify ADS. Im only a DAS user (cant administer) it.
 
Old 04-01-2008, 09:11 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,415

Rep: Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968
well TBH then it would seem that it's not your place to want to mess about with it... what do you really want to achieve??
 
Old 04-03-2008, 03:59 AM   #5
Felipe
Member
 
Registered: Oct 2006
Posts: 294

Original Poster
Rep: Reputation: 31
Thanks for your reply.

My English isnt very good but Ill try.

My company use DAS (Active Directory) as repository for all the users accounts. Im the manager for some applications. The ADS contains a lot information, but not all I need. And I access it with ldapsearch command, but cant modify it (or I can modify a few objects only).
So what I try is to extend the LDAP with another LDAP (if possible, Openldap). Ex: Iwant to create groups in my ldap (OpenLdap) with users of DAS.
What I try is to inquire OpenLDAP. If information is stored there (openldap), it directly returns me the information. If information is stored in ADS, it inquires the ADS and returns me with the information.

Im trying with referral, but not sure if its possible.

Also, id like to use the login/password of the DAS to connect to OpenLap (suppose its possible with kerberos. isnt it?).

Regards

Felipe
 
Old 04-04-2008, 04:24 AM   #6
Felipe
Member
 
Registered: Oct 2006
Posts: 294

Original Poster
Rep: Reputation: 31
Lightbulb

Does any know if its possible to use this objects to get it? How can be possible?

superiorDNSRoot
crossRef

Thanks
 
Old 04-04-2008, 04:28 AM   #7
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,415

Rep: Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968Reputation: 1968
you would need to query the AD with your take, take out what you need and then in isolation go query your openldap server totally seperately.
 
  


Reply

Tags
directory, openldap


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
active directory schema for OpenLDAP paul_mat Linux - Networking 4 08-04-2008 06:00 AM
OpenLDAP and Active Directory custangro Linux - Enterprise 1 01-05-2008 02:55 AM
Active Directory vs. OpenLDAP msteiner Linux - Software 1 10-30-2007 01:09 PM
openldap and active directory akismax Linux - Enterprise 1 07-21-2006 06:50 PM
Migrate Active Directory to OpenLDAP mafelipe Linux - Software 0 06-03-2004 10:32 AM


All times are GMT -5. The time now is 09:31 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration