LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 04-01-2008, 06:59 AM   #1
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Rep: Reputation: 32
Extend Active Directory with OpenLdap


I´m trying to extend Active Directory(ADS) with OpenLdap.

I can access to ADS for search, but not to modify it. So I´m trying to configure OpenLdap to extend information of ADS.
Ex: Create new groups in OpenLDAP with users of ADS.

1- ¿Is it possible? ¿Any reference/documentation about it?

2- Is possible that Clients connect to OpenLDAP and information not found in OpenLDAP be searched by server in DAS?

Thanks
 
Old 04-01-2008, 07:49 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
nope. why would you want to do that?? you can extend AD with AD schemas and you could arbitrarily add information in which you could refer to other groups, but it'd be your call to use that information.
 
Old 04-01-2008, 07:56 AM   #3
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Original Poster
Rep: Reputation: 32
I can´t modify ADS. I´m only a DAS user (can´t administer) it.
 
Old 04-01-2008, 08:11 AM   #4
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
well TBH then it would seem that it's not your place to want to mess about with it... what do you really want to achieve??
 
Old 04-03-2008, 02:59 AM   #5
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Original Poster
Rep: Reputation: 32
Thanks for your reply.

My English isn´t very good but I´ll try.

My company use DAS (Active Directory) as repository for all the users accounts. I´m the manager for some applications. The ADS contains a lot information, but not all I need. And I access it with ldapsearch command, but can´t modify it (or I can modify a few objects only).
So what I try is to extend the LDAP with another LDAP (if possible, Openldap). Ex: I´want to create groups in my ldap (OpenLdap) with users of DAS.
What I try is to inquire OpenLDAP. If information is stored there (openldap), it directly returns me the information. If information is stored in ADS, it inquires the ADS and returns me with the information.

I´m trying with referral, but not sure if it´s possible.

Also, i´d like to use the login/password of the DAS to connect to OpenLap (suppose it´s possible with kerberos. isn´t it?).

Regards

Felipe
 
Old 04-04-2008, 03:24 AM   #6
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Original Poster
Rep: Reputation: 32
Lightbulb

Does any know if it´s possible to use this objects to get it? How can be possible?

superiorDNSRoot
crossRef

Thanks
 
Old 04-04-2008, 03:28 AM   #7
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
you would need to query the AD with your take, take out what you need and then in isolation go query your openldap server totally seperately.
 
  


Reply

Tags
directory, openldap



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
active directory schema for OpenLDAP paul_mat Linux - Networking 4 08-04-2008 05:00 AM
OpenLDAP and Active Directory custangro Linux - Enterprise 1 01-05-2008 01:55 AM
Active Directory vs. OpenLDAP msteiner Linux - Software 1 10-30-2007 12:09 PM
openldap and active directory akismax Linux - Enterprise 1 07-21-2006 05:50 PM
Migrate Active Directory to OpenLDAP mafelipe Linux - Software 0 06-03-2004 09:32 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 01:03 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration