LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 02-21-2012, 12:59 PM   #1
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Rep: Reputation: 32
How to syncronize Active Directory and openLDAP


Hello:

I use AD (Active Directory) for authentication and repository data.
But now I need to add new attributes to the LDAP of AD and we prefer to create a new parallel ldap using openLDAP.
That means I have to synchronize some attributes from one LDAP to another (no need password sync).
Ex: If I add/delete a user/group to AD, i need to replicate the user/gruop in openldap. And for speed purposes, I'll replicate some attributes from AD to openldap.

Can any tell me if is there any way or software to synchronize AD and openldap?

Thanks
 
Old 02-21-2012, 01:11 PM   #2
uhelp
Member
 
Registered: Nov 2011
Location: Germany, Bavaria, Nueremberg area
Distribution: openSUSE, Debian, LFS
Posts: 205

Rep: Reputation: 43
Try this. An open source connector written in java. Never used it myself.
 
Old 02-22-2012, 02:02 AM   #3
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Original Poster
Rep: Reputation: 32
Thank you. Interesting link which can help me. I'm going to try that option.

I've also seen "389 DS ldap":
http://www.linuxmail.info/389-direct...owto-centos-5/

And also, "openldap" with proxy to AD.
http://www.windowsitpro.com/content1...p/catpath/ldap
 
Old 09-04-2012, 11:09 AM   #4
melive
LQ Newbie
 
Registered: Sep 2012
Location: Bogotá - Colombia
Posts: 10

Rep: Reputation: Disabled
How do you solve the problem? I follow your links but I don't see there how to synchronize AD witn OpenLDAP.. Please help me!
 
Old 09-12-2012, 08:28 AM   #5
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Original Poster
Rep: Reputation: 32
Finally, I've not synchronized openldap and AD.

I've configured openldap to receive queries for Opendap and Active Directory (chaining) so openldap acts as a proxy for Active Directory.

If entry is in openldap, it returns the result to the client.
if entry is in Active Directory, openldap searches for it and return the result to the client.

Regards.
 
1 members found this post helpful.
Old 09-12-2012, 05:46 PM   #6
melive
LQ Newbie
 
Registered: Sep 2012
Location: Bogotá - Colombia
Posts: 10

Rep: Reputation: Disabled
I have decided to do the same, but I'm following
http://www.windowsitpro.com/content1...p/catpath/ldap

and I have the next error...

glue: no superior found for sub cn=pepito,dc=prueba,dc=com!
slaptest: subordinate configuration error


Any idea?
 
Old 09-17-2012, 02:30 AM   #7
Felipe
Member
 
Registered: Oct 2006
Posts: 302

Original Poster
Rep: Reputation: 32
I tried with that link, but it didn't work for me.
Finally I had to add this at the bottom of configuration file (My ad domain is curso.red):

...
database ldap
uri "ldap://curso.red/"
suffix "dc=curso,dc=red"
chase-referrals yes
rebind-as-user yes

If it doesn't work, tell me.

Regards
 
1 members found this post helpful.
Old 09-18-2012, 09:32 AM   #8
melive
LQ Newbie
 
Registered: Sep 2012
Location: Bogotá - Colombia
Posts: 10

Rep: Reputation: Disabled
Thanks so much! It works correctly but in the uri I used the IP address.

Last edited by melive; 09-18-2012 at 02:35 PM.
 
  


Reply

Tags
active directory, openldap, synchronization



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
OpenLDAP query Active Directory noir911 Linux - Server 0 04-30-2008 06:18 AM
Extend Active Directory with OpenLdap Felipe Linux - Server 6 04-04-2008 03:28 AM
OpenLDAP and Active Directory custangro Linux - Enterprise 1 01-05-2008 01:55 AM
Active Directory vs. OpenLDAP msteiner Linux - Software 1 10-30-2007 12:09 PM
openldap and active directory akismax Linux - Enterprise 1 07-21-2006 05:50 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 12:17 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration