When you install your edited copy of the custom service-provider template in the directory, the following entries are created:
A provider organization
A subordinate shared organization designated to hold the SPA user
One user in the subordinate organization to whom the SPA role is assigned
A placeholder node under which full organizations can be created. These full organizations will be managed by the SPA for this provider organization.
Figure A–2 shows an example of the entries created by installing the template. It is a Directory Information Tree (DIT) view of the organizations.
Figure A–2 is only an example. Your organization names, SPA user name, and DIT structure should be specific to your own installation.
The nodes in the example shown in Figure A–2 are as follows:
o=usergroup - The root suffix for user/group data.
o=varrius.com - The default mail domain.
o=siroe.com - The mail domain used by the provider organization.
o=MyProviderOrg - The provider organization node.
o=MySPAUserOrg - The subordinate shared organization designated to hold the provider organization users, including the user assigned the SPA role.
ou=people - The standard LDAP organization unit required for containing users.
uid=user1 - The uid of the user in the MySPAUserOrg organization who is assigned to be the SPA.
o=MyProviderOrgDomainsRoot - The placeholder node for holding full organizations subordinate to the MyProviderOrg provider organization.