Sun ONE logo     ¤W¤@³¹     ¥Ø¿ý     ¯Á¤Þ     »¡©ú¤å¥ó­º­¶     ¤U¤@³¹    
Sun ONE Directory Server ºÞ²z«ü«n



²Ä 8 ³¹   ºÞ²z½Æ¼g

½Æ¼g¬O¦Û°Ê±N¥Ø¿ý¤º®e±q¤@­Ó Directory Server ½Æ»s¨ì¥t¤@­Ó©Î¦h­Ó Directory Server ªº¾÷¨î¡C¥ô¤@ºØ¼g¤J§@·~ - ¥[¤J¡B­×§ï©Î¬Æ¦Ü§R°£¶µ¥Ø - ³£·|¦Û°Ê¹ï¬M¨ì¨ä¥L Directory Server¡C¦p»ÝÃö©ó½Æ¼g·§©À¡B½Æ¼g®×¨Ò¥H¤Î¥Ø¿ý³¡¸p¤¤½Æ¼gªº³W¹º¤è¦¡µ¥§¹¾ã»¡©ú¡A½Ð°Ñ¾\¡mSun ONE Directory Server ³¡¸p«ü«n¡n²Ä 6 ³¹<³]­p½Æ¼g³B²z>¡C

Sun ONE Directory Server 5.2 ¤Þ¶i³\¦h·sªº½Æ¼g¥\¯à¡G

  • ³z¹L¼s°ìºô¸ô (WAN) ªº¦h­«¥D¾÷½Æ¼g (MMR) ¥iÅý±z¦b¦a²z¦ì¸m¤W¬Û¶Z¬Æ»·ªº¥D¾÷¤§¶¡«Ø¥ß½Æ¼g¨óij¡A§ó¦³®Ä¦a¤À´²±zªº¸ê®Æ¡C
  • MMR ²{¦b¤ä´© 4 ­Ó¯à¦P®É§¹¥þ³s±µªº¥D¾÷¡A¥H´£¨ÑÃB¥~ªº®e¿ù²¾Âà«OÅ@¡C
  • ¤G¶i¦ì½Æ»s¨Ï¤j«¬½Æ¥»ªºªì©l¤Æ§ó§Ö³t¡C
  • ¤ù¬q½Æ¼g¥iÅý±z«ü©w­n½Æ¼gªºÄݩʲաA¥H«K§ó¦³®Ä²v¦a¤À´²±zªº¸ê®Æ¡C
  • ·sªº«ü¥O¦æ¤u¨ãÀ°±zºÊ±±½Æ¼g³¡¸p¡C

¥»³¹»¡©ú·í³]©w©Ò¦³Ãþ«¬ªº½Æ¼g®×¨Ò®É¡A»Ý­n¦b¥D¾÷¡B¶°½u¾¹»P¥Î¤á¦øªA¾¹¤W°õ¦æªº¤u§@¡C¥»³¹¥]§t¤U¦C¥DÃD¡G

²¤¶

½Æ¼g²ÕºAªº³]©w¤u§@¬Û·í½ÆÂø¡C¦b¶}©l¤§«e¡A±zÀ³¸Ó¥R¤À¤F¸Ñ²Õ´§Y±N³¡¸p½Æ»sªº¤è¦¡¡A¨Ò¦p¡A­n¨Ï¥Î³æ¤@¥D¾÷¡B¦h­«¥D¾÷©Î¬O¦³¶°½u¾¹ªº¶¥¼h¦¡½Æ¼g¡C½Æ¼gªº³æ¦ì¬O§À½X©Î¤l§À½X¡GÄÝ©ó¸Ó§À½Xªº©Ò¦³¶µ¥Ø±N·|¤@°_½Æ¼g¡C¦b±z­p¹ºªº³¡¸p¤¤¡A±z¥²¶·®Ú¾Ú§À½X©Ò¥]§tªº¸ê®Æ¨ÓÃѧO¥D¾÷¡B¶°½u¾¹©Î±M¥Î¥Î¤á¡C

¦øªA¾¹¤W½Æ¼gªº§À½XºÙ¬°½Æ¥»¡C¥D¾÷¬O«ü±µ¨ü¨Ó¦Û¥Î¤áºÝªºÅª¼g§@·~ªº½Æ¥»¡C¶°½u¾¹»P±M¥Î¥Î¤á¬O¥u³z¹L½Æ¼g¾÷¨î±µ¦¬§ó·sªº°ßŪ½Æ¥»¡F¶°½u¾¹·|±q¥D¾÷©Î¥t¤@­Ó¶°½u¾¹±µ¦¬§ó·s¡AµM«áÂà°eµ¹¥t¤@­Ó¶°½u¾¹©Î±M¥Î¥Î¤á¡C±M¥Î¥Î¤á«h¥u±µ¦¬¨Ó¦Û¥Î¤á©Î¶°½u¾¹ªº§ó·s¡C

¤U¹ÏÅã¥Ü¤@¯ë½Æ¼g®×¨Ò¤¤¡A½Æ¥»¤§¶¡ªºÃö«Y¡C

¹Ï 8-1    ¤@¯ë½Æ¼g®×¨Ò

¥»¤å¥ó¤]¨Ï¥Î¨ÑÀ³°Ó»P¥Î¤áµ¥¥Î»yªí¥Ü½Æ¼g¨óij¤¤¨â­Ó°Ñ»P¦øªA¾¹ªº¨¤¦â¡C¨ÑÀ³°Ó¬O¶Ç°e½Æ¼g§ó·sªº¦øªA¾¹¡A¥Î¤á«h¬O±µ¦¬½Æ¼g§ó·sªº¦øªA¾¹¡C¤W¹Ï©ÒÅã¥ÜªºÃö«Y¦p¤U¡G

  • ³æ¤@¥D¾÷¬O¨ÑÀ³°Ó¡A¤£¬O¥Î¤á¡C
  • ¦h­«¥D¾÷½Æ¼g¤¤ªº¥D¾÷¬J¬O¨ÑÀ³°Ó¡A¤]¬O¨ä¥L¥D¾÷ªº¥Î¤á¡C
  • ¶°½u¾¹¥Ã»·¬O¨ÑÀ³°Ó­Ý¥Î¤á¡C
  • ±M¥Î¥Î¤á¥u¬O¥Î¤á¡C

³\¦h½Æ¼g³]©w­È¾A¥Î©ó¨óij¤¤¨ÑÀ³°Ó©Î¥Î¤á¨¤¦âªº½Æ¥»¡A¤£½×¨äÃþ«¬¬°¦ó¡C

³]©w½Æ¼g²ÕºAªº¨BÆJºK­n

¤U¦C¨BÆJ°²³]±z­n½Æ¼g³æ¤@§À½X¡C¦pªG±z­n½Æ¼g¦h­Ó§À½X¡A½Ð¦b¨C³¡¦øªA¾¹¤W¦P®É¶i¦æ¬Û¦Pªº³]©w¡C´«¥y¸Ü»¡¡A±z¥i¥H­«½Æ¨C­Ó¨BÆJ¦b¦h­«§À½X¤W³]©w½Æ¼g²ÕºA¡C

­Y­n³]©w¥ô¦ó½Æ¼g©Ý¼³¡A±zÀ³¸Ó¨Ì·Ó¤U¦C¶¶§Ç¶i¦æ¡G

  1. ¦b³æ¤@¥D¾÷¥H¥~ªº©Ò¦³¦øªA¾¹¤W©w¸q½Æ¼gºÞ²z­û¶µ¥Ø¡C©ÎªÌ¡A¦b©Ò¦³¦øªA¾¹¤W¨Ï¥Î¹w³]ªº½Æ¼gºÞ²z­û¡C
  2. ¦b©Ò¦³¥]§t±M¥Î¥Î¤á½Æ¥»ªº¦øªA¾¹¤W¡A°õ¦æ¤U¦C¨BÆJ¡G
    1. ¬°¥Î¤á½Æ¥»«Ø¥ßªÅ¥Õ§À½X¡C
    2. ³z¹L½Æ¼gºëÆF±Ò¥Î§À½X¤Wªº¥Î¤á½Æ¥»¡C
    3. ¿ï¾Ü©Ê¦a³]©w¶i¶¥½Æ¥»³]©w­È¡C

  3. ¦b©Ò¦³¥]§t¶°½u¾¹½Æ¥»ªº¦øªA¾¹¤W¡A°õ¦æ¤U¦C¨BÆJ¡G
    1. ¬°¶°½u¾¹½Æ¥»«Ø¥ßªÅ¥Õ§À½X¡C
    2. ³z¹L½Æ¼gºëÆF¦b§À½X¤W±Ò¥Î¶°½u¾¹½Æ¥»¡C
    3. ¿ï¾Ü©Ê¦a³]©w¶i¶¥½Æ¥»³]©w­È¡C

  4. ¦b©Ò¦³¥]§t¥D¾÷½Æ¥»ªº¦øªA¾¹¤W¡A°õ¦æ¤U¦C¨BÆJ¡G
    1. ¦b­n°µ¬°¥D¾÷½Æ¥»ªº¨ä¤¤¤@­Ó¥D¾÷¤W¿ï¾Ü©Î«Ø¥ß§À½X¡C
    2. ³z¹L½Æ¼gºëÆF¦b§À½X¤W±Ò¥Î¥D¾÷½Æ¥»¡C
    3. ¿ï¾Ü©Ê¦a³]©w¶i¶¥½Æ¥»³]©w­È¡C

  5. ¨Ì·Ó¤U¦C¶¶§Ç¡A¦b©Ò¦³¨ÑÀ³°Ó½Æ¥»¤W³]©w½Æ¼g¨óij¡G
    1. ¤¶©ó¦h­«¥D¾÷¶°¦X¤¤ªº¥D¾÷¤§¶¡¡C
    2. ¤¶©ó¥D¾÷»P¨ä±M¥Î¥Î¤á¤§¶¡¡C
    3. ¤¶©ó¥D¾÷»P¶°½u¾¹½Æ¥»¤§¶¡¡C

    ±z¥i¥H¿ï¾Ü©Ê¦a¦b³o­Ó¶¥¬q³]©w¤ù¬q½Æ¼g¡A¨Ãªì©l¤Æ¥Î¤á»P¶°½u¾¹½Æ¥»¡C­Y¬O¦b¦h­«¥D¾÷½Æ¼gªº±¡ªp¤U¡A½Ð±q¥]§t­ì©l¸ê®Æªº¦P¤@­Ó¥D¾÷½Æ¥»ªì©l¤Æ©Ò¦³¥D¾÷¡C

  6. ¦bª½±µ±q¥D¾÷¨ÑÀ³ªº©Ò¦³¶°½u¾¹½Æ¥»¤W³]©w½Æ¼g¨óij¡C³o¨Ç¨óij¬O¤¶©ó¶°½u¾¹½Æ¥»»P¨ä¥Î¤á¤§¶¡¡A±z¥i¥H¿ï¾Ü©Ê¦a¦b¦¹¶¥¬qªì©l¤Æ¥Î¤á½Æ¥»¡C¬°¶¥¼h¦¡½Æ¼g¤¤¨C¤@¶¥¼hªº¶°½u¾¹­«½Æ¦¹¨BÆJ¡C


  7. ª`·N

    ¦³¤@ÂI«D±`­«­n¡A¨º´N¬O¦b¹Á¸Õ«Ø¥ß½Æ¼g¨óij¤§«e¡A½Ð°È¥²¥ý«Ø¥ß¤Î³]©w©Ò¦³½Æ¥»¡C³o¼Ë¤]¥iÅý±z¦b«Ø¥ß½Æ¼g¨óij¤§«á¡A¥ß§Yªì©l¤Æ¥Î¤á½Æ¥»¡C¥Î¤áªì©l¤Æ¥Ã»·¬O³]©w½Æ¼gªº³Ì«á¤@­Ó¶¥¬q¡C



¿ï¾Ü½Æ¼gºÞ²z­û

³]©w½Æ¼g®É¨ä¤¤¤@¶µ­«­nªº¤u§@«K¬O¡G¿ï¾Ü¨ÑÀ³°Ó¦b¶Ç°e½Æ¼g§ó·s®É¥Î¨Ó»P¥Î¤á¦øªA¾¹³sµ²ªº¶µ¥Ø¡A¦¹¶µ¥ØºÙ¬°½Æ¼gºÞ²z­û¡C©Ò¦³¥]§t±µ¦¬§ó·s¤§§À½Xªº¦øªA¾¹ (¥]¬A°Ñ»P¦h­«¥D¾÷½Æ¼gªº±M¥Î¥Î¤á¡B¶°½u¾¹»P¥D¾÷) ³£¥²¶·¦Ü¤Ö¦³¤@­Ó½Æ¼gºÞ²z­û¶µ¥Ø¡C

Directory Server ¦³¹w³]½Æ¼gºÞ²z­û¶µ¥Ø¡A¦¹¶µ¥Ø¥i¥Î©ó¨C¤@³¡¦øªA¾¹¤W¡F¥¦ªº DN ¬O cn=Replication Manager,cn=replication,cn=config¡C



ª`·N

¹ï©ó©Ò¦³Â²³æªº½Æ¼g®×¨Ò¡A«Øij±z¨Ï¥Î¹w³]ªº½Æ¼gºÞ²z­û¡C½Æ¼gºëÆF·|¦Û°Ê¥Î¦¹¶µ¥Ø³]©w¥Î¤á½Æ¥»¡A¦]¦Ó²¤Æ½Æ¥»ªº³¡¸p¤u§@¡C



¦pªG¥¼©w¸q±K½X¡A½Æ¼gºëÆF·|´£¥Ü±z¬°¹w³]½Æ¼gºÞ²z­û³]©w±K½X¡C¤é«á­Y­nÅܧó¹w³]½Æ¼gºÞ²z­ûªº±K½X¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A¿ï¾Ü [¸ê®Æ] ¸`ÂI¡AµM«á¿ï¾Ü¥k­±ªO¤Wªº [½Æ¼g] ¼ÐÅÒ¡C
  2. ¦b [½Æ¼gºÞ²z­û] ¼ÐÃD¤Uªº¨â­Ó¤å¦rÄæ¦ì¤º¿é¤J·sªº±K½X¡C
  3. ½T»{±K½X¤§«á¡A«ö¤@¤U [Àx¦s]¡C¦pªG±K½X»P½T»{±K½X¤£¬Û²Å¡A«KµLªk¨Ï¥Î [Àx¦s] «ö¶s¡C

©ÎªÌ¬O¡A±z¥i¥H«Ø¥ß¥ô¦ó·s¶µ¥Ø§@¬°½Æ¼gºÞ²z­û¡C¨Ò¦p¡A±z¥i¯à·QÅý¨C­Ó½Æ¼gºÞ²z­û¶µ¥Ø¡A¹ï¨C­Ó½Æ¼gªº§À½X¦U¦³¤£¦Pªº±K½X¡C¥t¤@­Ó¦Û¦æ«Ø¥ß½Æ¼gºÞ²z­ûªº­ì¦]¡A¬O¬°¤F¤ä´©¤£¦Pªº½Æ¼gÅçÃÒ¼Ò¦¡¡A¨Ò¦p³z¹L SSL ¨Ï¥Î¾ÌÃÒ¡C

½Æ¼gºÞ²z­û¶µ¥Ø¥²¶·¥]§t±z¦b©w¸q½Æ¼g¨óij®É¡A©Ò¿ï¾ÜªºÅçÃÒ¤èªk»Ý­nªºÄÝ©Ê¡C¨Ò¦p¡A¹w³]½Æ¼gºÞ²z­û¬O¤@­Ó person ª«¥óÃþ§O¡A¥iÅý userPassword Äݩʶi¦æ²³æÅçÃÒ¡C¦p»ÝÃö©ó¨Ï¥Î¾ÌÃÒ³sµ²½Æ¼gºÞ²z­ûªº¸Ô²Ó¸ê®Æ¡A½Ð°Ñ¾\<³z¹L SSL ½Æ¼g>¡C

¦¹½Æ¼gºÞ²z­û¶µ¥Ø¤£À³¸Ó¦ì©ó¥Î¤á¦øªA¾¹ªº½Æ¼g§À½X¤¤¡C¾A¦X©w¸q½Æ¼gºÞ²z­ûªº¦ì¸m¦b cn=replication,cn=config ¤¤¡C



¤p¤ß

±z¤£¯à¨Ï¥Î½Æ¼gºÞ²z­û¶µ¥Øªº DN ©M±K½X¡A¦b¦øªA¾¹¤W³sµ²©Î°õ¦æ§@·~¡C½Æ¼gºÞ²z­û¥u¯à¥Î©ó½Æ¼g¾÷¨î©M¨ä¥L¥i¯à»Ý­n­«·sªì©l¤Æ½Æ¥»®É¨Ï¥Î¡C



¬°¨C­Ó¥Î¤á¿ï¦n½Æ¼gºÞ²z­û«á¡A°õ¦æ¤U¦C¨BÆJ¡G

  1. ¼g¤U©Î°O¦í±z©Ò¿ï¾Ü©Î«Ø¥ßªº½Æ¼gºÞ²z­û DN¡Cµy«á¦b¦¹¥Î¤áªº¨ÑÀ³°Ó¤W«Ø¥ß¨ÑÀ³°Ó»P¦¹¥Î¤áªº½Æ¼g¨óij®É¡A·|»Ý­n¦¹ DN ¤Î¨ä±K½X¡C
  2. ¦pªG±z©w¸q±K½X¨ì´Á­ì«h¡A±z¥²¶·°O±o±Æ°£½Æ¼gºÞ²z­û¡A§_«h·í±K½X¨ì´Á®É¡A±NµLªk½Æ¼g¡C­Y­nÅý½Æ¼gºÞ²z­û¶µ¥Øªº±K½X¤£·|¨ì´Á¡A½Ð«Ø¥ß±K½X¤£·|¨ì´Áªº±K½X­ì«h¡A¦A±N¥¦«ü©wµ¹½Æ¼gºÞ²z­û¶µ¥Ø¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<ºÞ²z­Ó§O±K½X­ì«h>¡C

³]©w±M¥Î¥Î¤á

±M¥Î¥Î¤á¬O½Æ¼g§À½Xªº°ßŪ½Æ¥»¡C¥¦·|±µ¦¬¨Ó¦Û³sµ²¬°¯S®í½Æ¼gºÞ²z­û¤§¥D¾÷¦øªA¾¹ªº§ó·s¡A¥H¶i¦æÅܧó¡C³]©w¥Î¤á¦øªA¾¹ªº¤u§@¥]¬A·Ç³ÆªÅ¥Õ§À½X¥HÀx¦s½Æ¥»¡A¨Ã¨Ï¥Î½Æ¼gºëÆF±Ò¥Î¸Ó§À½X¤Wªº½Æ¼g¡C¥i¿ï¥Îªº¶i¶¥²ÕºA¥]¬A¿ï¾Ü¤£¦Pªº½Æ¼gºÞ²z­û¡B³]©wÂश©Î³]©w²M°£©µ¿ð¡C

¤U¦C¦U¸`´£¨Ñ¦b¦øªA¾¹¤W³]©w¤@­Ó±M¥Î¥Î¤á½Æ¥»ªº¨BÆJ¡C½Ð¦b¥]§t«ü©w§À½X¤§±M¥Î¥Î¤á½Æ¥»ªº¨C³¡¦øªA¾¹¤W­«½Æ©Ò¦³µ{§Ç¡C

¬°¥Î¤á½Æ¥»«Ø¥ß§À½X

¦pªG¥Î¤á¤WÁÙ¨S¦³ªÅ¥Õ§À½X¡A½Ð¨Ï¥Î»P¹w­q¥D¾÷½Æ¥»¬Û¦Pªº DN «Ø¥ß¤@­ÓªÅ¥Õ§À½X¡C¦p»Ý»¡©ú¡A½Ð°Ñ¾\<«Ø¥ß§À½X>¡C

¦pªG§À½X¦s¦b¦Ó¥B¤£¬OªÅ¥Õ¡A«h¨ä¤º®e·|¦b±q¥D¾÷ªì©l¤Æ½Æ¥»®É¿ò¥¢¡C

±Ò¥Î¥Î¤á½Æ¥»

½Æ¼gºëÆF²¤Æ¤F±Ò¥Î±M¥Î¥Î¤á½Æ¥»ªº¤u§@¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P­n³]¬°¥Î¤á½Æ¥»ªº§À½X¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤Åã¥Ü½Æ¼gª¬ºA¸ê°T¡C

  3. «ö¤@¤U [±Ò¥Î½Æ¼g] «ö¶s¶}©l½Æ¼gºëÆF¡C
  4. ¹w³]ª¬ºA¤U·|¿ï¾Ü [¥Î¤á½Æ¥»] ¿ï¶µ«ö¶s¡C«ö¤@¤U [¤U¤@¨B] Ä~Äò¡C
  5. ¦pªG©|¥¼¦p¦¹°µ¡A«h·|´£¥Ü±z¿é¤J¨Ã½T»{¹w³]½Æ¼gºÞ²z­ûªº±K½X¡C¦b¨C¤@­ÓÄæ¦ì¤¤¿é¤J¬Û¦Pªº±K½X¡A¦A«ö¤@¤U [¤U¤@¨B] Ä~Äò¡C
  6. ¦pªG¹w³]½Æ¼gºÞ²z­û¤w¸g©w¸q±K½X¡AºëÆF·|²¤¹L¦¹¨BÆJ¡C

  7. ½Æ¼gºëÆF©ó§ó·s½Æ¼g²ÕºA¦P®É¡A¤]·|Åã¥Üª¬ºA°T®§¡C§¹¦¨®É¡A½Ð«ö¤@¤U [Ãö³¬] ¡C

½Æ¼gª¬ºA²{¦bÅã¥Ü½Æ¼g¤w¸g·Ç³Æ¦n±µ¦¬§ó·s¡A¦Ó¥B¦b¥ªµ¡®æ¤¤ªº¹Ï¥Ü·|Åܧó¥H¤Ï¬M³o¶µÅܤơC

¶i¶¥¥Î¤á²ÕºA

¨Ì¹w³]­È¡A½Æ¼gºëÆF·|±N½Æ¥»³]¬°¨Ï¥Î¹w³]ªº½Æ¼gºÞ²z­û¡C¦pªG¤w¸g«Ø¥ß·Q­n¨Ï¥Îªº¤£¦P½Æ¼gºÞ²z­û¶µ¥Ø¡A«h»Ý­n³]©w¶i¶¥²ÕºA¡C±z¤]¥i¥H¨Ï¥Î¦¹¹ï¸Ü¤è¶ô¡A³]©w­×§ï©M²M°£©µ¿ðªºÂश¡C

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M±z·Q­n³]©w§À½Xªº¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A«ö¤@¤U [¶i¶¥] «ö¶s¡AÅã¥Ü [¶i¶¥½Æ¥»³]©w­È] ¹ï¸Ü¤è¶ô¡C
  3. ¦b [³sµ² DN] ¼ÐÅÒ¤W¡A¨Ï¥Î [¥[¤J] ©M [§R°£] «ö¶s¡A«Ø¥ß¦³®Ä½Æ¼gºÞ²z­ûªº DN ²M³æ¡C±µµÛ¨ÑÀ³°Ó¥i¥H©ó»P¦¹½Æ¥»¶¡ªº¨óij¤º¨Ï¥Î¥ô¦ó¤@­Ó DN¡C±z¥i§Q¥Î¿é¤J·s DN ªº¦WºÙ©ÎÂsÄý¥Ø¿ý¨Ó¥[¤J·sªº DN¡C
  4. ­Y­n³z¹L SSL ¨Ï¥Î¾ÌÃÒ¨Ó³]©w½Æ¼g¡A½Ð¿é¤J¾ÌÃÒ¶µ¥Øªº DN §@¬°¨ä¤¤¤@­Ó½Æ¼gºÞ²z­û¡C

  5. ·í±z§¹¦¨©Î¿ï¨ú§ó¶i¶¥²ÕºAªº [¿ï¥Î] ¼ÐÅҮɡA½Ð«ö¤@¤U [½T©w] ¡C
  6. ¦b [¶i¶¥½Æ¥»³]©w­È] ¹ï¸Ü¤è¶ôªº [¿ï¥Î] ¼ÐÅÒ¤W¡ALDAP URL ²M³æ·|«ü©w¶Ç°eµ¹¦¹¥Î¤á¤§­×§ï­n¨DªºÃB¥~Âश¡C¨Ï¥Î [¥[¤J] ©Î [§R°£] «ö¶s¡A«Ø¥ß LDAP URL ²M³æ¡C
  7. ½Æ¼g¾÷¨î·|¦Û°Ê³]©w¥Î¤á¶Ç¦^½Æ¼g©Ý¼³¤¤©Ò¦³¤wª¾¥D¾÷ªºÂश¡C³o¨Ç¹w³]Âश°²³]¥Î¤áºÝ·|¦b¤@¯ë³s½u¤W¨Ï¥Î²³æÅçµý¡C¦pªG·Q­n§Q¥Î¦w¥þ³s½uªº SSL ±N»P¥D¾÷³sµ²ªº¿ï¶µ´£¨Ñµ¹¥Î¤áºÝ¡A½Ð¥[¤J¨Ï¥Î¦w¥þ port ¸¹½X¤§®æ¦¡ ldaps://servername:port ªºÂश¡C

    ¦pªG±z¤w¸g¥[¤J¤@©Î¦h­Ó LDAP URL §@¬°Âश¡A«h¿ï¾Ü²M³æ¤U¤èªº®Ö¨ú¤è¶ô®É¡A·|±j­¢¥Î¤á¬°³o¨Ç LDAP URL ¿W¦û¦a¶Ç°eÂश¡A¦Ó«D¬°¥D¾÷½Æ¥»¡C¨Ò¦p¡A¦pªG±z­n¥Î¤áºÝ¥Ã»·³QÂश¨ì¥D¾÷¦øªA¾¹¤Wªº¦w¥þ³s±µ°ð¦Ó¤£¬O¹w³]³s±µ°ð¡A½Ð«Ø¥ß³o¨Ç¦w¥þ³s±µ°ðªº LDAP URL ²M³æ¡A¨Ã¿ï¨ú¦¹®Ö¨ú¤è¶ô¡C¦pªG±z·Q­n«ü©w¯S©wªº¥D¾÷¡A©Î«ü©wÀ³¸Ó³B²z©Ò¦³§ó·sªº Directory Server ¥N²z¡A«h±z¤]¥i¥H¨Ï¥Î¿W¥eÂश¡C

  8. ¦¹¥~¡A¦b [¿ï¥Î] ¼ÐÅÒ¤W¡A±z¤]¥i¥HÅܧó²M°£©µ¿ð¡C
  9. ¥Î¤á¦øªA¾¹¥²¶·Àx¦s¦³Ãö½Æ¥»¤º®e§ó·sªº¤º³¡¸ê°T¡A¦Ó²M°£©µ¿ð°Ñ¼Æ«h«ü©w¨ä«O¯d³o¨Ç¸ê°Tªº®É¶¡¡A³o»P¨ä¨ÑÀ³°Ó¦øªA¾¹¤WÅܧó°O¿ýªº MaxAge °Ñ¼Æ¦³Ãö¡C¦b¨â­Ó°Ñ¼Æ¤¤¡A¸ûµuªº°Ñ¼Æ¥i¨M©w¨â³¡¦øªA¾¹¶¡ªº½Æ¼g¦b°±¥Î©Î·í¾÷«á¤´¯à¦^´_¥¿±`ªº³Ìªø®É¶¡¡C¹w³]­È¬O 7 ¤Ñ¡A³o¤w¨¬°÷¤j³¡¥÷±¡ªp¨Ï¥Î¡C

  10. «ö¤@¤U [½T©w] Àx¦s¦¹½Æ¥»ªº¶i¶¥½Æ¼g²ÕºA¡C

³]©w¶°½u¾¹

¶°½u¾¹½Æ¥»¦P®É§@¬°¥Î¤á»P¥D¾÷¡A±N½Æ¼g¸ê®Æ¶i¤@¨B¤À´²µ¹§ó¦h¥Î¤á¡C¥¦­Ì¥²¶·±µ¦¬¨Ó¦Û¨ÑÀ³°Óªº½Æ¼g§ó·s¡A¨Ã±N½Æ¼g§ó·s¶Çµ¹¨ä¥Î¤á¡C¶°½u¾¹½Æ¥»¤£±µ¨ü­×§ï¡A¦Ó¬O±NÂश¶Ç¦^¥D¾÷¡C

³]©w¶°½u¾¹¦øªA¾¹ªº¤u§@¥]¬A·Ç³ÆªÅ¥Õªº§À½X¥HÀx¦s½Æ¥»¡A¨Ã¨Ï¥Î½Æ¼gºëÆF±Ò¥Î¸Ó§À½X¤Wªº½Æ¼g¡C¥i¿ï¥Îªº¶i¶¥²ÕºA¥]¬A¿ï¾Ü¤£¦Pªº½Æ¼gºÞ²z­û¡B³]©wÂश¡B³]©w²M°£©µ¿ð¤Î³]©wÅܧó°O¿ý°Ñ¼Æ¡C

¤U¦C¦U¸`´£¨Ñ³]©w¤@­Ó¶°½u¾¹¦øªA¾¹ªº¨BÆJ¡C½Ð¦b¥]§t«ü©w§À½X¤§¶°½u¾¹½Æ¥»ªº¨C³¡¦øªA¾¹¤W­«½Æ©Ò¦³µ{§Ç¡C

¬°¶°½u¾¹½Æ¥»«Ø¥ß§À½X

¦pªG¶°½u¾¹¦øªA¾¹¤WÁÙ¨S¦³ªÅ¥Õ§À½X¡A½Ð¥Î»P¹w­q¥D¾÷½Æ¥»¬Û¦Pªº DN «Ø¥ß¤@­ÓªÅ¥Õ§À½X¡C¦p»Ý»¡©ú¡A½Ð°Ñ¾\<«Ø¥ß§À½X>¡C

¦pªG§À½X¦s¦b¦Ó¥B¤£¬OªÅ¥Õ¡A«h¨ä¤º®e·|¦b±q¥D¾÷ªì©l¤Æ½Æ¥»®É¿ò¥¢¡C

±Ò¥Î¶°½u¾¹½Æ¥»

½Æ¼gºëÆF²¤Æ¤F±Ò¥Î¶°½u¾¹½Æ¥»ªº¤u§@¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P­n³]¬°¶°½u¾¹½Æ¥»ªº§À½X¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤Åã¥Ü½Æ¼gª¬ºA¸ê°T¡C

  3. «ö¤@¤U [±Ò¥Î½Æ¼g] «ö¶s¶}©l½Æ¼gºëÆF¡C
  4. ¿ï¾Ü [¶°½u¾¹½Æ¥»] ¿ï¶µ«ö¶s¡A¦A«ö¤@¤U [¤U¤@¨B] Ä~Äò¡C
  5. ¦pªG©|¥¼¦p¦¹°µ¡A«h·|´£¥Ü±z¿ï¾ÜÅܧó°O¿ýÀÉ¡C¹w³]Åܧó°O¿ýÀɦb¤å¦rÄæ¦ì¤¤Åã¥Ü¡C¦pªG¤£·Q­n¨Ï¥Î¹w³]¡A½Ð¿é¤JÅܧó°O¿ýªºÀɦW¡A©Î«ö¤@¤U [ÂsÄý] Åã¥ÜÀɮ׿ï¾Ü¾¹¡C
  6. ¦pªG¤w¸g±Ò¥ÎÅܧó°O¿ý¡AºëÆF·|²¤¹L¦¹¨BÆJ¡C

  7. «ö¤@¤U [¤U¤@¨B]¡C¦pªG©|¥¼¦p¦¹°µ¡A«h·|´£¥Ü±z¿é¤J¨Ã½T»{¹w³]½Æ¼gºÞ²z­ûªº±K½X¡C¦b¨C¤@­ÓÄæ¦ì¤¤¿é¤J¬Û¦Pªº±K½X¡A¦A«ö¤@¤U [¤U¤@¨B] Ä~Äò¡C
  8. ¦pªG¹w³]½Æ¼gºÞ²z­û¤w¸g©w¸q±K½X¡AºëÆF·|²¤¹L¦¹¨BÆJ¡C

  9. ½Æ¼gºëÆF©ó§ó·s½Æ¼g²ÕºA¦P®É¡A¤]·|Åã¥Üª¬ºA°T®§¡C§¹¦¨®É¡A½Ð«ö¤@¤U [Ãö³¬] ¡C

½Æ¼gª¬ºA²{¦bÅã¥Ü½Æ¼g¤w¸g·Ç³Æ¦n±µ¦¬§ó·s¡A¦Ó¥B¦b¥ªµ¡®æ¤¤ªº¹Ï¥Ü·|Åܧó¥H¤Ï¬M³o¶µÅܤơC

¶i¶¥¶°½u¾¹²ÕºA

¶°½u¾¹¦øªA¾¹§@¬°¨ÑÀ³°Ó®É»Ý­nÅܧó°O¿ý¡A¦ÓºëÆF·|±N¶°½u¾¹½Æ¥»³]¬°¨Ï¥Î¹w³]ªºÅܧó°O¿ý³]©w­È¡C­Y­n­×§ï³o¨Ç³]©w­È¡A½Ð°õ¦æ¤U¦C¨BÆJ¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A¿ï¾Ü [¸ê®Æ] ¸`ÂI¡AµM«á¿ï¾Ü¥k­±ªO¤¤ªº [½Æ¼g] ¼ÐÅÒ¡C
  2. ±z¥i¯à»Ý­n¿ï¨ú [±Ò¥ÎÅܧó°O¿ý] ®Ö¨ú¤è¶ô¨Ã«ö¤@¤U [­«³]] «ö¶s¡A­«·s¾ã²z¦¹¼ÐÅÒªº¤º®e¡C±µµÛ¡AÀ³¸Ó·|¬Ý¨ì±z¦b½Æ¼gºëÆF¤¤¿ï¾ÜªºÅܧó°O¿ýÀÉ¡C
  3. ±z¥i¥H±NÅܧó°O¿ýÀɪº¦WºÙÅܧó¡A¨Ã§ó·sÅܧó°O¿ý°Ñ¼Æ¡G
    1. Åܧó°O¿ý³Ì¤jµ§¼Æ - ¹ï©ó¬°¤F¶Ç°e§ó·sµ¹¥Î¤á¦ÓÀx¦sªº­×§ï¦Ó¨¥¡AÅܧó°O¿ý³Ì¤jµ§¼Æ¥i¨M©w¸Ó­×§ïªºÁ`¼Æ¡C¨Ì¾Ú¹w³]¡A³o¬OµL­­¨îªº¡C¦pªG±zªº½Æ¥»¦¬¨ì³\¦h¤j«¬ªº­×§ï¡A±z©Î³\·Q­n­­¨î°O¿ýªº¼Æ¥Ø¥H¸`¬ÙºÏºÐªÅ¶¡¡C
    2. Åܧó°O¿ý³Ìªø´Á­­ - ¥i¨M©w¶°½u¾¹Àx¦s¥²¶·¶Ç°eµ¹¥Î¤á§ó·sªº®É¶¡¡C¨Ì¾Ú¹w³]¡A³o¬OµL­­¨îªº¡C«Øij¨Ï¥ÎÅܧó°O¿ý³Ìªø´Á­­°Ñ¼Æ­­¨îÅܧó°O¿ý¤j¤p¡C

½Æ¼gºëÆF¤]¨Ï¥Î¹w³]ªº½Æ¼gºÞ²z­û¡C¦pªG¤w¸g«Ø¥ß·Q­n¨Ï¥Îªº¤£¦P½Æ¼gºÞ²z­û¶µ¥Ø¡A«h»Ý­n³]©w¶i¶¥²ÕºA¡C±z¤]¥i¥H¨Ï¥Î¦¹¹ï¸Ü¤è¶ô¡A³]©w­×§ï©M²M°£©µ¿ðªºÂश¡C

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M±z·Q­n³]©w§À½Xªº¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A«ö¤@¤U [¶i¶¥] «ö¶s¡AÅã¥Ü [¶i¶¥½Æ¥»³]©w­È] ¹ï¸Ü¤è¶ô¡C
  3. ¦b [³sµ² DN] ¼ÐÅÒ¤W¡A¨Ï¥Î [¥[¤J] ©M [§R°£] «ö¶s¡A«Ø¥ß¦³®Ä½Æ¼gºÞ²z­ûªº DN ²M³æ¡C±µµÛ¨ÑÀ³°Ó¥i¥H©ó»P¦¹½Æ¥»¤§¶¡ªº¨óij¤º¨Ï¥Î¥ô¦ó¤@­Ó DN¡C±z¥i§Q¥Î¿é¤J·s DN ªº¦WºÙ©ÎÂsÄý¥Ø¿ý¨Ó¥[¤J·sªº DN¡C
  4. ­Y­n³z¹L SSL ¨Ï¥Î¾ÌÃÒ¨Ó³]©w½Æ¼g¡A½Ð¿é¤J¾ÌÃÒ¶µ¥Øªº DN §@¬°¨ä¤¤¤@­Ó½Æ¼gºÞ²z­û¡C

  5. ·í±z§¹¦¨©Î¿ï¨ú§ó¶i¶¥²ÕºAªº [¿ï¥Î] ¼ÐÅҮɡA½Ð«ö¤@¤U [½T©w] ¡C
  6. ¦b [¶i¶¥½Æ¥»³]©w­È] ¹ï¸Ü¤è¶ôªº [¿ï¥Î] ¼ÐÅÒ¤W¡ALDAP URL ²M³æ·|«ü©w¶Ç°eµ¹¦¹¶°½u¾¹¤§­×§ï­n¨DªºÃB¥~Âश¡C¨Ï¥Î [¥[¤J] ©Î [§R°£] «ö¶s¡A«Ø¥ß LDAP URL ²M³æ¡C
  7. ½Æ¼g¾÷¨î¥i¦Û°Ê³]©w¶°½u¾¹¡A¥H¶Ç¦^½Æ¼g©Ý¼³¤¤©Ò¦³¤wª¾¥D¾÷ªºÂश¡C³o¨Ç¹w³]Âश°²³]¥Î¤áºÝ·|¦b¤@¯ë³s½u¤W¨Ï¥Î²³æÅçµý¡C¦pªG·Q­n§Q¥Î¦w¥þ³s½uªº SSL ±N»P¥D¾÷³sµ²ªº¿ï¶µ´£¨Ñµ¹¥Î¤áºÝ¡A½Ð¥[¤J¨Ï¥Î¦w¥þ port ¸¹½X¤§®æ¦¡ ldaps://servername:port ªºÂश¡C

    ¦pªG±z¤w¸g¥[¤J¤@©Î¦h­Ó LDAP URL §@¬°Âश¡A«h¿ï¾Ü²M³æ¤U¤èªº®Ö¨ú¤è¶ô®É¡A·|­­¨î¦øªA¾¹¥u¬°³o¨Ç LDAP URL ¶Ç°eÂश¡A¦Ó«D¬°¥D¾÷½Æ¥»¡C¨Ò¦p¡A¦pªG±z­n¥Î¤áºÝ¥Ã»·³QÂश¨ì¥D¾÷¦øªA¾¹¤Wªº¦w¥þ³s±µ°ð¦Ó¤£¬O¹w³]³s±µ°ð¡A½Ð«Ø¥ß³o¨Ç¦w¥þ³s±µ°ðªº LDAP URL ²M³æ¡A¨Ã¿ï¨ú¦¹®Ö¨ú¤è¶ô¡C¦pªG±z·Q­n«ü©w¯S©wªº¥D¾÷¡A©Î«ü©wÀ³¸Ó³B²z©Ò¦³§ó·sªº Directory Server ¥N²z¡A«h±z¤]¥i¥H¨Ï¥Î¿W¥eÂश¡C

  8. ¦¹¥~¡A¦b [¿ï¥Î] ¼ÐÅÒ¤W¡A±z¤]¥i¥HÅܧó²M°£©µ¿ð¡C
  9. ¶°½u¾¹¦øªA¾¹¥²¶·Àx¦s¦³Ãö½Æ¥»¤º®e§ó·sªº¤º³¡¸ê°T¡A¦Ó²M°£©µ¿ð°Ñ¼Æ«h«ü©w¨ä«O¯d³o¨Ç¸ê°Tªº®É¶¡¡A³o»P¨ÑÀ³§ó·s¤§¦øªA¾¹¤WªºÅܧó°O¿ý (¤£¬O¥¦¦Û¤vªºÅܧó°O¿ý) ªº MaxAge °Ñ¼Æ¦³Ãö¡C¦b¨â­Ó°Ñ¼Æ¤¤¡A¸ûµuªº°Ñ¼Æ¥i¨M©w¨â³¡¦øªA¾¹¶¡ªº½Æ¼g¦b°±¥Î©Î·í¾÷«á¤´¯à¦^´_¥¿±`ªº³Ìªø®É¶¡¡C¹w³]­È¬O 7 ¤Ñ¡A³o¤w¨¬°÷¤j³¡¥÷±¡ªp¨Ï¥Î¡C

  10. «ö¤@¤U [½T©w] Àx¦s¦¹½Æ¥»ªº¶i¶¥½Æ¼g²ÕºA¡C

³]©w¥D¾÷½Æ¥»

¥D¾÷½Æ¥»¥]§t¸ê®Æªº¥D­n½Æ¥»¡A¨Ã¥ý±N©Ò¦³­×§ï¶°¤¤¤§«á¡A¦A±N§ó·s¶Çµ¹¨ä¥L©Ò¦³½Æ¥»¡C¥D¾÷·|°O¿ý©Ò¦³Åܧó¡AÀˬd¥Î¤áª¬ºA¡A¨Ã¦b»Ý­n®É±N§ó·s¶Çµ¹¥Î¤á¡C¦b¦h­«¥D¾÷½Æ¼g¤¤¡A¥D¾÷½Æ¥»¤]·|¦¬¨ì¨Ó¦Û¨ä¥L¥D¾÷ªº§ó·s¡C

³]©w¥D¾÷¦øªA¾¹ªº¤u§@¥]¬A©w¸q¥]§t¥D¾÷½Æ¥»ªº§À½X¡B¥Î½Æ¼gºëÆF±Ò¥Î¥D¾÷½Æ¥»¥H¤Îµø»Ý­n³]©w¶i¶¥½Æ¼g¡C

¤U¦C¦U¸`´£¨Ñ³]©w¤@­Ó¥D¾÷¦øªA¾¹ªº¨BÆJ¡C½Ð¦b¥]§t«ü©w§À½X¤§¥D¾÷½Æ¥»ªº¨C³¡¦øªA¾¹¤W­«½Æ©Ò¦³µ{§Ç¡C

¬°¥D¾÷½Æ¥»©w¸q§À½X

¦b¥]§t­n½Æ¼g¤§¶µ¥Øªº¥D¾÷¦øªA¾¹¤W¿ï¾Ü©Î«Ø¥ß§À½X¡C¦p»Ý»¡©ú¡A½Ð°Ñ¾\<«Ø¥ß§À½X>¡C

«Ø¥ß½Æ¼g¨óij¤§«e¡A§À½XÀ³¥]§t©Ò¦³ªºªì©l¸ê®Æ¡C¦p¦¹¤@¨Ó¡A±z¤~¯à°÷¥ß§Y®Ú¾Ú³o¨Ç¸ê®Æªì©l¤Æ¥Î¤á½Æ¥»¡C¬°½T«O¥¿½Tªº¦h­«¥D¾÷²ÕºA»Pªì©l¤Æ¡AÀ³¸Ó¥u¦³¨ä¤¤¤@­Ó¥D¾÷¥]§t©Ò¦³ªì©l¸ê®Æ¡A¦Ó¨ä¥L¥D¾÷¤Wªº§À½XÀ³¸ÓªÅ¥Õ¡C

±Ò¥Î¥D¾÷½Æ¥»

½Æ¼gºëÆF²¤Æ¤F±Ò¥Î¥D¾÷½Æ¥»ªº¤u§@¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P­n³]¬°¥D¾÷½Æ¥»ªº§À½X¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤Åã¥Ü½Æ¼gª¬ºA¸ê°T¡C

  3. «ö¤@¤U [±Ò¥Î½Æ¼g] «ö¶s¶}©l½Æ¼gºëÆF¡C
  4. ¿ï¾Ü [¥D¾÷½Æ¥»] ¿ï¶µ«ö¶s¡A¦A«ö¤@¤U [¤U¤@¨B] Ä~Äò¡C
  5. ¿é¤J½Æ¥» ID¡G¿ï¾Ü 1 ¨ì 65534 (§t 1 »P 65534) ¤§¶¡ªº°ß¤@¾ã¼Æ¡C
  6. ½Æ¥» ID ¦b«ü©w§À½Xªº©Ò¦³¥D¾÷½Æ¥»¤§¤¤À³¸Ó¬O°ß¤@ªº¡C¦P¤@¦øªA¾¹¤W¤£¦P§À½Xªº¥D¾÷½Æ¥»¥i¥H¨Ï¥Î¬Û¦Pªº½Æ¥» ID¡A«e´£¬O¥¦¦b¨C­Ó½Æ¥»ªº¨ä¥L¥D¾÷¤§¤¤¬O°ß¤@ªº¡C

  7. «ö¤@¤U [¤U¤@¨B] ¡C¦pªG©|¥¼¦p¦¹°µ¡A«h·|´£¥Ü±z¿ï¾ÜÅܧó°O¿ýÀÉ¡C¹w³]Åܧó°O¿ýÀɦb¤å¦rÄæ¦ì¤¤Åã¥Ü¡C¦pªG¤£·Q­n¨Ï¥Î¹w³]¡A½Ð¿é¤JÅܧó°O¿ýªºÀɦW¡A©Î«ö¤@¤U [ÂsÄý] Åã¥ÜÀɮ׿ï¾Ü¾¹¡C
  8. ¦pªG¤w¸g±Ò¥ÎÅܧó°O¿ý¡AºëÆF·|²¤¹L¦¹¨BÆJ¡C

  9. «ö¤@¤U [¤U¤@¨B] ¡C¦pªG©|¥¼¦p¦¹°µ¡A«h·|´£¥Ü±z¿é¤J¨Ã½T»{¹w³]½Æ¼gºÞ²z­ûªº±K½X¡C¦b³æ¤@¥D¾÷½Æ¥»ªº±¡ªp¤U¤£¨Ï¥Î½Æ¼gºÞ²z­û¡A¦ý±zÁÙ¬O¥²¶·¿é¤J±K½X¡A¤~¯àÄ~Äò¡C¦b¨C¤@­ÓÄæ¦ì¤¤¿é¤J¬Û¦Pªº±K½X¡A¦A«ö¤@¤U [¤U¤@¨B] Ä~Äò¡C
  10. ¦pªG¹w³]½Æ¼gºÞ²z­û¤w¸g©w¸q±K½X¡AºëÆF·|²¤¹L¦¹¨BÆJ¡C

  11. ½Æ¼gºëÆF©ó§ó·s½Æ¼g²ÕºA¦P®É¡A¤]·|Åã¥Üª¬ºA°T®§¡C§¹¦¨®É¡A½Ð«ö¤@¤U [Ãö³¬]¡C

²{¦b½Æ¼gª¬ºA·|Åã¥Ü¦¹¥D¾÷ªº½Æ¥» ID¡A¦Ó¥B¥ªµ¡®æ¤¤ªº¹Ï¥Ü·|Åܧó¥HÅã¥Ü¦¹§À½X¤w±Ò¥Î½Æ¼g¡C

¶i¶¥¦h­«¥D¾÷²ÕºA

¨Ì¹w³]­È¡AºëÆF·|±N¥D¾÷½Æ¥»³]¬°¨Ï¥Î¹w³]ªºÅܧó°O¿ý³]©w­È¡C­Y­n­×§ïÅܧó°O¿ý³]©w­È¡A½Ð°õ¦æ¥H¤U¨BÆJ¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A¿ï¾Ü [¸ê®Æ] ¸`ÂI¡AµM«á¿ï¾Ü¥k­±ªO¤¤ªº [½Æ¼g] ¼ÐÅÒ¡C
  2. ±z¥i¯à»Ý­n¿ï¨ú [±Ò¥ÎÅܧó°O¿ý] ®Ö¨ú¤è¶ô¨Ã«ö¤@¤U [­«³]] «ö¶s¡A­«·s¾ã²z¦¹¼ÐÅÒªº¤º®e¡C±µµÛ¡AÀ³¸Ó·|¬Ý¨ì±z¦b½Æ¼gºëÆF¤¤¿ï¾ÜªºÅܧó°O¿ýÀÉ¡C
  3. ±z¥i¥H±NÅܧó°O¿ýÀɪº¦WºÙÅܧó¡A¨Ã§ó·sÅܧó°O¿ý°Ñ¼Æ¡G
    1. Åܧó°O¿ý³Ì¤jµ§¼Æ - ¹ï©ó¬°¤F¶Ç°e§ó·sµ¹¥Î¤á¦ÓÀx¦sªº­×§ï¦Ó¨¥¡AÅܧó°O¿ý³Ì¤jµ§¼Æ¥i¨M©w¸Ó­×§ïªºÁ`¼Æ¡C¨Ì¾Ú¹w³]¡A³o¬OµL­­¨îªº¡C¦pªG±zªº½Æ¥»¦¬¨ì³\¦h¤j«¬ªº­×§ï¡A±z©Î³\·Q­n­­¨î°O¿ýªº¼Æ¥Ø¥H¸`¬ÙºÏºÐªÅ¶¡¡C
    2. Åܧó°O¿ý³Ìªø´Á­­ - ¥i¨M©w¶°½u¾¹Àx¦s¥²¶·¶Ç°eµ¹¥Î¤á§ó·sªº®É¶¡¡C¨Ì¾Ú¹w³]¡A³o¬OµL­­¨îªº¡C«Øij¨Ï¥ÎÅܧó°O¿ý³Ìªø´Á­­°Ñ¼Æ­­¨îÅܧó°O¿ý¤j¤p¡C

½Æ¼gºëÆF¤]¨Ï¥Î¹w³]ªº½Æ¼gºÞ²z­û¡C¦pªG¤w¸g«Ø¥ß·Q­n¨Ï¥Îªº¤£¦P½Æ¼gºÞ²z­û¶µ¥Ø¡A«h»Ý­n³]©w¶i¶¥²ÕºA¡C±z¤]¥i¥H¨Ï¥Î¦¹¹ï¸Ü¤è¶ô¡A³]©w­×§ï©M²M°£©µ¿ðªºÂश¡C¦pªG­n³]©w³æ¤@¥D¾÷¡A±z¥i¥H²¤¹L¦¹µ{§Ç¡C

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M±z·Q­n³]©w§À½Xªº¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A«ö¤@¤U [¶i¶¥] «ö¶s¡AÅã¥Ü [¶i¶¥½Æ¥»³]©w­È] ¹ï¸Ü¤è¶ô¡C
  3. ¦b [³sµ² DN] ¼ÐÅÒ¤W¡A¨Ï¥Î [¥[¤J] ©M [§R°£] «ö¶s¡A«Ø¥ß¦³®Ä½Æ¼gºÞ²z­ûªº DN ²M³æ¡C±µµÛ¨ÑÀ³°Ó¥i¥H©ó»P¦¹½Æ¥»¤§¶¡ªº¨óij¤º¨Ó¨Ï¥Î¥ô¦ó¤@­Ó DN¡C±z¥i§Q¥Î¿é¤J·s DN ªº¦WºÙ©ÎÂsÄý¥Ø¿ý¨Ó¥[¤J·sªº DN¡C
  4. ­Y­n³z¹L SSL ¨Ï¥Î¾ÌÃÒ¨Ó³]©w½Æ¼g¡A½Ð¿é¤J¾ÌÃÒ¶µ¥Øªº DN §@¬°¨ä¤¤¤@­Ó½Æ¼gºÞ²z­û¡C

  5. ·í±z§¹¦¨©Î¿ï¨ú§ó¶i¶¥²ÕºAªº [¿ï¥Î] ¼ÐÅҮɡA½Ð«ö¤@¤U [½T©w]¡C
  6. ¦b [¶i¶¥½Æ¥»³]©w­È] ¹ï¸Ü¤è¶ôªº [¿ï¥Î] ¼ÐÅÒ¤W¡ALDAP URL ²M³æ·|«ü©w¶Ç°eµ¹¦¹¥D¾÷¤§­×§ï­n¨DªºÃB¥~Âश¡Cªì©l¤Æ«á¡A¥D¾÷·|¥ß§Y¦Û°Ê¶Ç°eÂश¡A¦p<¦h­«¥D¾÷ªì©l¤Æ«áªº¥æ¶°>©Ò­z¡C¨Ï¥Î [¥[¤J] ©Î [§R°£] «ö¶s¡A«Ø¥ß LDAP URL ²M³æ¡C
  7. ½Æ¼g¾÷¨î¥i¦Û°Ê³]©w¶°½u¾¹¡A¥H¶Ç¦^½Æ¼g©Ý¼³¤¤©Ò¦³¤wª¾¥D¾÷ªºÂश¡C³o¨Ç¹w³]Âश°²³]¥Î¤áºÝ·|¦b¤@¯ë³s½u¤W¨Ï¥Î²³æÅçµý¡C¦pªG·Q­n§Q¥Î¦w¥þ³s½uªº SSL ±N»P¥D¾÷³sµ²ªº¿ï¶µ´£¨Ñµ¹¥Î¤áºÝ¡A½Ð¥[¤J¨Ï¥Î¦w¥þ port ¸¹½X¤§®æ¦¡ ldaps://servername:port ªºÂश¡C

    ¦pªG±z¤w¸g¥[¤J¤@©Î¦h­Ó LDAP URL §@¬°Âश¡A«h¿ï¾Ü²M³æ¤U¤èªº®Ö¨ú¤è¶ô®É¡A·|­­¨î¦øªA¾¹¥u¬°³o¨Ç LDAP URL ¶Ç°eÂश¡A¦Ó«D¬°¥D¾÷½Æ¥»¡C¨Ò¦p¡A¦pªG±z­n¥Î¤áºÝ¥Ã»·³QÂश¨ì¥D¾÷¦øªA¾¹¤Wªº¦w¥þ³s±µ°ð¦Ó¤£¬O¹w³]³s±µ°ð¡A½Ð«Ø¥ß³o¨Ç¦w¥þ³s±µ°ðªº LDAP URL ²M³æ¡A¨Ã¿ï¨ú¦¹®Ö¨ú¤è¶ô¡C

  8. ¦¹¥~¡A¦b [¿ï¥Î] ¼ÐÅÒ¤W¡A±z¤]¥i¥HÅܧó²M°£©µ¿ð¡C
  9. ¥D¾÷¦øªA¾¹¥²¶·Àx¦s¦³Ãö½Æ¥»¤º®e§ó·sªº¤º³¡¸ê°T¡A¦Ó²M°£©µ¿ð°Ñ¼Æ«h«ü©w¨ä«O¯d³o¨Ç¸ê°Tªº®É¶¡¡A³o»P¨ÑÀ³§ó·s¤§¥D¾÷¦øªA¾¹¤WªºÅܧó°O¿ý (¤£¬O¥¦¦Û¤vªºÅܧó°O¿ý) ªº MaxAge °Ñ¼Æ¦³Ãö¡C¦b¨â­Ó°Ñ¼Æ¤¤¡A¸ûµuªº°Ñ¼Æ¥i¨M©w¨â³¡¦øªA¾¹¶¡ªº½Æ¼g¦b°±¥Î©Î·í¾÷«á¤´¯à¦^´_¥¿±`ªº³Ìªø®É¶¡¡C¹w³]­È¬O 7 ¤Ñ¡A³o¤w¨¬°÷¤j³¡¥÷±¡ªp¨Ï¥Î¡C

  10. «ö¤@¤U [½T©w] Àx¦s¦¹½Æ¥»ªº¶i¶¥½Æ¼g²ÕºA¡C

«Ø¥ß½Æ¼g¨óij

½Æ¼g¨óij¬O¦b¨ÑÀ³°Ó¤Wªº¤@²Õ°Ñ¼Æ¡A¥Î¥H³]©w¤Î±±¨î§ó·s¶Ç°e¨ì«ü©w¥Î¤áªº¤è¦¡¡C½Æ¼g¨óij¥²¶·«Ø¥ß¦b¶Ç°e§ó·sµ¹¨ä¥Î¤áªº¨ÑÀ³°Ó½Æ¥»¤W¡C±z¥²¶·¬°¨C¤@­Ó­n§ó·sªº¥Î¤á«Ø¥ß½Æ¼g¨óij¡C

¨Ì·Ó¤U¦C¶¶§Ç«Ø¥ß½Æ¼g¨óij¡G

  1. ¤¶©ó¦h­«¥D¾÷¶°¦X¤¤ªº¥D¾÷¤§¶¡¡A±q¥]§t­n½Æ¼g¤§§À½X­ì©l½Æ¥»ªº¥D¾÷¶}©l¡C
  2. ¤¶©ó¥D¾÷»P¤£³z¹L¶°½u¾¹½Æ¼gªº±M¥Î¥Î¤á¤§¶¡¡C
  3. ¤¶©ó¥D¾÷»P¶°½u¾¹½Æ¥»¤§¶¡¡C
  4. ¤¶©ó¶°½u¾¹½Æ¥»»P¨ä¥Î¤á¤§¶¡¡C

¨Ò¦p¡A¦b¦³ 2 ¥x¥D¾÷¤Î 3 ¥x±M¥Î¥Î¤áªº¦h­«¥D¾÷½Æ¼g©Ý¼³¤¤ (¦p¹Ï 8-1 ©Ò¥Ü)¡A±zÀ³¸Ó¨Ì·Ó¤U¦C¶¶§Ç«Ø¥ß 8 ­Ó½Æ¼g¨óij¡G

  • ¤¶©ó¤@­Ó¥D¾÷»P¨ä¥L¥D¾÷¤§¶¡¡C
  • ¤¶©ó¨ä¥L¥D¾÷»P²Ä¤@­Ó¥D¾÷¤§¶¡¡C
  • ¤¶©ó¤@­Ó¥D¾÷»P¤T­Ó±M¥Î¥Î¤á¤¤ªº¨C­Ó±M¥Î¥Î¤á¤§¶¡¡C
  • ¤¶©ó¨ä¥L¥D¾÷»P¤T­Ó±M¥Î¥Î¤á¤¤ªº¨C­Ó±M¥Î¥Î¤á¤§¶¡¡C

­Y­n«Ø¥ß½Æ¼g¨óij¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P¨ÑÀ³°Ó§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤Åã¥Ü½Æ¼gª¬ºA¸ê°T¡C

  3. «ö¤@¤U¤w©w¸q½Æ¼g¨óij²M³æ®Çªº [·s¼W] «ö¶s¡C
  4. ¦b [½Æ¼g¨óij] ¹ï¸Ü¤è¶ô¤¤¡A¿ï¾Ü¥\¯àªí¤¤¥]§t¥Î¤á½Æ¥»ªº²{¦³¦øªA¾¹¡A©Î«ö¤@¤U [¨ä¥L] «ö¶s¥H©w¸q¦øªA¾¹¡C
  5. ·í±z«ö [¨ä¥L] «ö¶s®É¡A½Ð¿é¤J¥Î¤á¦øªA¾¹ªº§¹¾ã®æ¦¡¦WºÙ¡A¥H¤Î¨ä LDAP ³s±µ°ð¸¹½X¡C¦pªG¦b¦¹³s±µ°ð¤W¨Ï¥Î SSL¡A½Ð®Ö¨ú¦w¥þ³s±µ°ðªº¤è¶ô¡A¬°½Æ¼g§ó·s±Ò¥Î¦w¥þ³s½u¡C

  6. ¦b¥Î¤á¦øªA¾¹¤W¿é¤J½Æ¼gºÞ²z­û¶µ¥Øªº DN »P±K½X¡C¨Ì¹w³]­È¡A³o¬O¹w³]½Æ¼gºÞ²z­ûªº DN¡C
  7. ¦pªG±z¿ï¾Ü¨ã¦³¦w¥þ³s±µ°ðªº¥Î¤á¡A±z¥i¥H«ö¤@¤U [¿ï¶µ] «ö¶s¨M©w DN Äæ¦ìªº·N¸q¡C¦pªG±z¥Î±K½X³s½u¡A¨ÑÀ³°Ó±N¨Ï¥Î²³æÅçÃÒ¡A¨Ã³z¹L¥[±Kªº SSL ³s½u¶i¦æ³q°T¡C¦pªG±z§Q¥Î¾ÌÃÒ¶i¦æ³s½u¡ADN Äæ¦ì´N¬O¥]§t¾ÌÃÒªº¶µ¥Ø DN¡A¦Ó¥B¤£»Ý­n±K½X¡C

  8. ¿ï¾Ü©Ê¦a¿é¤J¦¹¨óijªº´y­z¦r¦ê¡C¥Î¤á¦øªA¾¹¦WºÙ»P³s±µ°ð¸¹½X¤Î´y­z¦r¦ê±N¥X²{¦b¦¹¥D¾÷½Æ¥»ªº½Æ¼g¨óij²M³æ¤¤¡C
  9. §¹¦¨®É¡A«ö¤@¤U [½T©w]¡C«K·|Åã¥Ü½T»{¹ï¸Ü¤è¶ô¡A¸ß°Ý±z¬O§_­n´ú¸Õ­è¿é¤Jªº³s½u°Ñ¼Æ¡C
  10. ¦pªG­n¥Î«ü©wªº½Æ¼gºÞ²z­û»P±K½X¨Ó´ú¸Õ¯à§_³s½u¨ì«ü©wªº¦øªA¾¹¤Î³s±µ°ð¸¹½X¡A½Ð«ö¤@¤U [¬O]¡C¦pªG³s½u¥¢±Ñ¡A±zÁÙ¬O¯à°÷¿ï¾Ü¨Ï¥Î¦¹¨óij¡A¨Ò¦p¡A¥i¯à¬O°Ñ¼Æ¥¿½T¡A¦ý¦øªA¾¹¬O³B©óÂ÷½uª¬ºA¡C
  11. ·í±z§¹¦¨®É¡A¨óij·|¥X²{¦b¦¹¥D¾÷½Æ¥»ªº½Æ¼g¨óij²M³æ¤¤¡C

µy«á±z¥i¥H½s¿è½Æ¼g¨óij¡A¥HÅܧó¥Î¤á¦øªA¾¹¤W½Æ¼gºÞ²z­ûªº DN »P±K½X¡G

  1. ±q²M³æ¤¤¿ï¾Ü½Æ¼g¨óij¡A¦A«ö¤@¤U [½s¿è] «ö¶s¡C
  2. ¦b [½Æ¼g¨óij] ¹ï¸Ü¤è¶ô¤¤¡A½Ð¿ï¾Ü [³s½u] ¼ÐÅÒ¡C
  3. ½s¿è¥Î¤á¦øªA¾¹ªº½Æ¼gºÞ²z­û DN ©Î±K½X¡C
  4. ¿ï¾Ü©Ê¦a½s¿è¨óijªº´y­z¦r¦ê¡C
  5. «ö¤@¤U [½T©w] Àx¦s·s³]©w­È¡A¨Ã¦b±N§ó·s¶Çµ¹¦¹¥Î¤á®É¥ß§Y¶}©l¨Ï¥Î·s³]©w­È¡C
  6. ¦b<±Ò¥Î¤ù¬q½Æ¼g>»P<³z¹L WAN ½Æ¼g>¤¤·|»¡©ú¨ä¥L¼ÐÅÒ¤¤ªº²ÕºA°Ñ¼Æ¡C

  7. ¦b«Ø¥ß¨C­Ó½Æ¼g¨óij«á¡A±z¥i¥H¿ï¾Ü¬°¦¹§À½X³]©w¤ù¬q½Æ¼g¡AµM«á¥ß§Yªì©l¤Æ½Æ¥»¡A¦p<ªì©l¤Æ½Æ¥»>©Ò­z¡C

³]©w¤ù¬q½Æ¼g

¨Ì¹w³]­È¡A½Æ¼g·|±N½Æ¼g§À½X¤¤ªº©Ò¦³¶µ¥Ø¥þ³¡½Æ»s¨ì¥Î¤á½Æ¥»¡C­Y¨Ï¥Î Sun ONE Directory Server 5.2 ¤¤·s¼Wªº¤ù¬q½Æ¼g¥\¯à¡A±z¥i¥H«ü©w½Æ¼g¹Lµ{¤¤©Ò½Æ¼g©Î±Æ°£ªºÄݩʤl¶°¡C¤ù¬q½Æ¼g¬O¦b½Æ¼g¨óij¤¤³]©w¡AÅý±z¥i¥H¬°¥D¾÷ªº¨C­Ó¥Î¤á½Æ¥»©w¸qÄݩʲաC¦p¦¹¤@¨Ó¡A±z¥i¥H±±¨î¤À´²ªº¸ê®Æ¤º®e¡A¨Ã¥B§ó¦³®Ä²v¦a¨Ï¥Î½Æ¼gÀW¼e¤Î¥Î¤á¸ê·½¡C

¨Ò¦p¡A¦pªG±z­n´î¤Ö½Æ¼gÀW¼e¡A±z¥i¥H¿ï¾Ü¤£½Æ¼g³q±`¼Æ­È¬Û·í¤jªºÄÝ©Ê¡A¨Ò¦p photo¡BjpegPhoto »P audio¡C¦]¦¹¡A¦b¥Î¤á¤WµLªk¨Ï¥Î³o¨ÇÄÝ©Ê¡C¤S¨Ò¦p¡A±z¥i¥H¿ï¾Ü¥u½Æ¼g uid »P userpassword Äݩʨì±Mªù¥Î¨Ó°õ¦æÅçÃÒªº¥Î¤á¦øªA¾¹¡C

¤ù¬q½Æ¼gªºª`·N¨Æ¶µ

¤Z¬O±Ò¥Î©Î­×§ï¤ù¬qªºÄݩʲաA³£¥²¶·­«·sªì©l¤Æ¥Î¤á½Æ¥»¡C¦]¦¹¡A±zÀ³¸Ó¦b³¡¸p¤§«e¥ý¨M©w¤ù¬q½Æ¼gªº»Ý­n¡A¨Ã¦b²Ä¤@¦¸ªì©l¤Æ½Æ¥»¤§«e©w¸q±zªºÄݩʲաC

½Æ¼g¤p«¬ÄݩʲծÉÀ³¤p¤ß¡A¦]¬°¤wª¾¬Y¨ÇÄݩʪº ACI¡B¨¤¦â»P CoS µ¥½ÆÂøªº¥\¯à¤§¶¡¦s¦b¦³¨Ì¦s©Ê¡C¤£¶È¦p¦¹¡A­Y¤£½Æ¼g ACI¡B¨¤¦â©Î CoS ¾÷¨îªº³W½d©Î·j´M±ø¥ó¤¤´£¤Îªº¨ä¥LÄÝ©Ê¡A¥i¯à¯}Ãa¸ê®Æ¦w¥þ©Ê¡A©Î³y¦¨·j´M¤¤¶Ç¦^¤£¦PªºÄݩʲաCºÞ²z­n±Æ°£ªºÄݩʲM³æ·|¤ñºÞ²z­n¥]§tªºÄݩʲM³æ¦w¥þ¡A¤]¤ñ¸û¤£®e©öµo¥Í¤H¬°¿ù»~¡C

¦pªG½Æ¼gªºÄݩʲդ£¤¹³\©Ò¦³½Æ¼gªº¶µ¥Ø­n²Å¦X¸Óµ²ºc¡A±zÀ³¸ÓÃö³¬¥Î¤á¦øªA¾¹¤¤ªºµ²ºcÀˬd¡C½Æ¼g¤£²Å¦Xµ²ºcªº¶µ¥Ø¨Ã¤£·|²£¥Í¿ù»~¡A¦]¬°½Æ¼g¾÷¨î·|²¤¹L¥Î¤á¤Wªºµ²ºcÀˬd¡C¦ý³o¼Ë¤@¨Ó¡A¥Î¤á±N·|¥]§t¤£²Å¦Xµ²ºcªº¶µ¥Ø¡A©Ò¥HÀ³¸ÓÃö³¬µ²ºcÀˬd¡A¥H±N³s³eªºª¬ºA¤½¶}µ¹¨ä¥Î¤áºÝ¡C

¤ù¬q½Æ¼g¬O¦b¦³¶°½u¾¹»P±M¥Î¥Î¤á¤§¥D¾÷½Æ¥»ªº½Æ¼g¨óij¤¤³]©w¡C¦h­«¥D¾÷½Æ¼gÀô¹Ò¤¤¡A¤£¤ä´©¨â­Ó¥D¾÷½Æ¥»¤§¶¡ªº¤ù¬q½Æ¼g²ÕºA¡C¦Ó¥B¡A¦pªG¼Æ­Ó¥D¾÷»P¦P¤@­Ó½Æ¥»¶¡¦³½Æ¼g¨óij¡A«h³o¨Ç¨óij³£¥²¶·½Æ¼g¦P¤@­ÓÄݩʲաC

Sun ONE Directory Server 5.2 ©Ò´£¨Ñªº¤ù¬q½Æ¼g¥\¯à»Pª©¥»ªº Directory Server ¤£¬Û®e¡C³]©w¤ù¬q½Æ¼g¨óij®É¡A¥D¾÷»P¥Î¤á½Æ¥»³£¥²¶·¦b Directory Server 5.2 ¹ê¨Ò¤W¡C

©w¸qÄݩʲÕ

ÄݩʲլO¤@±iÄݩʲM³æ¡A²M³æ¤WªºÄݩʬO·í½Æ¥»¤W±Ò¥Î¤ù¬q½Æ¼g®É©Ò½Æ¼gªºÄÝ©Ê (¨ä¥L©Ò¦³Äݩʧ¡±Æ°£)¡C±z¥i¥H¦b¥D¾÷¦øªA¾¹¤W©w¸q¥ô¦ó¼Æ¥ØªºÄݩʲաAµM«á¨Ï¨ä¤¤¤@­ÓÄݩʲջP½Æ¼g¨óij²£¥ÍÃöÁp¡C

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A¿ï¾Ü [¸ê®Æ] ¸`ÂI¡AµM«á¿ï¾Ü¥k­±ªO¤¤ªº [½Æ¼g] ¼ÐÅÒ¡C
  2. «ö¤@¤U [½Æ¼g] ¼ÐÅÒ¤U¤èªº [ºÞ²z½Æ¼gÄݩʲÕ] «ö¶s¡C±z¥i¯à¥²¶·¦V¤U±²°Ê¤~·|¬Ý¨ì¦¹«ö¶s¡C
  3. «ö¤@¤U [¥[¤J] ¥H©w¸q·sªºÄݩʲաA©Î±q²M³æ¤¤¿ï¾Ü²{¦³ÄݩʲզA«ö¤@¤U [½s¿è] ¶i¦æ­×§ï¡C¦bÅã¥Üªº [ÄݩʲÕ] ¹ï¸Ü¤è¶ô¤¤¿ï¾Ü©Î¨ú®ø¿ï¾Ü [½Æ¼g] Ä椤ªº®Ö¨ú¤è¶ô¡A¨Ï¹ïÀ³ªºÄÝ©Ê¥i¥]§t¦bÄݩʲդ¤¡A©Î±Æ°£¦b²Õ¥~¡CÄݩʦWºÙ®Ç¦³®Ö¨ú¤è¶ôªí¥Ü±N·|½Æ¼g¸ÓÄÝ©Ê¡C
  4. ¹w³]ª¬ºA¤U·|¿ï¾Ü©Ò¦³ÄÝ©Ê¡A«Øij±z¥u±N¯S§O¤£§Æ±æ½Æ¼gªºÄݩʨú®ø¿ï¾Ü¡C¦pªG­n­«·s¶}©l¿ï¾Ü¡A[¥þ¿ï] «ö¶s·|¦A¦¸¿ï¾Ü©Ò¦³ÄÝ©Ê¡C·í±z¨ú®ø¿ï¾Ü¤@¨ÇÄÝ©Ê«á¡A¥Ø¿ý¦øªA¾¹±N½Æ¼g©Ò¦³ÄÝ©Ê¡A¥u±Æ°£¤w¨ú®ø¿ï¾ÜªºÄÝ©Ê¡C¦pªGµy«á¦bµ²ºc¤¤©w¸q·sªºÄÝ©Ê¡A¨Ã¥Î©ó½Æ¼g¶µ¥Ø¤¤¡A³o¨Ç·sªºÄݩʳ£±N³Q½Æ¼g¡A°£«D±z½s¿èÄݩʲըú®ø¿ï¾Ü¸ÓÄÝ©Ê¡C

    «ö¤@¤U [¥þ³¡¤£¿ï] «ö¶s±N¨ú®ø¿ï¾Ü©Ò¦³ÄÝ©Ê¡AµM«á±z¥i¥H¿ï¾Ü­n¥]§t¦bÄݩʲդ¤ªºÄÝ©Ê¡C·í±z«ö¤U [¥þ³¡¤£¿ï]¡AµM«á©w¸q¥¿½TªºÄݩʲիá¡A¥u¦³¿ï¨úªºÄÝ©Ê·|³Q½Æ¼g¡C¦pªGµy«á¦bµ²ºc¤¤©w¸q·sªºÄÝ©Ê¡A¨Ã¥Î©ó½Æ¼g¶µ¥Ø¤¤¡A³o¨Ç·sªºÄݩʳ£¤£·|³Q½Æ¼g¡A°£«D±z½s¿èÄݩʲտï¾Ü¸ÓÄÝ©Ê¡C



    ª`·N

    objectClass¡BnsUniqueId »P nsDS50ruv ÄÝ©Ê¡A¥H¤Î RDN ©R¦WÄݩʤ@©w·|½Æ¼g¡A¤£½×±z¬O§_¦bÄݩʲդ¤±Æ°£³o¨ÇÄÝ©Ê¡C³o¬O¦]¬° LDAP ­×§ï»Ý­n objectClass »P©R¦WÄÝ©Ê¡A¦Ó½Æ¼g«h»Ý­n nsUniqueId »P nsDS50ruv Äݩʤ~¯à¥¿±`¹B§@¡C

    ±Æ°£ ACI ÄݩʱN¹ï¥Î¤á½Æ¥»¤¤ªº¦s¨ú±±¨î²£¥Í¼vÅT¡C±Æ°£ userPassword ÄݩʱN¾É­P¨S¦³¥ô¦ó¨Ï¥ÎªÌ¯à°÷³q¹L¥Î¤á½Æ¥»ªºÅçÃÒ¡C



  5. ¿ï¾Ü©Ê¦a¿é¤J©Î­×§ï¦¹Äݩʲժº´y­z¦r¦ê¡C¦¹¤å¦r±N¥X²{¦b©w¸qªºÄݩʲղM³æ¤¤¡A¨Ã¦b½s¿è§Y±N¨Ï¥Î¦¹Äݩʲժº½Æ¼g¨óij®É¥X²{¡C¦pªG¥¼´£¨Ñ´y­z¡A¦øªA¾¹±N®Ú¾Ú±Æ°£©Î¥]§tªºÄݩʲ£¥Í´y­z¡C
  6. §¹¦¨®É¡A«ö¤@¤U [Àx¦s]¡C

±Ò¥Î¤ù¬q½Æ¼g

¥u¦³²{¦³ªº½Æ¼g¨óij¤W¥i¥H±Ò¥Î¤ù¬q½Æ¼g¡G

  1. ¨Ì<«Ø¥ß½Æ¼g¨óij>©Ò­z«Ø¥ß½Æ¼g¨óij¡A©Î¿ï¾Ü¥ý«e©w¸qªº¨óij¶i¦æ­×§ï¡C
  2. ¨Ì<°±¥Î½Æ¼g¨óij>©Ò­z°±¥Î½Æ¼g¨óij¡C¥²¶·°±¥Î¨óij«á¤~¯à­×§ï¤ù¬q½Æ¼g²ÕºA¡C
  3. ¿ï¾Ü¤w°±¥Îªº¨óij¡A¦A«ö¤@¤U [½s¿è]¡C¦b¥X²{ªº [½Æ¼g¨óij] ¹ï¸Ü¤è¶ô¤¤¿ï¾Ü [½Æ¼gÄÝ©Ê] ¼ÐÅÒ¡C
  4. ¿ï¾Ü [¥u½Æ¼g¤@²ÕÄÝ©Ê] ®Ö¨ú¤è¶ô¡C
  5. ±q¤U©Ô¦¡²M³æ¤¤¿ï¾Ü²{¦³ÄݩʲաA©Î«ö¤@¤U [·s¼W] ©w¸q·sªºÄݩʲաA¦p<©w¸qÄݩʲÕ>©Ò­z¡C±z¤]¥i¥H«ö¤@¤U [ºÞ²z½Æ¼gÄݩʲÕ] ¥HÀ˵ø¤Î­×§ï²{¦³ªºÄݩʲթw¸q¡C
  6. ¤ù¬q½Æ¼g¥u¤¹³\¤@­ÓÄݩʲջP½Æ¼g¨óij²£¥ÍÃöÁp¡C¸ÓÄݩʲÕÀ³¥]§t­n½Æ¼gªº¥¿½TÄݩʲM³æ¡C

  7. ¿ï¾ÜÄݩʲիá¡A«ö¤@¤U [½T©w]¡C¥X²{¸ê°T°T®§´£¿ô±z¤w³]©w¤ù¬q½Æ¼g¡A¥B±z¥²¶·­«·sªì©l¤Æ¥Î¤á½Æ¥»¡C«ö¤@¤U [½T©w] °h¥X°T®§¡C
  8. «ö¤@¤U [±Ò¥Î] ¥H­«·s±Ò¥Î½Æ¼g¨óij¡C
  9. ±z¥i¥Hµø½Æ¼gÄݩʪº¤£¦P¡A¦Ò¼{°±¥Î¥Î¤á¦øªA¾¹¤Wªºµ²ºcÀˬd¡C
  10. ¦pªG¨ä¥L¥D¾÷¤]»P¦¹½Æ¥»¤§¶¡¦³½Æ¼g¨óij¡A±z¥²¶·­«½Æ¦¹µ{§Ç¡A¦b©Ò¦³¨ä¥L¥D¾÷¤W¥Î¬Û¦PªºÄݩʲձҥΤù¬q½Æ¼g¡C
  11. ±z¥²¶·¥ß§Yªì©l¤Æ¥Î¤á½Æ¥»¡A©Î­«·sªì©l¤Æ¤w½Æ¼gªº½Æ¥»¡C½Ð°Ñ¾\¤U¦C<ªì©l¤Æ½Æ¥»>¡C

ªì©l¤Æ½Æ¥»

«Ø¥ß½Æ¼g¨óij«á¡A±z¥²¶·¥ý­«·sªì©l¤Æ¥Î¤á½Æ¥»¡AµM«á½Æ¼g¤~·|¯u¥¿¶}©l¡Cªì©l¤Æ´Á¶¡¡A±z·|¹ê»Ú±N¸ê®Æ±q¨ÑÀ³°Ó½Æ¥»½Æ»s¨ì¥Î¤á½Æ¥»¡C

¬Y¨Ç¿ù»~ª¬ªp©Î²ÕºAÅܧó·|­n¨D±z¥²¶·­«·sªì©l¤Æ½Æ¥»¡C­«·sªì©l¤Æ®É¡A·|§R°£¥Î¤á¤W½Æ¼g§À½Xªº¤º®e¡A¨Ã¥H¥D¾÷¤W§À½Xªº¤º®e¨ú¥N¡C³o¼Ë¥i½T«O½Æ¥»¤§¶¡«O«ù¦P¨B¡A¨Ã¥B¥i¥HÄ~Äò½Æ¼g§ó·s¡C¦Ó¥B¡A¦¹³B©Ò­zªº©Ò¦³ªì©l¤Æ¤èªk³£·|¦Û°Ê­«·s«Ø¥ß¥Î¤á½Æ¥»ªº¯Á¤Þ¡A©Ò¥H¥Î¤á¤w·Ç³Æ¦n¥H³Ì¨Îª¬ºA¦^À³¥Î¤áºÝªºÅª¨ú­n¨D¡C

ªì©l¤Æ®É¾÷

½Æ¥»ªì©l¤Æ¥²¶·¦b¨â­Ó½Æ¥»³£¤w§¹¦¨³]©w¤§«á¡A¥H¤Îµo¥Í¥ô¦ó½Æ¼g¤§«e¶i¦æ¡C¤@¥¹±N§À½X¤¤ªº¸ê®Æ§¹¥þ½Æ»s¨ì¥Î¤á¤§«á¡A¨ÑÀ³°Ó«K¥i¥H¶}©l¦b¥Î¤á¤W­«·s°õ¦æ§ó·s§@·~¡C

¦b¥¿±`§@·~¤U¡Aµ´¤£À³¸Ó­«·sªì©l¤Æ¥Î¤á¡C¦ý¦pªG¦]¬°¥ô¦ó­ì¦]¦Ó±q³Æ¥÷¤¤ÁÙ­ì³æ¤@¥D¾÷½Æ¥»¡A´NÀ³¸Ó­«·sªì©l¤Æ¥¦§ó·sªº©Ò¦³½Æ¥»¡C­Y¬O¦h­«¥D¾÷½Æ¼g¡A«h¤w¸g¥Ñ¨ä¥L¥D¾÷§ó·sªº¥Î¤á¤£¥²­«·sªì©l¤Æ¡C

±z¥i¥H¨Ï¥Î¥D±±¥x¦b½u¤Wªì©l¤Æ½Æ¥»¡A©Î¨Ï¥Î«ü¥O¦æ¤â°Êªì©l¤Æ½Æ¥»¡C¹ï©óªì©l¤Æ¤p¶q¥Î¤áªº§@·~¦Ó¨¥¡A¨Ï¥Î¥D±±¥x¦b½u¤W¶i¦æªì©l¤Æ¬Û·í¤è«K¡C±z¥i¥Hª½±µ±q½Æ¼g¨óij¦b½u¤Wªì©l¤Æ½Æ¥»¡A¦ý¬O¦]¬°¨C­Ó½Æ¥»­n¨Ì§Çªì©l¤Æ¡A©Ò¥H¦¹¤èªk¤£¾A¦X¤j¶q½Æ¥»ªºªì©l¤Æ¡C­Y­n±q³æ¤@ LDIF ÀɮצP®Éªì©l¤Æ¤j¶q¥Î¤á¡A¥Î«ü¥O¦æ¤â°Êªì©l¤Æ¬O¤ñ¸û¦³®Äªº¤èªk¡C

³Ì«á¡A¸gÅçÂ×´IªººÞ²z­û¥i¥H¨Ï¥Î Directory Server 5.2 ·sªº¤G¶i¦ì½Æ»s¥\¯à½Æ»s¥D¾÷©Î¥Î¤á½Æ¥»¡C³o¶µ¥\¯à¦³¤@¨Ç­­¨î¡A¦]¦¹¥u¦³¹ï·¥¤j«¬¸ê®Æ®wÀɮתº½Æ¥» (¨Ò¦p¥]§t´X¦Ê¸U­Ó¶µ¥Øªº½Æ¥») ¤~¦³¹ê¥Î¡B¬Ù®Éªº¥\®Ä¡C

¦b¦h­«¥D¾÷½Æ¼g¤¤ªì©l¤Æ½Æ¥»

¦b¦h­«¥D¾÷½Æ¼gªº±¡ªp¤U¡A±zÀ³¸Ó¨Ì·Ó¤U¦C¶¶§Çªì©l¤Æ½Æ¥»¡G

  1. ½T©w¤w¸g¦³¤@¥x¥D¾÷¾Ö¦³­n½Æ¼gªº§¹¾ã¸ê®Æ¡C¨Ï¥Î¦¹¥D¾÷¡A¦b¨C­Ó¨ä¥L¥D¾÷¤W±N½Æ¥»ªì©l¤Æ¡C
  2. ±q¥D¾÷ªì©l¤Æ¨ä¥Î¤á½Æ¥»¡A©Î±q¥ô¤@¥x¥D¾÷ªº LDIF Àɮתì©l¤Æ¥Î¤á½Æ¥»¡C

¦b¶¥¼h¦¡½Æ¼g¤¤ªì©l¤Æ½Æ¥»

¦b¶¥¼h¦¡½Æ¼gªº±¡ªp¤U¡A½Ð°O¦í¤@©w­n¨Ì·Ó¤U¦C¶¶§Çªì©l¤Æ½Æ¥»¡G

  1. ¦pªG±z¤]¦³¦h­«¥D¾÷½Æ¼g¡A½Ð½T©w¨ä¤¤¤@­Ó¥D¾÷¤w¸g¦³­n½Æ¼gªº§¹¾ã¸ê®Æ¶°¡C¨Ï¥Î¦¹¥D¾÷¡A¦b¨C­Ó¨ä¥L¥D¾÷¤W±N½Æ¥»ªì©l¤Æ¡C
  2. ±q¥D¾÷½Æ¥»ªì©l¤Æ²Ä¤@¼h¶°½u¾¹½Æ¥»¤Wªº½Æ¥»¡C
  3. ¦pªG¦³¦h¼h¶°½u¾¹¡A½Ð±q¤W¤@¼hªì©l¤Æªº¶°½u¾¹¨Ì§Çªì©l¤Æ¨C¤@¼h¡C
  4. ±q³Ì«á¤@¼h¶°½u¾¹½Æ¥»¡Aªì©l¤Æ±M¥Î¥Î¤á¤Wªº½Æ¥»¡C

¦h­«¥D¾÷ªì©l¤Æ«áªº¥æ¶°

¦b¦h­«¥D¾÷½Æ¼gªº±¡ªp¤U¡A·í¬Y¤@¥D¾÷¥¿¦b¶i¦æªì©l¤Æ®É¡A¨ä¥L¥D¾÷¤´¥i¥H³B²zÅܧó§@·~¡C¦]¦¹¡A·íªì©l¤Æ§¹¦¨®É¡A·sªº¥D¾÷¤]¥²¶·±µ¦¬¤£¥]§t¦bªì©l¤Æ¸ê®Æ¤¤ªº·s§ó·s¡C¥Ñ©óªì©l¤Æ¥i¯à»Ý®É¬Æ¤[¡A¦]¦¹ÀÁ¸mªº§ó·s¼Æ¤]¥i¯à¬Û·í¦h¡C

¬°¤FÅý³o¨ÇÀÁ¸m§ó·s¯à°÷¥æ¶°¡A·sªì©l¤Æªº¥D¾÷·|¦Û°Ê±Nªì©l¤Æ«áªº¥Î¤áºÝ§@·~³]¦¨°ßŪ¼Ò¦¡¡C³o¹ï¥ô¦óªì©l¤ÆÃþ«¬³£¾A¥Î¡A¤£½×¬O©ó½u¤W¨Ï¥Î¥D±±¥x¡B±q«ü¥O¦æ³z¹L LDIF ÀɮסB©Î¨Ï¥Î³Æ¥÷°õ¦æ¤G¶i¦ì½Æ»s¡C¦¹¦æ¬°¬O Sun ONE Directory Server 5.2 ¤¤ªº·s¼W¥\¯à¡C

¦]¦¹¦bªì©l¤Æ«á¡A¦h­«¥D¾÷²ÕºA¤¤ªº¥D¾÷±N·|³B²z½Æ¼g§ó·s¡A¨Ã¤¹³\Ū¨ú§@·~¡A¦ý¹ï©ó¨Ó¦Û¥Î¤áºÝªº¼g¤J§@·~«h·|¶Ç¦^Âश¡C±z¥i¥H¦p<¶i¶¥¦h­«¥D¾÷²ÕºA>©Ò­z©w¸qÂश¡C¦b²Å¦X¤U¦C±ø¥ó«á¡A¥D¾÷±N·|¦^´_Ū¼g¼Ò¦¡¡G

  • ±N ds5BeginReplicaAcceptUpdates ²ÕºAÄݩʳ]¬° start¡A¥H©ú½T¤¹³\§ó·s§@·~¡C±Ò¥Î§ó·s¤§«e¡A±zÀ³¸Ó½T»{·s¥D¾÷½Æ¼g¤w¸g»P¨ä¥L¥D¾÷¥æ¶°¡C³o¥i¥H¥Î Directory Server ¥D±±¥x¤Wªº½Æ¼g²ÕºA­±ªO¡A©Î³z¹L«ü¥O¦æ¨Ó§¹¦¨ (½Ð°Ñ¾\¤U¦Cµ{§Ç)¡C
  • ­Y­n¦bªì©l¤Æªº¥D¾÷¤W±Ò¥Î§ó·s¡A«Øij±z±Ä¥Î¤â°Ê¾Þ§@ªº¤è¦¡¡A¦]¬°¥¦¥iÅý±z¦b¤¹³\§ó·s¤§«e½T»{·s¥D¾÷¬O§_»P¨ä¥L¥D¾÷§¹¥þ¦P¨B¡C

  • ¦pªG±z¥ý«e¤w³]©w ds5referralDelayAfterInit ÄÝ©Ê¡A¥D¾÷½Æ¥»±N¦b«ü©w©µ¿ð«á¦Û°Ê¤Á´«¦^¥¿±`ªºÅª¼g¼Ò¦¡¡C¦øªA¾¹¤W¨C­Ó¥D¾÷½Æ¥»ªº¦¹ÄÝ©Ê¥i¥H¿W¥ß³]©w¡C
  • ¦pªG±z¿ï¾Ü³]©w¦¹ÄÝ©Ê¡A±z©Ò¿ï¥Îªº©µ¿ðÀ³¸Ó¥Ã»·¨¬¥HÅý¥D¾÷½Æ¥»¦bªì©l¤Æ«á»P¨ä¥L¥D¾÷¥æ¶°¡C¦¹©µ¿ð·|µø¹w´Áªì©l¤Æªº¤j¤p»Pªø«×¡A¥H¤Î¨ä¥L¥D¾÷¤W¦P®Éµo¥ÍÅܧó³t²vªº¤£¦P¦Ó©Ò¦³®t²§¡C¥D¾÷­Y¦bªì©l¤Æ«á¤´¦b½Æ¼gÅܧ󪺦P®É±µ¨ü§ó·s§@·~¡A¥i¯à·|²£¥ÍµLªk¸ÑÄÀªº¿ù»~¡C¦pªG±z¸I¨ì½Æ¼g¿ù»~¡A½Ð°Ñ¾\¡mSun ONE Directory Server °Ñ¦Ò¤â¥U¡nªºªþ¿ý A<¿ù»~¥N½X>¡C



    ª`·N

    ·í¥D¾÷½Æ¥»¦]¬°³o­Ó·sªº¦æ¬°¦Ó¶Ç°eÂश®É¡Aµ¥­Ô°õ¦æ¼g¤J§@·~ªº¥Î¤áºÝ¥i¯à·|¦]¦¹¦Ó¨ì¹F³]©wªºÅDÂI­­¨î¡C±z¥i¯à¥²¶·´£°ª¥Î¤áºÝªºÅDÂI­­¨î²ÕºA¡AÅý¥¦­Ì¥i¥H³s½u¨ì¥i¥Îªº¥D¾÷¡C¦pªG©Ò¦³¥D¾÷½Æ¥»³£¤wªì©l¤Æ©Î­«·sªì©l¤Æ¡A«h©Ò¦³¼g¤J§@·~±N¦]¬°¨S¦³½Æ¥»±µ¨ü¥Î¤áºÝ§ó·s¦Ó¥¢±Ñ¡C

    ¤£½×¦óºØ±¡ªp¡A±zÀ³¸Óºò±KºÊ±±ªì©l¤Æªº¥D¾÷¡A¨Ã¾A·í³]©wÂशÄÝ©Ê¡AÅý¦øªA¾¹ªº¦^À³¹F¨ì³Ì°ª­­«×¡C



³z¹L¥D±±¥x¶}©l±µ¨ü§ó·s

¦b¦h­«¥D¾÷½Æ¥»ªì©l¤Æ«á¡A°õ¦æ³o¨Ç¨BÆJ¥H©ú½T¤¹³\§ó·s§@·~¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P½Æ¼g§À½Xªº¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¥D±±¥x·|Åã¥Ü°T®§ªí¥Ü½Æ¥»¤wªì©l¤Æ¡A¦Ó¥B¥Ø«e·|¬°§ó·s§@·~¶Ç¦^Âश¡C¦pªG¦¹°T®§ªí¥Ü¤w±Ò¥Î¦Û°ÊÂश©µ¿ð¡A±zÁÙ¬O¥i¥H¨Ì·Ó¦¹µ{§ÇÂмg¸Ó©µ¿ð¡C

  3. ¨Ï¥Î insync ¤u¨ã¥H½T«O½Æ¥»¤w¸g»P©Ò¦³¨ä¥Lªº¥D¾÷¥æ¶°¡C¦pªG©Ò¦³¦øªA¾¹¤W­×§ï¤§¶¡ªº©µ¿ð¬O¹s¡A©Î¦pªG½Æ¥»±q¨Ó¨S¦³¥ô¦óÅܧó»Ý­n½Æ¼g (©µ¿ð¬° -1)¡A«h½Æ¥»¤§¶¡¬°¦P¨B¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\¡mSun ONE Directory Server °Ñ¦Ò¤â¥U¡n²Ä  1 ³¹ªº<insync>¡C
  4. «ö¤@¤U°T®§¥kÃ䪺«ö¶s¡A¥ß§Y¶}©l±µ¨ü§ó·s§@·~¡C

³z¹L«ü¥O¦æ¶}©l±µ¨ü§ó·s

¤U¦C«ü¥O¥i¥Î©ó¦Û°Ê³B²z¦h­«¥D¾÷½Æ¥»ªì©l¤Æªº«ü¥OÀɤº¡A¥HÀˬd¥æ¶°¨Ã©ú½T¤¹³\§ó·s§@·~¡G

  1. ¨Ï¥Î insync ¤u¨ã¥H½T«O½Æ¥»¤w¸g»P©Ò¦³¨ä¥Lªº¥D¾÷¥æ¶°¡C¦pªG©Ò¦³¦øªA¾¹¤W­×§ï¤§¶¡ªº©µ¿ð¬O¹s¡A©Î¦pªG½Æ¥»±q¨Ó¨S¦³¥ô¦óÅܧó»Ý­n½Æ¼g (©µ¿ð¬° -1)¡A«h½Æ¥»¤§¶¡¬°¦P¨B¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\¡mSun ONE Directory Server °Ñ¦Ò¤â¥U¡n²Ä  1 ³¹ªº<insync>¡C
  2. ¥Î¤U¦C«ü¥O­×§ï ds5BeginReplicaAcceptUpdates ²ÕºAÄÝ©Ê¡G
  3. % ldapmodify -h host -p port -D "cn=Directory Manager" -w password
    dn:cn=replica, cn=suffixName, cn=mapping tree, cn=config
    changetype:modify
    add:ds5BeginReplicaAcceptUpdates
    ds5BeginReplicaAcceptUpdates:start
    ^D

ªì©l¤Æ½Æ¥»®É¡A·|¦Û°Ê§R°£ ds5BeginReplicaAcceptUpdates¡A¨Ï±oªì©l¤Æ«á·|¦A¦¸©Úµ´§ó·s§@·~¡C

³]©w¦Û°ÊÂश©µ¿ð

ds5referralDelayAfterInit ²ÕºAÄÝ©Ê·|¨M©w¥ô¦óªì©l¤Æ«á½Æ¥»¶Ç¦^Âशªº¬í¼Æ¡C¦b¦¹©µ¿ð«á¡A½Æ¥»±N¦Û°Ê¶}©l³B²z¨Ó¦Û¥Î¤áºÝªº§ó·s§@·~¡C¦¹ÄݩʬO¨C­Ó½Æ¥»¯S¦³ªº¡A¦Ó¥BÀ³¸Ó®Ú¾Ú<¦h­«¥D¾÷ªì©l¤Æ«áªº¥æ¶°>¤¤©Ò­zªº±ø¥ó¨Ó³]©wÄݩʪº­È¡C

¦pªG¹ïÀ³ªº½Æ¥»³Ìªñ¤wªì©l¤Æ¡A¦Ó¥B¤´¥¼±µ¨ü§ó·s¡A«hÅܧó¦¹ÄݩʭȱN°ÊºA¼vÅT¹ïÀ³ªº½Æ¥»¡C±z¥i¥H­×§ï¦¹¼Æ­È¥H©µªø©ÎÁYµu¶i¦æ¤¤ªº©µ¿ð¡F¦pªG¤w¶W¹L©µ¿ð¡A¦Ó¥B½Æ¥»¥¿¦b±µ¨ü§ó·s¡A«h³]©w¦¹ÄݩʱN¤£·|¦³¥ô¦ó¼vÅT¡C

¦¹Äݩʪº¹w³]­È¬O -1¡Aªí¥Ü½Æ¥»±NµL­­´Á©Úµ´§ó·s§@·~¡C¦b¦¹±¡ªp¤U¡A±z¥i¥H©w¸q©µ¿ð¡A¦b¶W¹L©µ¿ð (¦Ûªì©l¤Æ°_ºâ) ®É¦Û°Ê¤¹³\§ó·s¡C³]©w¤w¶W¹Lªº©µ¿ð±N¨Ï½Æ¥»¥ß§Y¶}©l±µ¨ü§ó·s¡C

  1. ¨Ï¥Î¤U¦C«ü¥O³]©w ds5referralDelayAfterInit ÄÝ©Ê¡G
  2. % ldapmodify -h host -p port -D "cn=Directory Manager" -w password
    dn:cn=replica, cn=suffixName, cn=mapping tree, cn=config
    changetype:modify
    replace:ds5referralDelayAfterInit
    ds5referralDelayAfterInit:seconds
    ^D

¨Ï¥Î¥D±±¥xªì©l¤Æ½Æ¥»

¨Ï¥Î¥D±±¥x¦b½u¤Wªì©l¤Æ½Æ¥»¬Oªì©l¤Æ©Î­«·sªì©l¤Æ¥Î¤á³Ì²³æªº¤èªk¡C¦ý¬O¡A¦pªG±z­nªì©l¤Æ¤j¶q¶µ¥Ø (¶W¹L 1-2 ¦Ê¸U)¡A¦¹³B²z¥i¯à«D±`¯Ó®É¡A±z©Î³\·|ı±o¨Ï¥Î«ü¥O¦æ¶i¦æ¤â°Êªº¥Î¤áªì©l¤Æ¬O¤ñ¸û¦³®Ä²vªº§@ªk (¦p»Ý§ó¦h¸ê°T¡A½Ð°Ñ¾\<±q«ü¥O¦æªì©l¤Æ½Æ¥»>)¡C



ª`·N

¨Ï¥Î¥D±±¥xªì©l¤Æ¥Î¤á½Æ¥»®É¡A§À½X¤Wªº©Ò¦³§@·~ (¥]¬A·j´M) ·|Âश¨ì¥D¾÷¦øªA¾¹¡Aª½¨ìªì©l¤Æ³B²z§¹¦¨¬°¤î¡C



¦b¨Ï¥Î Directory Server ¥D±±¥x®É¡A¨Ï¥Î¤w³]©w¤ù¬q½Æ¼g±N½Æ¥»ªì©l¤Æªº§@·~¬O³z©úªº¡Cªì©l¤Æ¹Lµ{¤¤¡A¥u·|±N¿ï¨úªºÄݩʶǰeµ¹¥Î¤á¡C

°õ¦æ½u¤W½Æ¥»ªì©l¤Æ

­Y­n¨Ï¥Î¥D±±¥xªì©l¤Æ©Î­«·sªì©l¤Æ½Æ¥»¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P¥D¾÷½Æ¥»ªº§À½X¸`ÂI¡AµM«á¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤Åã¥Ü½Æ¼gª¬ºA¸ê°T¡C

  3. ¦b¤w©w¸qªº¨óij²M³æ¤¤¡A¿ï¾Ü»P±z­nªì©l¤Æªº¥Î¤á¹ïÀ³ªº½Æ¼g¨óij¡A¦A«ö¤@¤U [°Ê§@]>[ªì©l¤Æ»·ºÝ½Æ¥»]¡C
  4. ¥X²{½T»{°T®§¡Aĵ§i±z­ì¥ý¤wÀx¦s¦b¥Î¤á¤W½Æ¥»¤¤ªº¥ô¦ó¸ê°T³£±N¿ò¥¢¡C

  5. ¦b½T»{¤è¶ô¤¤«ö¤@¤U [¬O]¡C
  6. ½u¤W¥Î¤áªì©l¤Æ¥ß§Y¶}©l¡C½Æ¼g¨óijªº¹Ï¥ÜÅã¥Ü¬õ¦â¾¦½ü¡Aªí¥Üªì©l¤Æ³B²zªºª¬ºA¡C

  7. «ö¤@¤U [­«·s¾ã²z]>[¥ß§Y­«·s¾ã²z]¡A©Î¿ï¾Ü [­«·s¾ã²z]>[Ä~Äò­«·s¾ã²z]¡A¥H°lÂܥΤáªì©l¤Æªºª¬ºA¡C
  8. ¦b²M³æ¤U¤èªº¤å¦r¤è¶ô¤¤¡A·|¥X²{³Q¤Ï¥ÕÅã¥Ü¤§¨óijªº¥ô¦ó°T®§¡C

¦p»ÝÃö©óºÊ±±½Æ¼g»Pªì©l¤Æª¬ºAªº¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<ºÊ±±½Æ¼gª¬ºA>¡C

±q«ü¥O¦æªì©l¤Æ½Æ¥»

¹ï©ó½Æ¼g·¥¤j¶q¶µ¥Øªº³¡¸p¦Ó¨¥¡A¨Ï¥Î«ü¥O¦æ¤â°Êªì©l¤Æ½Æ¥»¬O¥Î¤áªì©l¤Æ³Ì§Ö³tªº¤èªk¡C¤Z¬O¦]¬°®Ä¯à¦Ò¶q¦Ó¤£¾A¦X±Ä¥Î½u¤Wµ{§Ç®É¡A«Øij§¡¥i¨Ï¥Î¤â°Ê³B²z¡C¦ý¬O¡A¤â°Ê¥Î¤áªì©l¤Æ³B²z¤ñ½u¤W¥Î¤áªì©l¤Æ³B²z½ÆÂø³\¦h¡C

­Y­n¤â°Êªì©l¤Æ©Î­«·sªì©l¤Æ½Æ¥»¡A±z¥²¶·¥ý±N§À½X¸ê®Æªº­ì©l½Æ¥»¶×¥X¨ì LDIF ÀɮסC¦pªG­nªì©l¤Æ¤ù¬q½Æ¥»¡A±zÀ³¸Ó¿z¿ïÀɮסA¥u«O¯d½Æ¼gªºÄÝ©Ê¡CµM«á±N¸ÓÀɮ׶ǿé¨ì©Ò¦³¥Î¤á¦øªA¾¹¡A¦A¶i¦æ¶×¤J¡C¦b¦h­«¥D¾÷½Æ¼g³¡¸p¤¤¡A±z¥i¥H¥Î±q­ì©l¥D¾÷¶×¥Xªº LDIF ÀɮרӪì©l¤Æ¨ä¥L¥D¾÷»P¥ô¦ó¥Î¤á¡C¦b¶¥¼h¦¡½Æ¼gÀô¹Ò¤¤¡A±z¥i¥H¥Î¦P¤@­ÓÀɮתì©l¤Æ¶°½u¾¹½Æ¥»»P¨ä¥Î¤á¡C

¤£½×¥ô¦óª¬ªp¡A±z³£¥²¶·±q³]©wªº¥D¾÷½Æ¥»¶×¥Xªº LDIF Àɮ׶}©l¡C±zµLªk¨Ï¥Î¥ô·Nªº LDIF ¨Óªì©l¤Æ©Ò¦³½Æ¥»¡A¦]¬°¥ô·NÀɮפ¤¤£¥]§t½Æ¼g¸ê®Æ¡C±z¥²¶·¥ý±N±zªº LDIF Àɮ׶פJ¥D¾÷½Æ¥»¡A¦A¥Î¤U¦Cµ{§Ç±N¥¦¶×¥X¡C

¶×¥X½Æ¥»¨ì LDIF

±z¥i¥H¥Î db2ldif -r ©Î db2ldif.pl -r «ü¥O±N½Æ¥»¤º®eÀx¦s¦b LDIF Àɮפ¤¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<±q«ü¥O¦æ¶×¥X¦Ü LDIF >¡C±z¥²¶·¨Ï¥Î³o¨Ç«ü¥Oªº -r ¿ï¶µ¨Ó¶×¥X½Æ¥»¡C

¤U¦C½d¨Ò·|±N¾ã­Ó dc=example,dc=com ½Æ¥»¶×¥X¨ì¦W¬° example_master.ldif ªºÀɮסG

Solaris ®M¸Ë³nÅé

# /usr/sbin/directoryserver stop
# /usr/sbin/directoryserver db2ldif -r -s "dc=example,dc=com" \
  -a /var/ds5/slapd-serverID/ldif/example_master.ldif
# /usr/sbin/directoryserver start

¨ä¥L¦w¸Ë

# ServerRoot/slapd-serverID/stop-slapd
# ServerRoot/slapd-serverID/db2ldif -r -s "dc=example,dc=com" \
  -a ServerRoot/slapd-serverID/ldif/example_master.ldif
# ServerRoot/slapd-serverID/start-slapd

µM«á±z¥i¥Hµø»Ý­n¿z¿ï LDIF ÀɮסA¨Ã±N¥¦¶Ç¿é¨ì¥Î¤á¥D¾÷¡A¥Hªì©l¤Æ¥Î¤á½Æ¥»¡C

¿z¿ï¤ù¬q½Æ¼gªº LDIF ÀÉ®×

¦pªG±z¤w³]©w¤ù¬q½Æ¼g¡A±zÀ³¸Ó¥ý±N¥ô¦ó¤£¥ÎªºÄÝ©Ê¿z¿ï±¼¡A¦A±N¶×¥Xªº LDIF Àɮ׽ƻs¨ì¥Î¤á¦øªA¾¹¡C°w¹ï³o­Ó¥Î³~¡ADirectory Server ´£¨Ñ¤F fildif ¤u¨ã¡C¦¹¤u¨ã·|¿z¿ï«ü©wªº LDIF ÀɮסA¥u«O¯d½Æ¼g¨óij¤¤©w¸qªºÄݩʲթҤ¹³\ªºÄÝ©Ê¡C

¦¹¤u¨ã·|Ū¨ú¦øªA¾¹ªº²ÕºA¡A¥H¨M©wÄݩʲթw¸q¡C¬°¤FŪ¨ú²ÕºAÀÉ¡A±z¥²¶·¥H root °õ¦æ fildif ¤u¨ã¡C¨Ò¦p¡A¤U¦C«ü¥O·|¿z¿ï±q¤W­z½d¨Òªº dc=example,dc=com §À½X¤¤¶×¥XªºÀɮסG

# CAMUS=/var/Sun/mps/slapd-camus
# /var/Sun/mps/shared/bin/fildif \
-i $CAMUS/ldif/example_master.ldif \
-o $CAMUS/ldif/filtered.ldif -c $CAMUS/config/dse.ldif \
-b "cn=rousseau.example.com:389, cn=replica, \
cn=dc=example\âdc=com, cn=mapping tree, cn=config"

-i »P -o ¿ï¶µ¤À§O¥Nªí¿é¤JÀÉ»P¿é¥XÀÉ¡C-c ¿ï¶µ¬O¥]§t½Æ¼g¨óij¤ÎÄݩʲթw¸qªº²ÕºAÀÉ¡Cdse.ldif Àɮ׬OÀx¦s cn=config ¶µ¥Ø¤º®e (¥]¬A½Æ¼g¨óij»PÄݩʲÕ) ªº¦øªA¾¹©Ò¦b¦ì¸m¡C

-b ¿ï¶µ¬O©w¸q¤ù¬q½Æ¼g¤§½Æ¼g¨óijªº DN¡C¦b Directory Server ¥D±±¥x¤¤¥H¥Ø¿ýºÞ²z­ûªº¨­¥÷ÂsÄý cn=config §À½X¡A§Y¥i§ä¨ì¦¹¶µ¥Ø¡C½Ð¿ï¾Ü§À½X¤U¤èªº cn=replica ¶µ¥Ø¡A¨Ã¨Ï¥Î [½s¿è]>[½Æ»s DN] ¥\¯àªí¶µ¥Ø±N¦¹ DN ½Æ»s¨ì°Å¶Kï¡A¥H«K¦b¿é¤J«ü¥O®É¨Ï¥Î¡C

fildif ¤u¨ãªº§¹¾ã«ü¥O¦æ»yªk¥i¨£©ó¡mSun ONE Directory Server °Ñ¦Ò¤â¥U¡n²Ä 1 ³¹ªº<LDIF «ü¥O¦æ¤½¥Îµ{¦¡>¤¤¡C

±µµÛ±z¥i¥H¨Ï¥Î fildif ©Ò²£¥Íªº filtered.ldif ÀɮסA±N¦¹½Æ¼g¨óij¤¤ªº¥Î¤áªì©l¤Æ¡C±NÀɮ׶ǿé¨ì¥Î¤á¦øªA¾¹¡A¦A¨Ì¤U¤@¸`ªº»¡©ú¶×¤JÀɮסC

¶×¤J LDIF Àɮרì¥Î¤á½Æ¥»

±z¥i¥H§Q¥Î Directory Server ¥D±±¥x¤¤ªº¶×¤J¥\¯à±N¥]§t¥D¾÷½Æ¥»¤º®eªº LDIF Àɮ׶פJ¥Î¤á½Æ¥»¡A¤]¥i¥H¨Ï¥Î ldif2db «ü¥O©Î ldif2db.pl «ü¥OÀÉ (¦b Solaris ®M¸Ë³nÅé¤W¬O directoryserver ldif2db ©Î directoryserver ldif2db-task) °õ¦æ¶×¤J¡C´N¦p©Ò¦³¶×¤J§@·~¤@¼Ë¡A³o¨Ç«ü¥OÀɻݭn¥Ø¿ýºÞ²z­ûªº³sµ² DN »P±K½X¤~¯à°õ¦æ¶×¤J¡C¦b<±q«ü¥O¦æ¶×¤J LDIF >¤¤·|»¡©ú¶×¤Jªº¤èªk¡C

¤U¦C½d¨ÒÅã¥Ü¦p¦ó¶×¤J LDIF ÀɮסA¥Hªì©l¤Æ dc=example,dc=com ¥Î¤á½Æ¥»¡G

Solaris ®M¸Ë³nÅé

# /usr/sbin/directoryserver stop
# /usr/sbin/directoryserver ldif2db -s "dc=example,dc=com" \
  -i example_master.ldif
# /usr/sbin/directoryserver start

¨ä¥L¦w¸Ë

# ServerRoot/slapd-serverID/stop-slapd
# ServerRoot/slapd-serverID/ldif2db -s "dc=example,dc=com" \
  -i example_master.ldif
# ServerRoot/slapd-serverID/start-slapd

¨Ï¥Î ldif2db.pl «ü¥OÀɤ§«e¤£¥²¥ý°±¤î¦øªA¾¹¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\¡mSun ONE Directory Server °Ñ¦Ò¤â¥U¡n²Ä 2 ³¹ªº<ldif2db.pl>¡C

¨Ï¥Î¤G¶i¦ì½Æ»sªì©l¤Æ½Æ¥»

Directory Server 5.2 ·sªº¤G¶i¦ì½Æ»s¥\¯à·|½Æ»s¾ã­Ó¦øªA¾¹¡A¤èªk¬O¨Ï¥Î¨Ó¦Û¬Y³¡¦øªA¾¹ªº¤G¶i¦ì³Æ¥÷ÀɮרÓÁÙ­ì¥t¤@³¡¦øªA¾¹¤W¬Û¦Pªº¥Ø¿ý¤º®e¡C¦¹¶i¶¥¥\¯à·|»P¥Ø¿ý¦øªA¾¹ªº¸ê®Æ®wÀɮפ¬°Ê¡A¦Ó¥B¶È¾A¦X¸gÅçÂ×´IªººÞ²z­û¨Ï¥Î¡C

¤G¶i¦ì½Æ»sªº­­¨î

¦]¬°¤G¶i¦ì½Æ»s¥\¯à·|±N¸ê®Æ®wÀÉ®×±q¤@¥x¹q¸£·h²¾¨ì¥t¤@¥x¹q¸£¡A©Ò¥H³o¶µ¾÷¨î¦³¤U¦CÄY®æªº­­¨î¡G

  • ¨â¥x¹q¸£¥²¶·¨Ï¥Î¬Û¦PªºµwÅé¤Î¬Û¦Pªº§@·~¨t²Î¡A¥]¬A¥ô¦ó Service Pack ©Î­×¸ÉÀɮסC
  • ¨â¥x¹q¸£¥²¶·¤w¦w¸Ë¬Û¦Pª©¥»ªº Directory Server¡A¥]¬A¤G¶i¦ìÀÉ®×½X®æ¦¡ (32 ¦ì¤¸©Î 64 ¦ì¤¸)¡BService Pack ©Î­×¸ÉÀɮ׶¥¼h¡C
  • ¨â¥x¹q¸£¥²¶·¾Ö¦³¤À³Î¦¨¬Û¦P§À½Xªº¬Û¦P¾ðª¬¥Ø¿ý¡C©Ò¦³§À½Xªº¸ê®Æ®wÀÉ®×¥²¶·¤@°_½Æ»s¡AµLªk½Æ»s­Ó§O§À½X¡C
  • ¨C­Ó§À½X¦b¨â³¡¦øªA¾¹¤W¥²¶·³]©w¬Û¦Pªº¯Á¤Þ¡A¥]¬A VLV (virtual list view¡AµêÀÀ²M³æÀ˵ø) ¯Á¤Þ¡C§À½Xªº¸ê®Æ®w¥²¶·¾Ö¦³¬Û¦P¦WºÙ¡C
  • §Y±N½Æ»sªº Directory Server ¥²¶·¤£¥]§t o=NetscapeRoot §À½X¡A¦]¬°³oªí¥Ü¥¦µLªk§@¬° Sun ONE Administration Server ªº²ÕºA¥Ø¿ý¡C
  • ¨C³¡¦øªA¾¹¥²¶·±N¬Û¦Pªº§À½X³]¦¨½Æ¥»¡A¦Ó¥B½Æ¥»¦b¨â³¡¦øªA¾¹¤W¥²¶·¨ã³Æ¬Û¦Pªº¨¤¦â (¥D¾÷¡B¶°½u¾¹©Î¥Î¤á)¡C¦pªG¤w³]©w¤ù¬q½Æ¼g¡A©Ò¦³¥D¾÷¦øªA¾¹¤Wªº³]©w¥²¶·§¹¥þ¤@­P¡C
  • ¥ô¤@³¡¦øªA¾¹¤W³£¤£¯à¨Ï¥ÎÄÝ©Ê¥[±K¡C
  • ­Y¤w±Ò¥ÎÄݩʭȰߤ@©Ê¥~±¾µ{¦¡¡A¦¹¥~±¾µ{¦¡¦b¨â³¡¦øªA¾¹¤W¥²¶·¾Ö¦³¬Û¦Pªº²ÕºA¡A¦Ó¥B¥²¶·¦b·sªº½Æ¥»¤W­«·s³]©w (¦p¤U¦Cµ{§Ç©Ò­z)¡C

¦b¤W­z±ø¥ó¤U¡A±z¥i¥H±q¤@³¡¥D¾÷¦øªA¾¹ªº¤G¶i¦ì½Æ¥»ªì©l¤Æ©Î­«·sªì©l¤Æ¥t¤@³¡¥D¾÷¦øªA¾¹¡A©Î±q¤@³¡¥Î¤á¦øªA¾¹ªº¤G¶i¦ì½Æ¥»ªì©l¤Æ©Î­«·sªì©l¤Æ¥t¤@³¡¥Î¤á¦øªA¾¹¡C¤U¦C¨â­Óµ{§Ç»¡©ú°õ¦æ¤G¶i¦ì½Æ»sªº´À¥N¤èªk¡A¤@­Ó¤èªk¤£»Ý­n°±¤î¦øªA¾¹¡A¥t¤@­Ó¤èªk¨Ï¥Î³Ì¤pªººÏºÐªÅ¶¡¡C

¤£°±¤î¦øªA¾¹ªº¤G¶i¦ì½Æ»s

°õ¦æ¤G¶i¦ì½Æ»s®É¡A«Øij±z¨Ï¥Î¥H¤Uµ{§Ç¡A¦]¬°¥¦¨Ï¥Î¥¿±`ªº³Æ¥÷¥\¯à¨Ó«Ø¥ß¦øªA¾¹¸ê®Æ®wÀɮתº½Æ¥»¡C°õ¦æ¥¿±`³Æ¥÷¥i½T«O©Ò¦³¸ê®Æ®wÀɮ׳£«O«ù³s³eªºª¬ºA¡A¤£»Ý­n°±¤î¦øªA¾¹¡C

¦ý¬O¦¹µ{§Ç¦³¬Y¨Ç­­¨î¡A±zÀ³¸Ó¦C¤J¦Ò¶q¡C³Æ¥÷»PÁÙ­ì§@·~·|¦b¦P¤@¥x¹q¸£¤W«Ø¥ß¸ê®Æ®wÀɮתº½Æ¥»¡A¦]¦¹¨C¥x¹q¸£¤W¥Ñ³o¨ÇÀɮצû¥ÎªººÏºÐªÅ¶¡·|Åܦ¨¨â­¿¡C¦¹¥~¡A¦pªG±zªº¥Ø¿ý¥]§t¼Æ­Ó GB ªº¸ê®Æ¡A³o¨ÇÀÉ®×¹ê»Úªº½Æ»s§@·~¥i¯à¯Ó¶O¥iÆ[ªº®É¶¡¡C¦pªG±zªººÏºÐªÅ¶¡¦³­­¡A©Î±zªº¸ê®Æ®wÀÉ®×·¥¤j¡A½Ð°Ñ¾\<¨Ï¥Î³Ì¤pºÏºÐªÅ¶¡ªº¤G¶i¦ì½Æ»s>¡C

  1. ¦b·s½Æ¥»ªº¥Ø¼Ð¾÷¾¹¤W¦w¸Ë Directory Server¡Aµø»Ý­n«Ø¥ß¦øªA¾¹ªº·s¹ê¨Ò¡AµM«á¦A®Ú¾Ú<¤G¶i¦ì½Æ»sªº­­¨î>¨Ó³]©w¡C
  2. ¦b±z¯A¤Î¦¹½Æ¥»ªº½Æ¼g©Ý¼³¤¤«Ø¥ß©Ò¦³ªº½Æ¼g¨óij¡C³o·|¥]¬A±q¨ÑÀ³°Ó¨ì¦¹½Æ¥»ªº¨óij¡A¦pªG¤£¬O±M¥Î¥Î¤á¡A«h¬°±q¦¹½Æ¥»¨ì¨ä¥Î¤áªº¨óij¡C
  3. ¿ï¾Ü¤@­Ó»P­nªì©l¤Æªº½Æ¥»¬Û¦PÃþ«¬ (¥i¯à¬°¥D¾÷¡B¶°½u¾¹©Î¥Î¤á)¡B¦Ó¥B¤w§¹¥þ³]©w¨Ãªì©l¤Æªº§À½X¡A¨Ã®Ú¾Ú<¨Ï¥Î¥D±±¥x³Æ¥÷±zªº¦øªA¾¹>¤¤ªºµ{§Ç¦b¦¹§À½X¤W°õ¦æ¥¿±`³Æ¥÷¡C
  4. ±NÀÉ®×±q³Æ¥÷¥Ø¿ý½Æ»s©Î¶Ç¿é¨ì¥Ø¼Ð¹q¸£¤Wªº¥Ø¿ý¡A¨Ò¦p¨Ï¥Î ftp «ü¥O¡C
  5. ®Ú¾Ú<±q³Æ¥÷ÁÙ­ì¸ê®Æ>¤¤ªºµ{§Ç±NÀɮ׸ü¤J¥Ø¼Ð¦øªA¾¹¡C
  6. ¦pªG±z¤wªì©l¤Æ¦h­«¥D¾÷½Æ¼g®×¨Ò¤¤ªº·s¥D¾÷¡A½Ð¨Ì·Ó<¦h­«¥D¾÷ªì©l¤Æ«áªº¥æ¶°>¤¤ªºµ{§Ç¶i¦æ¡A¥H½T«O·sªº½Æ¥»±N¶}©l±µ¨ü¨Ó¦Û¥Î¤áºÝªº§ó·s§@·~¡C

¨Ï¥Î³Ì¤pºÏºÐªÅ¶¡ªº¤G¶i¦ì½Æ»s

¤U¦Cµ{§Ç¨Ï¥Î¸û¤ÖªººÏºÐªÅ¶¡¤Î¸ûµuªº®É¶¡¡A¦]¬°¥¦¤£¥²¬°¸ê®Æ®wÀÉ®×»s§@³Æ¥÷¡C¦ý¬O¥¦·|­n¨D±z°±¤î³Q½Æ»sªº¦øªA¾¹¡A¥H½T«O¸ê®Æ®wÀɮ׳B©ó³s³eªºª¬ºA¡C



¤p¤ß

¦¹µ{§Ç¤£¥i¥Î©ó­«·sªì©l¤Æ¤w°Ñ»P¦h­«¥D¾÷½Æ¼g®×¨Òªº¥D¾÷¡C¥¦¥u¥i¥Î©ó­«·sªì©l¤Æ¥Î¤á¦øªA¾¹¡A©Îªì©l¤Æ·sªº¥D¾÷¦øªA¾¹¡C­Y­n­«·sªì©l¤Æ²{¦³ªº¥D¾÷½Æ¥»¡A½Ð¨Ï¥Î½u¤Wªì©l¤Æ¡B¶×¤J LDIF ÀɮשΨ̷Ó<¤£°±¤î¦øªA¾¹ªº¤G¶i¦ì½Æ»s>µ{§Ç°õ¦æ¡C



  1. ¦b·s½Æ¥»ªº¥Ø¼Ð¾÷¾¹¤W¦w¸Ë Directory Server¡Aµø»Ý­n«Ø¥ß¦øªA¾¹ªº·s¹ê¨Ò¡AµM«á¦A®Ú¾Ú<¤G¶i¦ì½Æ»sªº­­¨î>¨Ó³]©w¡C
  2. ¦b±z¯A¤Î¦¹½Æ¥»ªº½Æ¼g©Ý¼³¤¤«Ø¥ß©Ò¦³ªº½Æ¼g¨óij¡C³o·|¥]¬A±q¨ÑÀ³°Ó¨ì¦¹½Æ¥»ªº¨óij¡A¦pªG¤£¬O±M¥Î¥Î¤á¡A«h¬°±q¦¹½Æ¥»¨ì¨ä¥Î¤áªº¨óij¡C
  3. °±¤î§Y±Nªì©l¤Æ©Î­«·sªì©l¤Æªº¥Ø¼Ð¦øªA¾¹¡A¦p<±Ò°Ê©M°±¤îDiectory Server>©Ò­z¡C
  4. ¿ï¾Ü¤@­Ó»P­nªì©l¤Æªº½Æ¥»¬Û¦PÃþ«¬ (¥i¯à¬°¥D¾÷¡B¶°½u¾¹©Î¥Î¤á)¡B¦Ó¥B¤w§¹¥þ³]©w¨Ãªì©l¤Æªº½Æ¥»¡A¨Ã°±¤î¦¹¦øªA¾¹¡C¦pªG­n½Æ»s¦h­«¥D¾÷²ÕºA¤¤ªº¥D¾÷½Æ¥»¡A¦b°±¤î¥D¾÷¤§«e±zÀ³¸Ó½T©w¸Ó¥D¾÷¤w¸g§¹¥þ§ó·s¬°¨Ó¦Û¨ä¥L¥D¾÷ªº³Ì·sÅܧó¡C
  5. ±N©Ò¦³¸ê®Æ®wÀÉ®× (¥]¬A¥æ©ö°O¿ý) ±q¨Ó·½½Æ¥»¹q¸£½Æ»s©Î¶Ç¿é¨ì¥Ø¼Ð¹q¸£¡A¨Ò¦p¨Ï¥Î ftp «ü¥O¡C°£«DÀɮתº¦ì¸m³Q§ó§ï¡A§_«h¸ê®Æ®wÀÉ®×»P¥æ©ö°O¿ýÀ³¦ì©ó ServerRoot/slapd-serverID/db ¥Ø¿ý¡C
  6. ¦pªG­nªì©l¤Æ¥D¾÷©Î¶°½u¾¹½Æ¥»¡A±z¥²¶·½Æ»sÅܧó°O¿ý¤º©Ò¦³ªºÀɮסA³o¨ÇÀÉ®×¹w³]¦ì©ó ServerRoot/slapd-serverID/changelog ¥Ø¿ý¡C

  7. ­«·s±Ò°Ê¨Ó·½»P¥Ø¼Ð¦øªA¾¹¡C

±Ò¥Î°Ñ¦Ò§¹¾ã©Ê¥~±¾µ{¦¡

¦pªG±z­n¨Ï¥Î°Ñ¦Ò§¹¾ã©Ê¥~±¾µ{¦¡¡A±z¥²¶·¦b©Ò¦³¥D¾÷¦øªA¾¹¤W±Ò¥Î¦¹¥~±¾µ{¦¡¡A¦ý¤£¥²¦b¶°½u¾¹©Î¥Î¤á¦øªA¾¹¤W±Ò¥Î¦¹¥~±¾µ{¦¡¡C½Ð°Ñ¾\<±N°Ñ¦Òªº§¹¾ã©Ê¥Î©ó½Æ¼g>¡C

³z¹L SSL ½Æ¼g

±z¥i¥H³]©w¯A¤Î½Æ¼gªº Directory Server¡AÅý©Ò¦³½Æ¼g§@·~³£³z¹L SSL ³s½u¤W¶i¦æ¡C­Y­n°µ¦¹³]©w¡A½Ð§¹¦¨¤U¦C¨BÆJ¡G

  1. ±N¨ÑÀ³°Ó»P¥Î¤á¦øªA¾¹³£³]©w¬°¨Ï¥Î SSL¡C
  2. ¦p»Ý¸Ô²Ó¸ê®Æ¡A½Ð°Ñ¾\²Ä 11 ³¹<°õ¦æ¦w¥þ©Ê>¡C



    ª`·N

    ¨t²ÎµLªk³z¹L SSL ½Æ¼g¶i¦æ½Æ¼g¡A¦]¬°¨ÑÀ³°Ó¦øªA¾¹¾ÌÃÒ¬O¡G

    • ¦Û§Úñ¸pªº¾ÌÃÒ¡C
    • ¶È­­©ó SSL ¦øªA¾¹ªº¾ÌÃÒ¡AµLªk¦b SSL «H¸¹¥æ´«´Á¶¡§@¬°¥Î¤áºÝ¡C


  3. ¦pªG¥Î¤á¦øªA¾¹¤Wªº§À½X¥¼³]©w½Æ¼g¡A½Ð¨Ì·Ó<±Ò¥Î¥Î¤á½Æ¥»>©Ò­z±Ò¥Î½Æ¼g¡C
  4. ¨Ì·Ó<¶i¶¥¥Î¤á²ÕºA>¤¤ªºµ{§Ç±N¥Î¤á¤W¾ÌÃÒ¶µ¥Øªº DN ©w¸q¬°¥t¤@­Ó½Æ¼gºÞ²z­û¡C
  5. ¦pªG¨ÑÀ³°Ó¦øªA¾¹¤Wªº§À½X¥¼³]©w½Æ¼g¡A½Ð¨Ì·Ó<±Ò¥Î¶°½u¾¹½Æ¥»>©Î<±Ò¥Î¥D¾÷½Æ¥»>©Ò­z±Ò¥Î½Æ¼g¡C
  6. ¦b¨ÑÀ³°Ó¦øªA¾¹¤W¡A«Ø¥ß·sªº½Æ¼g¨óij¡A¨Ï§ó·s³z¹L¦w¥þ SSL ³s±µ°ð¶Ç°eµ¹¥Î¤á¡C¦p»Ý¸Ô²Ó»¡©ú¡A½Ð¨Ì·Ó<«Ø¥ß½Æ¼g¨óij>¤¤ªºµ{§Ç¶i¦æ¡C«ü©w¥Î¤á¦øªA¾¹¤Wªº¦w¥þ³s±µ°ð¡A¨Ã¿ï¾Ü¨Ï¥Î±K½X©Î¾ÌÃÒªº SSL ¿ï¶µ¡C¿é¤J±z©Ò¿ï¤§ SSL ¿ï¶µ (½Æ¼gºÞ²z­û©Î¾ÌÃÒ) ªº DN¡C

§¹¦¨³]©w½Æ¼g¨óij«á¡A¨ÑÀ³°Ó·|³z¹L SSL ±N©Ò¦³½Æ¼g§ó·s°T®§¶Ç°eµ¹¥Î¤á¡A¨Ã¥B¨Ï¥Î¾ÌÃÒ (¦pªG±z¿ï¾Ü¸Ó¿ï¶µ)¡C¦pªG«È¤áªì©l¤Æ¬O³z¹L¥D±±¥x¨Ï¥Î³]©w SSL ªº¨óij¨Ó°õ¦æ¡A«h«È¤áªì©l¤Æ¤]·|¨Ï¥Î¦w¥þ³s½u¡C

³z¹L WAN ½Æ¼g

Sun ONE Directory Server 5.2 ¤Þ¶i¤F°õ¦æ©Ò¦³½Æ¼g§Î¦¡ªº¥\¯à¡A¥]¬A³z¹L¼s°ìºô¸ô (WAN) ©Ò³s±µ¹q¸£¤§¶¡ªº¦h­«¥D¾÷½Æ¼g (MMR)¡C½Æ¼g¾÷¨î¸g¹L¤º³¡§ï¨}«á¡A¯àÅý¨ÑÀ³°Ó¦øªA¾¹³z¹L§ó°ª©µ¿ð¤Î§ó§CÀW¼eªººô¸ô¡A¦b¦X²zªº©µ¿ð¤ºªì©l¤Æ¤Î§ó·s¥Î¤á¡C



ª`·N

¹ê»Úªº½Æ¼g©µ¿ð»P§ó·s®Ä¯à¶·µø³\¦h¦]¯À¦Ó©w¡A¥]¬A (¦ý¤£­­©ó)¡G­×§ï²v¡B¶µ¥Ø¤j¤p¡B¦øªA¾¹µwÅé¡B¥­§¡©µ¿ð¤Î¥­§¡ÀW¼e¡C¦pªG±z¹ï¤u§@Àô¹Ò¤¤ªº½Æ¼g¦³ºÃ°Ý¡A½ÐÁpµ¸±zªº Sun ±M·~ªA°È¥Nªí¡C



½Æ¼g¾÷¨îªº¤º³¡°Ñ¼Æ¨Ì¹w³]­È«K¯à¦b WAN Àô¹Ò¤¤¦³³Ì¨Î®Ä¯à¡A¦ý¦pªG±z¦]¬°¤W­z¦]¯À¦Ó¦³½Æ¼g½wºCªº°ÝÃD¡A±z©Î³\·Q­n¸ÕµÛ½Õ¾ãµøµ¡¤j¤p©M¸s²Õ¤j¤p°Ñ¼Æ¡C±z¤]¥i¥H±Æ©w½Æ¼gªº®Éµ{¡A¥HÁ׶}ºô¸ô¦y®p®É¶¡¡A¦]¦Ó§ï¶i¾ãÅ骺ºô¸ô¨Ï¥Î±¡§Î¡C³Ì«á¡ASolaris ©M Linux ¥­¥x¤Wªº Directory Server ¤ä´©½Æ¼g¸ê®ÆÀ£ÁY¥H³Ì¨Î¤ÆÀW¼eªº¨Ï¥Î¡C

³]©wºô¸ô°Ñ¼Æ

¤U¦C¨â­Ó°Ñ¼Æ·|¨M©w½Æ¼g¾÷¨î¦p¦ó±N¶µ¥Ø¶°¦X¦¨¸s²Õ¡A¥H§ó¦³®Ä²v¦a³z¹Lºô¸ô¶Ç°e¡A³o¨â­Ó°Ñ¼Æ·|¼vÅT¨ÑÀ³°Ó»P¥Î¤á¥æ´«½Æ¼g§ó·s°T®§¤Î»{¥iªº¤è¦¡¡C

  • µøµ¡¤j¤p (¹w³]­È¬O 10) - ¥Nªí¥Î¤á¤£»Ý¥ß§Y»{¥i«K¯à¶Ç°e¤§§ó·s°T®§¼Æªº³Ì¤j­È¡C¦b WAN Àô¹Ò¤¤¡A¤@¦¸¶Ç°e³\¦h°T®§¸û¨C¦¸¶Ç°e°T®§«áµ¥«Ý»{¥i¶Ç¦^§ó¦³®Ä²v¡C
  • ¸s²Õ¤j¤p (¹w³]­È¬O 1) - ¥Nªí¥i¥]®¹¦¨³æ¤@§ó·s°T®§¤§¸ê®Æ­×§ï¼Æªº³Ì¤j­È¡Cµø¸ê®Æ¤j¤p»Pºô¸ôÄݩʪº¤£¦P¡A¶Ç°e¸û¤j°T®§¥i¯à·|§ó¦³®Ä²v¡A¦]¦¹·|¦³¸û¤jªº¸s²Õ¤j¤p¡C

¹w³]­È¹ï¤j³¡¥÷±¡ªp³£¬O³Ì¾A¦Xªº³]©w¡C¦ý¦pªG±z¦³²§±`¤j©Î²§±`¤pªº¥Ø¿ý¶µ¥Ø¡A©Î¦pªG­n½Æ¼gªº­×§ï²v·¥°ª¡A±z¥i¯à·Q­×§ï³o¨Ç°Ñ¼Æ¡A¥H´ú¸Õ³o¨Ç°Ñ¼Æ¹ï³z¹L WAN ªº½Æ¼g®Ä¯à¦³¦ó¼vÅT¡C

³o¨â­Óºô¸ô°Ñ¼Æ¦b¨C­Ó½Æ¼g¨óij¤¤§¡¥i³]©w¡AÅý±z¥i¥H®Ú¾Ú¨C­Ó¥Î¤á¯S¦³ªººô¸ô±ø¥ó¦Û­q½Æ¼g®Ä¯à¡C

±z¤£¥²¤¤Â_½Æ¼g§Y¥i­×§ïµøµ¡¤Î¸s²Õ¤j¤p°Ñ¼Æ¡G

  1. ¿ï¾Ü Directory Server ¥D±±¥x¤Wªº [²ÕºA] ¼ÐÅÒ¡A®i¶} [¸ê®Æ] ¸`ÂI»P½Æ¼g§À½Xªº¸`ÂI¡C
  2. ½Ð¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡A¨Ã¦b¥kµ¡®æ¤¤¿ï¾Ü±z·Q­n³]©wªº½Æ¼g¨óij¡A¦A«ö¤@¤U [½s¿è]¡C
  3. ¿ï¾Ü [½Æ¼g¨óij] ¹ï¸Ü¤è¶ôªº [ºô¸ô] ¼ÐÅÒ¡A¿é¤J·sªºµøµ¡¤j¤p­È (½d³ò¤¶©ó 1 ¨ì 1000 ¤§¶¡)¡A»P¸s²Õ¤j¤p­È (½d³ò¤¶©ó 1 ¨ì 100 ¤§¶¡)¡C¸s²Õ¤j¤p¥²¶·¤p©ó©Îµ¥©óµøµ¡¤j¤p¡C
  4. «ö¤@¤U [½T©w]¡AÀx¦s·s­È¨ÃÃö³¬ [½Æ¼g¨óij] ¹ï¸Ü¤è¶ô¡C
  5. ·sªº°Ñ¼Æ­È¦b¤U¤@¦¸±N½Æ¼g§ó·s¶Ç°e¨ì¹ïÀ³ªº¥Î¤á®É¡A·|¥ß§Y¥Í®Ä¡C

±Æµ{½Æ¼g¬¡°Ê

¦pªG½Æ¥»¤§¶¡ªº¥ß§Y¦P¨B¤Æ¤£¬O¨º»ò«æ­¢¡A«h³z¹L WAN ½Æ¼g¸ê®Æªº¨ä¤¤¤@ºØ¤è¦¡«K¬O±N§ó·s±Æµ{¦bºô¸ô¨Ï¥Î¸û¤£ÀWÁc®É¶i¦æ¡C·íºô¸ô¥i¥Î²v¸û°ª®É¡A§ó·sªº°õ¦æ³t«×¤]·|ÅãµÛ¥[§Ö¡A¦Ó¥B½Æ¼g°T®§¤£·|§ó¶i¤@¨B¦aªý¶ë¤w¸g°ª«×¨Ï¥Îªººô¸ô¡C

±z¥i¥H³z¹L½Æ¼g¨óij­Ó§O¬°¨C­Ó¥Î¤á±Æµ{©ó¨C¤Ñ©Î¨C¶g°õ¦æ§ó·s¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P½Æ¼g§À½Xªº¸`ÂI¡C
  2. ½Ð¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡A¨Ã¦b¥kµ¡®æ¤¤¿ï¾Ü±z·Q­n³]©wªº½Æ¼g¨óij¡A¦A«ö¤@¤U [½s¿è]¡C
  3. ¿ï¾Ü [½Æ¼g¨óij] ¹ï¸Ü¤è¶ôªº [±Æµ{] ¼ÐÅÒ¡A¿ï¾Ü¨C¶g±Æµ{®Çªº¿ï¶µ«ö¶s¡C
  4. ©w¸q±Æµ{¡G
    1. ¹ï©ó¨C¶gªº§ó·s¡A½Ð¿ï¾Ü¤@¶g¤¤­n¶i¦æ½Æ¼gªº¤@©Î¦h¤éªº®Ö¨ú¤è¶ô¡C¦pªG­n¶i¤@¨B­­¨î©ó³o´X¤é¤ºªº½Æ¼g±ø¥ó¡A±z¥i¥H¿ï¾Ü©Ê¦a¿é¤J®É¶¡½d³ò (¨Ï¥Î 24 ¤p®É¨îªí¥Üªk)¡C
    2. ¹ï©ó¨C¤éªº§ó·s¡A½Ð«ö¤@¤U [¥þ³¡] ¥H¨C¤Ñ¶i¦æ½Æ¼g¡A¨Ã¿é¤J®É¶¡½d³ò (¨Ï¥Î 24 ¤p®É¨îªí¥Üªk) «ü©w°õ¦æ½Æ¼gªº®É¶¡¡C
    3. ½Ðª`·N¡A®É¶¡½d³ò¤£¯à¸ó¶V¤È©]¡C

  5. «ö¤@¤U [½T©w]¡AÀx¦s·s­È¨ÃÃö³¬ [½Æ¼g¨óij] ¹ï¸Ü¤è¶ô¡C
  6. ·sªº±Æµ{±N¥ß§Y¥Í®Ä¡A¾É­P¹ïÀ³¥Î¤áªº¤U¤@¦¸½Æ¼g§ó·s·|©µ¿ð¨ì±Æµ{¤¹³\ªº²Ä¤@­Ó®É¶¡¤~°õ¦æ¡C

¸ê®ÆÀ£ÁY

¦p­n­°§C½Æ¼g©Ò¨Ï¥ÎªºÀW¼e¡A±z¥i¥H³]©w½Æ¼g¦b§ó·s¥Î¤á®É¡AÀ£ÁY¶Ç°eªº¸ê®Æ¡C½Æ¼g¾÷¨î¨Ï¥Î Zlib À£ÁYµ{¦¡®w¡A¸Óµ{¦¡®w¶È¦b¤ä´©ªº Solaris ©M Linux ¥­¥x¤W¤~¦³¡C¨ÑÀ³°Ó©M¥Î¤á¨âªÌ³£­n¦b Solaris ©Î Linux ¥­¥x¤~¯à±Ò¥ÎÀ£ÁY¡C

¥u¦³¦b¥D¾÷¦øªA¾¹ªº½Æ¼g¨óij¤W¡A³]©w ds5ReplicaTransportCompressionLevel ÄÝ©Ê¡A¤~¦³½Æ¼gÀ£ÁYªº²ÕºA¥i¥Î¡C¦¹ÄÝ©Ê¥i¨Ï¥Î¤U¦C­È¤¤ªº¤@­Ó¡G

0 - ¤£°õ¦æÀ£ÁY¡C³o´N¬O
   ds5ReplicaTransportCompressionLevel ÄÝ©Ê¥¼©w¸q®Éªº¹w³]¦æ¬°¡C

1 - ¨Ï¥Î Zlib µ{¦¡®w¹w³]ªºÀ£ÁY¼h¯Å¡C

2 - ¨Ï¥Î Zlib µ{¦¡®w³Ì¨Î¤j¤pªºÀ£ÁY¼h¯Å¡C

3 - ¨Ï¥Î Zlib µ{¦¡®w³Ì¨Î³t«×ªºÀ£ÁY¼h¯Å¡C

±zÀ³¸Ó¨Ì¾Ú¸gÅç´ú¸Õ¨Ã¿ï¾ÜÀ£ÁY¼h¯Å¡A¬°±z¹w´Áªº½Æ¼g¨Ï¥Î²v¡A¦b WAN Àô¹Ò¤U±a¨Ó³Ì¨Îªºµ²ªG¡C±z¤£¯à¦bºô¸ô©µ¿ð¤£©úÅ㪺 LAN (°Ï°ìºô¸ô) ¤¤³]©w¦¹°Ñ¼Æ¡A¦]¬°À£ÁY©M¸ÑÀ£ÁYªº¹Bºâ±N¨Ï½Æ¼gÅܺC¡C

¨Ò¦p¡A­Y­n¦b east.example.com ¤W¨Ï¥Î³Ì§Ö³tÀ£ÁY¶Ç°e½Æ¼g§ó·s¦Ü¥Î¤á¡A½Ð¨Ï¥Î¤U¦C ldapmodify «ü¥O¡G

ldapmodify -h host -p port -D "cn=Directory Manager" -w password
dn:cn=east.example.com:389,cn=replica,cn="suffixDN",
 cn=mapping tree,cn=config
changetype:modify
add:ds5ReplicaTransportCompressionLevel
ds5ReplicaTransportCompressionLevel: 3
^D

­×§ï½Æ¼g©Ý¼³

¥»¸`¥]§t´X­Ó¥Î©óºÞ²z²{¦³½Æ¼g©Ý¼³ªºµ{§Ç¡A¨Ò¦p½s¿è©Î²¾°£½Æ¼g¨óij¡B¤É¯Å¡B­°¯Å©Î°±¥Î½Æ¥»¡B±j­¢§ó·s¥Î¤á¥H¤ÎºÞ²zÅܧó°O¿ý¡C

ºÞ²z½Æ¼g¨óij

±z¥i¥H±q¥D¾÷§À½Xªº½Æ¼g­±ªO¤¤ºÞ²z½Æ¼g¨óij¡A¥HÅܧó¨óij¤¤ªºÅçÃÒ¸ê°T¡B¤¤Â_¶Çµ¹¯S©w¥Î¤áªº½Æ¼g©Î±N¥Î¤á±q©Ý¼³¤¤²¾°£¡C

Åܧó½Æ¼gºÞ²z­û

±z¥i¥H½s¿è½Æ¼g¨óij¡A¥HÅܧó¥Î¨Ó³sµ²¥Î¤á¦øªA¾¹ªº½Æ¼gºÞ²z­û¨­¥÷¡C¬°ÁקK¤¤Â_½Æ¼g¡A±zÀ³¸Ó¥ý¦b¥Î¤á¤W©w¸q·sªº½Æ¼gºÞ²z­û¶µ¥Ø©Î¾ÌÃÒ¶µ¥Ø¡AµM«á¦A­×§ï½Æ¼g¨óij¡C¦ý¦pªG½Æ¼g¦]³sµ²¥¢±Ñ¦Ó¤¤Â_¡A·í±z§ï¥¿¿ù»~«á¡A½Æ¼g¾÷¨î±N·|¦b½Æ¼g´_­ì³]©w­Èªº­­¨î¤º¡A¦Û°Ê¶Ç°e©Ò¦³¥²­nªº§ó·s (½Ð°Ñ¾\<¶i¶¥¥Î¤á²ÕºA>)¡C

­Y­nÅܧó¥Î¤á¥Î¥H³q¹LÅçÃÒªº½Æ¼gºÞ²z­û¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¿ï¾Ü­n­×§ïªº½Æ¼g¨óij¡A¦A«ö¤@¤U [½s¿è]¡C
  3. ¦b [½Æ¼g¨óij] ¹ï¸Ü¤è¶ô¤¤¡A½Ð¿ï¾Ü [³s½u] ¼ÐÅÒ¡C
  4. ª¬ºA¦æ·|«ü¥Ü¥Î¤á¦øªA¾¹ªº¥D¾÷¦WºÙ»P³s±µ°ð¸¹½X¡C

  5. ­×§ï DN »P±K½XÄæ¦ì¡A¥H¥]§t¥t¤@­Ó½Æ¼gºÞ²z­û¶µ¥Øªº DN ©Î±K½X¡A©Î¥Î¤á¦øªA¾¹¤W¾ÌÃÒ¶µ¥Øªº DN¡C
  6. ¦pªG¦¹½Æ¼g¨óij¨Ï¥Î³z¹L¦w¥þ³s±µ°ðªº SSL¡A±z¤]¥i¥H«ö¤@¤U [¿ï¶µ] «ö¶s¿ï¾Ü¦w¥þÅçÃÒªºÃþ«¬¡C¦pªG±z¥Î±K½X¶i¦æ³s½u¡A¨ÑÀ³°Ó±N³z¹L¥[±Kªº SSL ³s½u©Ò«ü©wªº DN ¨Ó¨Ï¥Î²³æÅçÃÒ¡C¦pªG±z¥Î¾ÌÃÒ¶i¦æ³s½u¡ADN Äæ¦ì´N¬O¾ÌÃÒ¶µ¥Øªº DN¡A¤£»Ý­n±K½X¡C
  7. ±zµLªk±N²{¦³ªº½Æ¼g¨óij±q«D¦w¥þÅçÃÒ¤Á´«¦¨¦w¥þÅçÃÒ¡A¤Ï¤§¥çµM¡C­Y­n¥Î¤£¦Pªº¦w¥þ©Ê³]©w±Ò¥Î½Æ¼g¡A±z¥²¶·«Ø¥ß¥t¤@­Ó½Æ¼g¨óij¡C

  8. «ö¤@¤U [½T©w] Àx¦s±zªºÅܧó¡C

½Æ»s½Æ¼g¨óij

½Æ»s½Æ¼g¨óij¬O¤@ºØ«Ü²³æªº¤èªk¡A¯à°÷¬°¤j«¬½Æ¼g©Ý¼³¤¤ªº¨ÑÀ³°Ó½Æ¥»³]©w³\¦h¥Î¤á¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ±q½Æ¼g¨óij²M³æ¤¤¡A¿ï¾Ü­n½Æ»sªº¨óij¡C¦pªG­n¥Î·sªº¨óij»P¥Î¤á«Ø¥ß¦w¥þ³s½u¡A±z¥²¶·¿ï¾Ü¤]¨Ï¥Î¦w¥þ³s±µ°ðªº²{¦³¨óij¡C¦pªG­n«Ø¥ß·sªº«D¦w¥þ¨óij¡A±z¥²¶·¿ï¾Ü«D¦w¥þ¨óij¡C
  3. «ö¤@¤U [½s¿è] ¨ÃÂsÄý [½Æ¼g¨óij] ¹ï¸Ü¤è¶ôªº¦U­Ó¼ÐÅÒ¡A¥H½T»{¦¹¨óijªº²ÕºA¡C³o¨Ç¼ÐÅÒ¤Wªº²ÕºA±N©ó¤U¦C¦U¸`»¡©ú¡G

  4. ¦b¤´¿ï¾Ü¦P¤@­Ó½Æ¼g¨óijªº±¡ªp¤U¡A«ö¤@¤U [½Æ»s] «ö¶s¡C
  5. ±q²M³æ¤¤¿ï¾Ü·s¥Î¤áªº¥D¾÷¦WºÙ»P³s±µ°ð¸¹½X¡A©Î«ö¤@¤U [¥[¤J¥D¾÷] «ö¶s¥H¨Ï¥Î¤£¦Pªº¥D¾÷»P³s±µ°ð¡C²M³æ©M [¥[¤J¥D¾÷] ¹ï¸Ü¤è¶ô±N¥u¤¹³\±z¿ï¾Ü»P½Æ»sªº¥Î¤á¨óij¬Û¦P¦w¥þ©ÊÃþ«¬ªº¥Î¤á¡C
  6. ½T©w¤w¿ï¾Ü²M³æ¤¤ªº¥D¾÷¦WºÙ¡A¦A«ö¤@¤U [½T©w]¡A¬°¸Ó¥Î¤á¦øªA¾¹«Ø¥ß·sªº½Æ¼g¨óij¡C
  7. ·sªº¨óij·|½Æ»s²{¦³¦øªA¾¹ªº©Ò¦³²ÕºA¸ê°T¡C³oªí¥Ü³o¨â³¡¦øªA¾¹¥²¶·¾Ö¦³§¹¥þ¬Û¦Pªº½Æ¼gºÞ²z­û¶µ¥Ø¡A¨Ï¥Î¬Û¦Pªº±K½X¡C¦pªG­n­×§ï·s¨óijªº²ÕºA (¨Ò¦p¡AÅܧó½Æ¼gºÞ²z­û DN)¡A½Ð±q²M³æ¤¤¿ï¾Ü¸Ó¨óij¡A¦A«ö¤@¤U [½s¿è]¡C

°±¥Î½Æ¼g¨óij

°±¥Î½Æ¼g¨óij«á¡A¥D¾÷·|°±¤î¶Ç°e§ó·s¨ì«ü©wªº¥Î¤á¡CÁöµM¨ì¸Ó¦øªA¾¹ªº½Æ¼g·|°±¤î¡A¦ý¤´·|«O¯d¨óij¤¤©Ò¦³ªº³]©w­È¡C¤é«á¥u­n­«·s±Ò¥Î¸Ó¨óij¡A§Y¥iÄ~Äò½Æ¼g¡C¦p»ÝÃö©ó¤¤Â_«á«ì´_½Æ¼g¾÷¨îªº¸ê°T¡A½Ð°Ñ¾\¤U¦Cªº<±Ò¥Î½Æ¼g¨óij>¡C

­Y­n°±¥Î½Æ¼g¨óij¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¿ï¾Ü­n°±¥Îªº½Æ¼g¨óij¡C
  3. ¦b¨óij²M³æ¤U¤èªº¤è¶ô¤¤¿ï¾Ü [°Ê§@]>[°±¥Î¨óij]¡C
  4. «ö¤@¤U [¬O] ¥H½T»{­n°±¥Î¸Ó½Æ¼g¨óij¡C

²M³æ¤¤¨óijªº¹Ï¥Ü«K·|§ïÅÜ¡A¥HÅã¥Ü¨ä¤w°±¥Î¡C

±Ò¥Î½Æ¼g¨óij

±Ò¥Î½Æ¼g¨óij±N«ì´_»P«ü©w¥Î¤áªº½Æ¼g¡C¦ý¦pªG½Æ¼gªº¤¤Â_®É¶¡¤w¶W¹L½Æ¼g´_­ì³]©w­È©Ò¤¹³\ªº®É¶¡¡A¦Ó¥B¨ä¥L¨ÑÀ³°Ó¥¼§ó·s¸Ó¥Î¤á¡A«h±z¥²¶·­«·sªì©l¤Æ¸Ó¥Î¤á¡C½Æ¼g´_­ì³]©w­È¬O¦¹¨ÑÀ³°ÓÅܧó°O¿ý»P¥Î¤áªº²M°£©µ¿ð³o¨â¶µ³]©wªº¤j¤p¤Î¤Ñ¼Æ¤§³Ì¤j­È (½Ð°Ñ¾\<¶i¶¥¥Î¤á²ÕºA>)¡C

·í¤¤Â_®É¶¡¬Û·íµu¡A¦Ó¥B¥i¥H´_­ì½Æ¼g®É¡A¥u­n­«·s±Ò¥Î¨óij¡A¥D¾÷«K·|¦Û°Ê§ó·s¥Î¤á¡C

­Y­n±Ò¥Î½Æ¼g¨óij¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¿ï¾Ü­n±Ò¥Îªº½Æ¼g¨óij¡C
  3. ¦b¨óij²M³æ¤U¤èªº¤è¶ô¤¤«ö¤@¤U [±Ò¥Î] «ö¶s¡C
  4. µø»Ý­n­«·sªì©l¤Æ¥Î¤á½Æ¥»¡C

§R°£½Æ¼g¨óij

§R°£½Æ¼g¨óij±N°±¤î¹ïÀ³¥Î¤áªº½Æ¼g¡A¦Ó¥B·|²¾°£¦³Ãö¸Ó¨óijªº©Ò¦³²ÕºA¸ê°T¡C¤é«á­Y·Q«ì´_½Æ¼g¡A½Ð§ï¬°°±¥Î¨óij¡A¦p<°±¥Î½Æ¼g¨óij>©Ò­z¡C

­Y­n§R°£½Æ¼g¨óij¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¿ï¾Ü­n§R°£ªº½Æ¼g¨óij¡C
  3. «ö¤@¤U¨óij²M³æ¥kÃ䪺 [§R°£] «ö¶s¡C
  4. «ö¤@¤U [¬O] ¥H½T»{­n§R°£¸Ó½Æ¼g¨óij¡C

¤É¯Å©Î­°¯Å½Æ¥»

¤É¯Å©Î­°¯Å½Æ¥»·|§ïÅܽƥ»¦b½Æ¼g©Ý¼³¤¤ªº¨¤¦â¡C±M¥Î¥Î¤á¥i¥H¤É¯Å¦¨¶°½u¾¹¡A¶°½u¾¹¥i¥H¤É¯Å¦¨¥D¾÷¡F¥D¾÷¥i¥H­°¯Å¦¨¶°½u¾¹¡A¦Ó¶°½u¾¹¤]¥i¥H­°¯Å¦¨±M¥Î¥Î¤á¡C¦ý¬O¥D¾÷¤£¥i¥Hª½±µ­°¯Å¦¨¥Î¤á¡A¦P¼Ë¦a¡A¥Î¤á¤]¤£¥i¥Hª½±µ¤É¯Å¦¨¥D¾÷¡C

¦h­«¥D¾÷½Æ¼g¾÷¨î¤¤ªº¤É¯Å»P­°¯Å¥\¯àÅý©Ý¼³«D±`¨ã¦³¼u©Ê¡C­ì¥ý¥Ñ¥Î¤á½Æ¥»ªA°Èªººô¯¸¥i¯à·|¦]¬°¦¨ªø¡A¦Ó»Ý­n¨ã¦³´X­Ó½Æ¥»ªº¶°½u¾¹¤~¯à°÷³B²z¨ä­t¸ü¡C¦pªG­t¸ü¥]§t³\¦h½Æ¥»¤º®eªº­×§ï¡A¶°½u¾¹«K¥i¥HÅܦ¨¥D¾÷¡A¥H¥[§Ö¥»¾÷Åܧ󪺳t«×¡A¤§«á¦A±NÅܧó½Æ¼g¨ì¨ä¥Lºô¯¸¤Wªº¨ä¥L¥D¾÷¡C

­Y­n¤É¯Å©Î­°¯Å½Æ¥»¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¿ï¾Ü [Åܧó]>[¤É¯Å-­°¯Å½Æ¥»] ¥\¯àªí¶µ¥Ø¡C
  3. ½Æ¼gºëÆF±N¥uÅý±z¿ï¾Ü¤¹³\ªº·s¨¤¦â¡AµM«á³v¨B«ü¾É±z¶i¦æ·s½Æ¥»¨¤¦âªº²ÕºA³]©wµ{§Ç¡C±zÀ³¸Ó­nª¾¹D¤U¦Cªºµ²ªG¡G
    • ±N¥D¾÷­°¯Å¦¨¶°½u¾¹®É¡A½Æ¥»±NÅܦ¨°ßŪ¡A¨Ã³]¬°·|¶Ç°eÂशµ¹¨ä¾l¥D¾÷¡C·sªº¶°½u¾¹±N«O¯d¨ä©Ò¦³¥Î¤á¡A¤£½×¬O¶°½u¾¹©Î±M¥Î¥Î¤á¡C
    • ±N³æ¤@¥D¾÷­°¯Å¦¨¶°½u¾¹±N·|«Ø¥ß¨S¦³¥D¾÷½Æ¥»ªº©Ý¼³¡CºëÆF¬O°²³]±z§Y±N©w¸q·sªº¥D¾÷¡A¤~¤¹³\±z°õ¦æ¦¹­°¯Å°Ê§@¡C¦ý¬O±z³Ì¦n¬O¥ý¥[¤J·sªº¥D¾÷¦¨¬°¦h­«¥D¾÷¡A¨ÃÅý¥¦ªì©l¤Æ«á¡A¦A­°¯Å¨ä¥L¥D¾÷¡C
    • ±N¶°½u¾¹­°¯Å¦¨¥Î¤á®É¡A±N·|§R°£©Ò¦³½Æ¼g¨óij¡C¦pªG¶°½u¾¹ªº¥Î¤á¥¼¥Ñ¨ä¥L¶°½u¾¹©Î¥D¾÷§ó·s¡A¸Ó¥Î¤á±N¤£¦AÀò±o§ó·s¡C±zÀ³¸Ó¦b¨ä¥L¶°½u¾¹©Î¥D¾÷¤W«Ø¥ß·sªº¨óij¡A¥H§ó·s³o¨Ç¥Î¤á¡C
    • ±N¥Î¤á¤É¯Å¦¨¶°½u¾¹®É¡A«K·|±Ò¥Î¨äÅܧó°O¿ý¡A¦Ó¥B±z¥i¥H©w¸q¥¦»P¥Î¤áªº·s¨óij¡C
    • ±N¶°½u¾¹¤É¯Å¦¨¥D¾÷®É¡A½Æ¥»±N·|±µ¨ü­×§ï­n¨D¡A¦Ó¥B±z¥i¥H©w¸q¥¦»P¨ä¥L¥D¾÷¡B¶°½u¾¹©Î±M¥Î¥D¾÷ªº·s¨óij¡C

°±¥Î½Æ¥»

°±¥Î½Æ¥»·|±N¥¦±q½Æ¼g©Ý¼³¤¤²¾°£¡C¥¦±N¤£¦AÀò±o§ó·s©Î¶Ç°e§ó·s (¨Ì¨ä¨¤¦â¬O¥D¾÷¡B¶°½u¾¹©Î¥Î¤á¦Ó©w)¡C°±¥Î¨ÑÀ³°Ó±N§R°£©Ò¦³½Æ¼g¨óij¡A¦Ó¥B¦pªG­«·s±Ò¥Î½Æ¥»ªº¸Ü¡A©Ò¦³½Æ¼g¨óij³£¥²¶·­«·s«Ø¥ß¡C

­Y­n°±¥Î½Æ¥»¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤¡A¿ï¾Ü [Åܧó] > [°±¥Î½Æ¼g] ¥\¯àªí¶µ¥Ø¡C
  3. ¦b½T»{¹ï¸Ü¤è¶ô¤¤«ö¤@¤U [¬O]¡C
  4. ©ÎªÌ¡A­«³]¦¹§À½Xªº¼g¤JÅv­­¤ÎÂश¡C°±¥Î½Æ¥»«á¡A³o¨Ç³]©w­È¤´µM·|¨Ì­ìª¬«O¯d¡A¨Ò¦p°±¥Îªº¥Î¤á¤´µM·|¶Ç°e­×§ï­n¨Dµ¹¥¦­ì¥ýªº¥D¾÷½Æ¥»¡C
  5. ­Y­n­×§ï¼g¤JÅv­­»PÂश¡A½Ð¦b [²ÕºA] ¼ÐÅÒ¤W¿ï¾Ü¦¹§À½Xªº¸`ÂI¡A¨Ã¦b¥k­±ªOªº [³]©w­È] ¼ÐÅÒ¤¤¶i¦æ­×§ï¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<³]©w¦s¨úÅv­­¤ÎÂश>¡C

²¾°ÊÅܧó°O¿ý

Åܧó°O¿ý¬O«ü©w¨ÑÀ³°Ó½Æ¥»¤W©Ò¦³­×§ïªº¤º³¡°O¿ý¡A¦øªA¾¹§Q¥Î¥¦¦b¨ä¥L½Æ¥»¤W­«·s°õ¦æ­×§ï¡CÅܧó°O¿ýªº¤º®e¬O¥Ñ¦øªA¾¹¦Û°ÊºÞ²z¡A¦Ó¥B±N³z¹L¦h­«¥D¾÷§ó·s¶i¦æ§ó·s (§Y¨Ï¬O¦b¦øªA¾¹­«·s±Ò°Ê¤§«á)¡C

¦bª© Directory Server ¤¤¡AÅܧó°O¿ý¥i³z¹L LDAP ¦s¨ú¡A¦ý²{¦b«h¶È¨Ñ¦øªA¾¹¤º³¡¨Ï¥Î¡C¦pªG±z¦³¥²¶·Åª¨úÅܧó°O¿ýªºÀ³¥Îµ{¦¡¡A½Ð¨Ï¥Î [Retro Changelog Plugin]¡A¥H¹F¨ì¦^·¹¬Û®e©Ê¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<¨Ï¥Î°l·¹Åܧó°O¿ý¥~±¾µ{¦¡>¡C

¥u¦³·í¨t²ÎºÞ²z­û¥²¶·±NÀɮײ¾¨ì¨ä¥L¦ì¸m®É (¨Ò¦p·íÀɮשҦbªººÏºÐ¤wº¡®É)¡A¤~À³¸Ó­×§ïÅܧó°O¿ý¡C



¤p¤ß

·í±z°±¥ÎÅܧó°O¿ý¡A©Î±NÅܧó°O¿ý²¾¨ì·s¦ì¸m®É¡AÅܧó°O¿ý·|­«·sªì©l¤Æ¡C¤£½×¥ô¤@ºØª¬ªp¡A±z³£¥²¶·­«·sªì©l¤Æ¦¹¦øªA¾¹¤W½Æ¥»ªº©Ò¦³¥Î¤á¡C



±z¥²¶·¥Î Directory Server ¥D±±¥x¨Ó²¾°ÊÅܧó°O¿ý¡Aµ´¤£¯à¨Ï¥Î§@·~¨t²Îªº rename ©Î mv «ü¥O¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A¿ï¾Ü [¸ê®Æ] ¸`ÂI¡A¦A¿ï¾Ü¥k­±ªO¤¤ªº [½Æ¼g] ¼ÐÅÒ¡C
  2. ¦b¤å¦rÄæ¦ì¤¤¿é¤J·sªº¦ì¸m¡C³o¬O±q²{¦b°_­nÀx¦sÅܧó°O¿ýªº·s¸ô®|»P¥Ø¿ý¦WºÙ¡C¨Ò¦p¡A±NÅܧó°O¿ý±q¹w³]¦ì¸m ServerRoot/slapd-serverID/changelogdb ²¾¨ì ServerRoot/slapd-serverID/newchangelog¡C
  3. ²{¦³ªºÅܧó°O¿ý·|±qªº¦ì¸m§R°£¡A·sªºÅܧó°O¿ý«h«O«ù¦b·sªº¦ì¸m¡C

  4. ¦b [½Æ¼g] ¼ÐÅÒ¤¤«ö¤@¤U [Àx¦s]¡C
  5. ­«·s±Ò°Ê Directory Server¡C
  6. ¨Ì<ªì©l¤Æ½Æ¥»>©Ò­z¡A­«·sªì©l¤Æ±zªº¥Î¤á¡C

«O«ù½Æ¥»¦P¨B

¦b°±¤î¯A¤Î½Æ¼gªº¥Ø¿ý¦øªA¾¹¥H¶i¦æ©w´ÁºûÅ@«á¡A·í¥¦­«·s¤W½u®É¡A±z¥²¶·½T©w¥¦·|¥ß§Y³z¹L½Æ¼gÀò±o§ó·s¡C¹ï©ó¦h­«¥D¾÷Àô¹Ò¤¤ªº¥D¾÷¡A¥Ø¿ý¸ê°T¥²¶·¥Ñ¦h­«¥D¾÷¶°¦X¤¤ªº¥t¤@³¡¥D¾÷¶i¦æ§ó·s¡C­Y¬O¨ä¥Lª¬ªp¡A¦b±N¶°½u¾¹½Æ¥»©Î±M¥Î¥Î¤á³]¬°Â÷½uª¬ºA¥H¶i¦æºûÅ@«á¡A·í¥¦­Ì­«·s¤W½u®É¡A¥²¶·¥Ñ¥D¾÷½Æ¥»¶i¦æ§ó·s¡C

¥»¸`»¡©ú½Æ¼g­«¸Õºtºâªk¡A¥H¤Î¦p¦ó¤£µ¥­Ô¤U¤@¦¸­«¸Õ«K±j­¢µo¥Í½Æ¼g§ó·s¡C



ª`·N

¥u¦³¤w³]©w½Æ¼g¡A¨Ã¥B¤wªì©l¤Æ¥Î¤á®É¡A¤~¥i¨Ï¥Î¥»¸`©Ò´y­zªºµ{§Ç¡C



½Æ¼g­«¸Õºtºâªk

·í¨ÑÀ³°Ó¹Á¸Õ½Æ¼g¨ì¥Î¤á¥¢±Ñ®É¡A¥¦·|¥H»¼¼Wªº®É¶¡¶¡¹j©w´Á­«¸Õ¡C­«¸Õ¼Ò¦¡¦p¤U¡G20¡B40¡B80¡BµM«á 160 ¬í¡C¤§«á¡A¨ÑÀ³°Ó·|¨C¹j 160 ¬í­«¸Õ¤@¦¸¡C

½Ðª`·N¡A§Y¨Ï±z¤w±N½Æ¼g¨óij³]¦¨¨ÑÀ³°Ó½Æ¥»»P¥Î¤á½Æ¥»¥Ã»·«O«ù¦P¨B¡A¤]¤£¨¬¥H±N¤wÂ÷½u¶W¹L 5 ¤ÀÄÁªº½Æ¥»¥ß§Y¦^´_¨ì³Ì·sª¬ºA¡C

¬°½T«O·í¦øªA¾¹«ì´_¤W½u®É¥Ø¿ý¸ê°T·|¥ß§Y¦P¨B¡A±z¥i¥H§Q¥ÎDirectory Server ¥D±±¥x©Î¦Û­qªº«ü¥OÀÉ¡C

±q¥D±±¥x±j­¢½Æ¼g§ó·s

¬°½T«O·í¥Î¤á (©Î¦h­«¥D¾÷½Æ¼g²ÕºA¤¤ªº¥D¾÷) ¦b¸g¹L¤@¬q®É¶¡¤§«á¦^´_¤W½u®É¡A·|¥ß§Y¶Ç°e½Æ¼g§ó·s¡A±z¥i¥H¦bÀx¦s³Ì·sª©¥Ø¿ý¸ê®Æªº¨ÑÀ³°Ó¤W°õ¦æ³o¨Ç¨BÆJ¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI»P¥D¾÷½Æ¥»ªº§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  2. ¦b¥k­±ªO¤¤Åã¥Ü½Æ¼gª¬ºA¸ê°T¡C

  3. ±q­n§ó·sªº¥Î¤á¹ïÀ³²M³æ¤¤¿ï¾Ü½Æ¼g¨óij¡A¦A«ö¤@¤U [°Ê§@]>[¥ß§Y¶Ç°e§ó·s]¡C
  4. ³o¼Ë·|¹ïÀx¦s¶·§ó·s¤§¸ê°Tªº½Æ¥»±Ò°Ê½Æ¼g¡C

¥Î«ü¥O¦æ±j­¢½Æ¼g§ó·s

±z¥i¥H±q»Ý­n§ó·sªº¥Î¤á¤W°õ¦æ«ü¥OÀÉ¡A´£¥Ü¨ä¨ÑÀ³°Ó¥ß§Y¶Ç°e½Æ¼g§ó·s¡C¦p»Ý¦¹«ü¥OÀÉ¡A½Ð°Ñ¾\µ{¦¡½X½d¨Ò 8-1¡C

±z¥i¥H½Æ»s¦¹½d¨Ò¡A¨Ã¬°¥¦«ü©w¦³·N¸qªº¦WºÙ¡A¨Ò¦p replicate_now.sh¡C±z¥²¶·¬°µ{¦¡½X½d¨Ò 8-1 ¤¤©Ò¦CªºÅܼƴ£¨Ñ¹ê»Úªº­È¡C



ª`·N

¨t²ÎºÞ²z­û¥²¶·°õ¦æ¦¹«ü¥OÀÉ¡A¦]¬°¥u­nÂ÷½uªº¦øªA¾¹­«·s¤W½u¡A«KµLªk±N¥¦³]©w¬°¦Û°Ê°õ¦æ¡C




#!/bin/sh
SUP_HOST=supplier_hostname
SUP_PORT=supplier_portnumber
SUP_MGRDN=supplier_directoryManager
SUP_MGRPW=supplier_directoryManager_passwd
MY_HOST=consumer_hostname
MY_PORT=consumer_portnumber

ldapsearch -1 -h ${SUP_HOST} -p ${SUP_PORT} -D "${SUP_MGRDN}" \
-w ${SUP_MGRPW} -b "cn=mapping tree, cn=config" \
"(&(objectclass=nsds5replicationagreement) \
(nsDS5ReplicaHost=${MY_HOST})(nsDS5ReplicaPort=${MY_PORT}))" \
dn nsds5ReplicaUpdateSchedule > /tmp/$$


cat /tmp/$$ |
awk Õ
BEGIN { s = 0 }
/^dn:/ { print $0;
print "changetype:modify";
print "replace:nsds5ReplicaUpdateSchedule";
print "nsds5ReplicaUpdateSchedule: 0000-2359 0123456";
print "-";
print "";
print $0;
print "changetype:modify";
print "replace:nsds5ReplicaUpdateSchedule";
}

/^nsds5ReplicaUpdateSchedule:/ { s = 1; print $0; }

/^$/ {
if ( $s == 1 )
{ print "-" ; print ""; }
else
{ print "nsds5ReplicaUpdateSchedule: 0000-2359 0123456";
print "-" ; print ""; };
s = 0; }

Õ > /tmp/ldif.$$

echo "Ldif is in /tmp/ldif.$$"
echo

ldapmodify -c -h ${SUP_HOST} -p ${SUP_PORT} -D "${SUP_MGRDN}" \
-w ${SUP_MGRPW} -f /tmp/ldif.$$

">

µ{¦¡½X½d¨Ò 8-1    Replicate_Now «ü¥OÀɽd¨Ò


#!/bin/sh
SUP_HOST=supplier_hostname
SUP_PORT=supplier_portnumber
SUP_MGRDN=supplier_directoryManager
SUP_MGRPW=supplier_directoryManager_passwd
MY_HOST=consumer_hostname
MY_PORT=consumer_portnumber

ldapsearch -1 -h ${SUP_HOST} -p ${SUP_PORT} -D "${SUP_MGRDN}" \
-w ${SUP_MGRPW} -b "cn=mapping tree, cn=config" \
"(&(objectclass=nsds5replicationagreement) \
(nsDS5ReplicaHost=${MY_HOST})(nsDS5ReplicaPort=${MY_PORT}))" \
dn nsds5ReplicaUpdateSchedule > /tmp/$$


cat /tmp/$$ |
awk Õ
BEGIN { s = 0 }
/^dn:/ { print $0;
print "changetype:modify";
print "replace:nsds5ReplicaUpdateSchedule";
print "nsds5ReplicaUpdateSchedule: 0000-2359 0123456";
print "-";
print "";
print $0;
print "changetype:modify";
print "replace:nsds5ReplicaUpdateSchedule";
}

/^nsds5ReplicaUpdateSchedule:/ { s = 1; print $0; }

/^$/ {
if ( $s == 1 )
{ print "-" ; print ""; }
else
{ print "nsds5ReplicaUpdateSchedule: 0000-2359 0123456";
print "-" ; print ""; };
s = 0; }

Õ > /tmp/ldif.$$

echo "Ldif is in /tmp/ldif.$$"
echo

ldapmodify -c -h ${SUP_HOST} -p ${SUP_PORT} -D "${SUP_MGRDN}" \
-w ${SUP_MGRPW} -f /tmp/ldif.$$

¦pªG±z­p¹º¨Ï¥Î¦¹«ü¥OÀÉ¡A±z¥²¶·¥Î±zªº½Æ¼gÀô¹Ò¤¤¹ê»Úªº­È¨ú¥N¤U¦CÅܼơC

ªí 8-1    Replicate_Now ÅܼÆ

ÅܼÆ

©w¸q

supplier_hostname

¨ÑÀ³°Ó¦øªA¾¹ªº¥D¾÷¦WºÙ¡A¦¹¦WºÙ¥Î©ó»P¥Ø«e¥Î¤áÁpµ¸¥H¨ú±o½Æ¼g¨óij¸ê°T¡C

supplier_portnumber

¨ÑÀ³°Ó¨Ï¥Î¤¤ªº LDAP ³s±µ°ð¡C

supplier_directoryManager

¨ÑÀ³°Ó¤W¨ã¦³Åv­­ªº¥Ø¿ýºÞ²z­û¨Ï¥ÎªÌªº DN¡A©Î¦b cn=config ¤U¨ã¦³¼g¤JÅv­­¤§ admin ¨Ï¥ÎªÌªº DN¡C

supplier_directoryManager_passwd

¨ÑÀ³°Ó¤W¨ã¦³Åv­­ªº¥Ø¿ýºÞ²z­û©Î admin ¨Ï¥ÎªÌªº±K½X¡C

consumer_hostname

¥Ø«e¥Î¤áªº¥D¾÷¦WºÙ¡C

consumer_portnumber

¥Î¤á¨Ï¥Î¤¤ªº LDAP ³s±µ°ð¡C

¦pªG§Æ±æ§ó·s§@·~³z¹L SSL ³s½u¶i¦æ¡A±z¥²¶·¥Î¾A·íªº°Ñ¼Æ»P­È­×§ï«ü¥OÀɤ¤ªº ldapmodify «ü¥O¡C¦p»Ý¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<±N LDAP ¥Î¤áºÝ³]©w¬°¨Ï¥Î¦w¥þ©Ê>¡C

»Pª©¶i¦æ½Æ¼g

¥»¸`´£¨ÑÃö©ó¦p¦ó³]©w»Pª© Sun ONE Directory Server ¶i¦æ½Æ¼gªº¸ê°T¡C

´N¥ô¦ó½Æ¼g²ÕºA¦Ó¨¥¡ASun ONE Directory Server 5.1 »P 5.2 §¹¥þ¬Û®e¡A¦ý¤U¦C±¡ªp¨Ò¥~¡G

  • µLªk¨Ï¥Î¤ù¬q½Æ¼g¡A¦]¦¹¦b Directory Server 5.2 ¥D¾÷»P 5.1 ¥Î¤á½Æ¥»¤§¶¡¤£¯à³]©w¤ù¬q½Æ¼g¡C
  • ¦bª©¥» 5.2 ¥D¾÷©M 5.1 ¥Î¤á¶¡³]©w¨óij®É¡A±z¥²¶·¦b cn=config ¤¤³]©w nsslapd-schema-repl-useronly ¬° on¡C§_«h¡Aª©¥» 5.2 ¤¤ªºµ²ºc¦b½Æ¼g¦Ü 5.1 ª©®É¡A±N·|«Ø¥ß½Ä¬ð¡C¥[¤W³o­Ó³]©w¡A¥u¦³¨Ï¥ÎªÌ©w¸qªºµ²ºc¤¸¯À (Àx¦s¦b 99user.ldif Àɮפ¤) ·|³Q½Æ¼g¡C½Ð°Ñ¾\<½Æ¼gµ²ºc©w¸q>¡C
  • ¦b Directory Server 5.2 ª©¥»¤¤¡Aµ²ºcÀÉ®× 11rfc2307.ldif ¤w§ïÅÜ¡A¥B¿í´` RFC 2307¡C±z¥²¶·¦bª©¥» 5.1 ªº¦øªA¾¹¤W§ó·s¬Û¹ïÀ³ªºÀɮסA¦p<§ó·s Directory Server ª©¥» 5.1ªºµ²ºc>©Ò­z¡C
  • ¦b 5.1 ª©¥»¥Î¤áªºÂश²M³æ¤¤¤´·|Åã¥Ü¤w­°¯Å¦¨¶°½u¾¹ªº 5.2 ª©¥»¥D¾÷¡C¦ý¥Ñ©ó­°¯Åªº¤º³¡¾÷¨î©Ò­P¡A¤w­°¯Å½Æ¥»ªº³s±µ°ð¸¹½X±N¬O¹s¡C¦¹Âश URL ±NµLªk¨Ï¥Î¡A¦Ó¥B·í¥Î¤áºÝµLªk¨Ì·Ó¦¹Âश®É¡A¤j³¡¤À¥Î¤áºÝ±N·|¦Û°Ê¹Á¸Õ¨ä¥L¥D¾÷ªºÂश¡C¦ý¬O¡A±z¥i¯à¥²¶·¦b¦s¨ú³o¨Ç 5.1 ª©¥»½Æ¥»ªº¥Î¤áºÝ¤W´£°ªÂशªºÅDÂI­­¨î¡C5.2 ª©¥»¥Î¤á½Æ¥»¬J¤£·|Åã¥Ü¤]¤£·|¶Ç¦^³o­Ó«ü¦V¤w­°¯Åªº¥D¾÷¡B¥BµLªk¨Ï¥ÎªºÂश URL¡C

Sun ONE Directory Server ¦b¤U¦C±ø¥ó¤U¡A5.2 ª©¥»¥i¯A¤Î§t 4.x ª©¥» Directory Server ªº½Æ¼g®×¨Ò¡G

  • Directory Server 5.2 ³]©w¬°¥D¾÷¡A¦ý¥u§@¬° Directory Server 4.x ¨ÑÀ³°Óªº½Æ¼g¥Î¤á¡C
  • ¥Î¤á½Æ¥»¤£¯à¦P®É¬°Âªº 4.x ª©¥»¨ÑÀ³°Ó»P 5.2 ª©¥»¨ÑÀ³°Óªº¥Î¤á¡C¦ý 5.2 ª©¥»¦øªA¾¹¥i¥H¦³¤£¦Pªº½Æ¥»¡A¨ä¤¤¤@­Ó¥Ñªº Directory Server ´£¨Ñ¡A¥t¤@­Ó¥Ñ 5.2 ª©¥» Directory Server ´£¨Ñ¡C
  • Directory Server 5.2 ½Æ¥»­Y¤w³]©w¬°Âªº 4.x ª©¥»¨ÑÀ³°Óªº¥Î¤á¡A«K¤£¯à§@¬°©Ý¼³¤¤¦¹§À½Xªº¶°½u¾¹½Æ¥»¡C

¯à°÷¨Ï¥Î Directory Server 5.2 §@¬°Â Directory Server ¥Î¤áªº¥D­nÀuÂI¬O¡A¯à¤è«K¾E²¾½Æ¼gªºÀô¹Ò¡C¦p»ÝÃö©ó¾E²¾½Æ¼gÀô¹Ò¤§¨BÆJªº¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\¡mSun ONE Directory Server ¦w¸Ë©M½Õ¾ã«ü«n¡n¤¤ªº²Ä 2 ³¹<±qª©¥»¤É¯Å>¡C

±N Directory Server 5.2 ³]©w¬° Directory Server 4.x ªº¥Î¤á

¦pªG±z­p¹º¨Ï¥Î Directory Server 5.2 §@¬° 4.x ª©¥» Directory Server ªº¥Î¤á¡A±z¥²¶·¨Ì¤U¦C¤è¦¡³]©w¡G

  1. ¨Ì<±Ò¥Î¥D¾÷½Æ¥»>©Ò­z¡A±N½Æ¥»±Ò¥Î¬°¥D¾÷½Æ¥»¡C§Y¨Ï½Æ¥»¬O 4.x ¨ÑÀ³°Óªº¥Î¤á¡A³£¥²¶·³]©w¬°¥D¾÷½Æ¥»¡C
  2. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¸ê®Æ] ¸`ÂI©M½Æ¼g§À½X¸`ÂI¡A¨Ã¿ï¾Ü§À½X¤U¤èªº [½Æ¼g] ¸`ÂI¡C
  3. ¦b¥k­±ªO¤¤¡A¬°¦¹½Æ¥»¿ï¾Ü [Åܧó] > [±Ò¥Î 4.x ¬Û®e©Ê]¡F©ÎªÌ¡A¿ï¾Ü [ª«¥ó] ¥\¯àªí¤¤ªº [±Ò¥Î 4.x ¬Û®e©Ê]¡C
  4. ¦b [±Ò¥Î 4.x ¬Û®e©Ê] µøµ¡¤¤¡A«ü©w¨ÑÀ³°Ó¦øªA¾¹¥Î¨Ó³sµ²ªº³sµ² DN »P±K½X¡C±z¥i¥H¨Ï¥Î¥ô¦óºÞ²z¶µ¥Ø§@¬°³sµ² DN¡A¥]¬A¹w³]ªº½Æ¼gºÞ²z­û¡C¦p»ÝÃö©ó³sµ² DN ªº¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\<¿ï¾Ü½Æ¼gºÞ²z­û>¡C
  5. ¦pªG¨ÑÀ³°Ó¨Ï¥Î¦¹¦øªA¾¹ªº¦w¥þ³s±µ°ð¶i¦æ½Æ¼g§ó·s¡A±z¥i¥H¿é¤J¦øªA¾¹¾ÌÃÒ¶µ¥Øªº DN¡A¥H¨Ï¥Î¦w¥þÅçÃÒ¡C

  6. «ö¤@¤U [½T©w]¡C²{¦b¦¹¥Î¤á½Æ¥»§Y¤w·Ç³Æ¦n±µ¦¬¨Ó¦Û¨ÑÀ³°Óªº§ó·s¡C
  7. ½Ð½T»{ 5.2 ª©¥»½Æ¥»¦øªA¾¹¤Wµ²ºc©w¸q¤F±N±q 4.x ª©¥»¥D¾÷½Æ¼gªº¤º®e¤¤ªº©Ò¦³ÄÝ©Ê©Mª«¥óÃþ§O¡C
  8. ¶×¤J¦b 4.x ª©¥»¥D¾÷¤W«Ø¥ßªº LDIF ½Æ¥»ÀɮסA¥Hªì©l¤Æ 5.2 ª©¥»ªº½Æ¥»¡C¦b¦¹Àɮפ¤ªº²Ä¤@­Ó¶µ¥Ø¥]§t¦³ 4.x ½Æ¼g¾÷¨î©Ò»Ýªº copiedfrom ÄÝ©Ê¡C

¦b¦øªA¾¹¤W±Ò¥Î 4.x ¬Û®e©Ê·|³]©w¹w³]¦w¸ËªºÂ½Ƽg¥~±¾µ{¦¡¡C¦¹¥~±¾µ{¦¡·|³B²z¨Ó¦Û¨ÑÀ³°Óªº§ó·s¡A¨Ã¹ï½Æ¼g§À½Xªº¤º®e°õ¦æ§ó·s¡C



ª`·N

¥u­n 4.x ¬Û®e©Ê¬°±Ò¥Îª¬ºA¡A¦¹½Æ¥»·|¬°¨Ó¦Û¥Î¤áºÝªº¥ô¦ó­×§ï­n¨D¶Ç¦^Âश¡C§Y¨Ï Directory Server 5.2 ³]©w¬°¥D¾÷½Æ¥»¡A¥¦³£¤£·|¦b¦¹§À½X¤W°õ¦æ­×§ï­n¨D¡A¦Ó¬O·|¶Ç¦^ 4.x ¨ÑÀ³°Ó¦øªA¾¹ªºÂश¡C



¬°§¹¦¨Â½Ƽg³]©w¡A±z¥²¶·¥ß§Y±N¨ÑÀ³°Ó³]¬°½Æ¼g¨ì 5.2 Directory Server¡C¦p»ÝÃö©ó¦b 4.x Directory Server¤W³]©w½Æ¼g¨óijªº»¡©ú¡A½Ð°Ñ¾\ªºDirectory Server©Ò´£¨Ñªº»¡©ú¤å¥ó¡C

§ó·s Directory Server ª©¥» 5.1 ªºµ²ºc

¦b Directory Server 5.2 ¤¤¡Aµ²ºcÀÉ®× 11rfc2307.ldif ¤w§ïÅÜ¡A¥B¿í´` RFC 2307 (http://www.ietf.org/rfc/rfc2307.txt)¡C¦b³]©w©Î±Ò¥Î 5.2 ª©©M 5.1 ª©¦øªA¾¹¶¡ªº½Æ¼g«e¡A±z¥²¶·§ó·s 5.1 ª©¥»¦øªA¾¹¤Wªºµ²ºc¡C¦b³o¨â­Óª©¥»ªº¦øªA¾¹¤W¡Aµ²ºcÀɮצì©ó ServerRoot/slapd-serverID/config/schema/¡C

  1. ±q 5.2 ª©¥»¦øªA¾¹¤W½Æ»sÀÉ®× 11rfc2307.ldif ¦Ü 5.1 ª©¦øªA¾¹¡C
  2. ¦pªG±z¦³ 5.1 ª©¥»¦øªA¾¹ªº Solaris ®M¥ó³nÅé¦w¸Ëµ{¦¡¡A±z¥²¶·§R°£¹L®Éªº 10rfc2307.ldif ÀɮסC
  3. ¦pªG§A¦³ 5.1 ª©¥»¦øªA¾¹¨ä¥L¥­¥xªºÀ£ÁYÀɦw¸Ëµ{¦¡¡A±z±NÂмg²{¦³ªº 11rfc2307.ldif ÀɮסC
  4. ¤U¦Cµ²ºcÀɮצb¦¹¦¸Åܧ󤤨ü¨ì¼vÅT¡A¥²¶·±q 5.2 ª©¥»¦øªA¾¹¤W½Æ»s¡AÂмg¦Ü 5.1 ª©¥»¦øªA¾¹¤W²{¦³ªºÀɮסG
    • 20subscriber.ldif
    • 30ns-common.ldif
    • 50ns-admin.ldif
    • 50ns-certificate.ldif
    • 50ns-directory.ldif
    • 50ns-legacy.ldif
    • 50ns-mail.ldif
    • 50ns-mlm.ldif
    • 50ns-msg.ldif
    • 50ns-netshare.ldif

  5. ­«·s±Ò°Ê 5.1 ª©¥»¦øªA¾¹¡AµM«áÄ~Äò¶i¦æ½Æ¼g²ÕºA©M½Æ¥»ªì©l¤Æ¡C¥Ñ©ó¦P¨B¤Æ¨ä¥Lµ²ºc¤¸¯À¡A¦³¨Çµ²ºcÄÝ©Ê¥i¯à¦b¦øªA¾¹¶¡½Æ¼g¡A³o¬O½Æ¼g¾÷¨îªº¥¿±`¦æ¬°¡C
  6. ±z¥i¯à¥²¶·§ó·s¨Ì¿àª©¥»µ²ºcªº¥ô¦óÀ³¥Îµ{¦¡¡C·sªº 11rfc2307.ldif ÀÉ®×°µ¤F¤U¦C­×§ï¡G
    • automount ©M automountInformation Äݩʤw³Q²¾°£¡C
    • ipHost ª«¥óÃþ§O¤¹³\Äݩʪº²M³æ¤£¦A¥]§t¦³ o $ ou $ owner $ seeAlso $ serialNumer¡C
    • ieee802Device ª«¥óÃþ§O±j¨îÄݩʪº²M³æ¤£¦A¥]§t¦³ cn¡C
    • ieee802Device ª«¥óÃþ§O¤¹³\Äݩʪº²M³æ¤£¦A¥]§t¦³ description $ l $ o $ ou $ owner $ seeAlso $ serialNumber¡C
    • bootableDevice ª«¥óÃþ§O±j¨îÄݩʪº²M³æ¤£¦A¥]§t¦³ cn¡C
    • bootableDevice ª«¥óÃþ§O¤¹³\Äݩʪº²M³æ¤£¦A¥]§t¦³ description $ l $ o $ ou $ owner $ seeAlso $ serialNumber¡C
    • nisMap ª«¥óÃþ§Oªº OID ²{¦b¬O 1.3.6.1.1.1.2.9¡C

¨Ï¥Î°l·¹Åܧó°O¿ý¥~±¾µ{¦¡

·í±z­n¥ÎDirectory Server 5.2 ¥D¾÷½Æ¥»ºûÅ@ 4.x ¼Ë¦¡ªºÅܧó°O¿ý®É¡A«K¥i¥H¨Ï¥Î °l·¹Åܧó°O¿ý¥~±¾µ{¦¡¡C¹ï©ó¨Ìªþ©óDirectory Server 4.x Åܧó°O¿ý®æ¦¡ªº Sun ONE Meta Directory µ¥À³¥Îµ{¦¡¦Ó¨¥¡A¦³®É­Ô³o¬O¥²­nªº¡A¦]¬°¥¦­Ì·|±qÅܧó°O¿ýŪ¨ú¸ê°T¡C

°l·¹Åܧó°O¿ý¥~±¾µ{¦¡¤£¤¹³\ Directory Server 5.2 ¦¨¬°Â 4.x ¥Î¤á½Æ¥»ªº¨ÑÀ³°Ó¡F¥u¤ä´© Directory Server 5.2 §@¬° 4.x ¨ÑÀ³°Óªº¥Î¤á¡A¦p<»Pª©¶i¦æ½Æ¼g>©Ò­z¡C°l·¹Åܧó°O¿ý¥~±¾µ{¦¡ªº¹B§@»P½Æ¼g³q°T¨ó©wµLÃö¡A¦Ó¥B¹ï½Æ¼g©Ý¼³¤]¨S¦³¼vÅT¡C¦b³æ¤@¥D¾÷³¡¸p®×¨Òªº¥ô¦ó¦øªA¾¹¤W¡A³£¥i¥H±Ò¥Î°l·¹Åܧó°O¿ý¥~±¾µ{¦¡¡C¥¦µLªk¦b¦h­«¥D¾÷Àô¹Ò¤¤¥¿±`¹B§@¡A¦]¦¹¤£À³¸Ó¦b¦¹±¡ªp¤U±Ò¥Î¡C

°£¤F¦øªA¾¹ªº 5.2 Åܧó°O¿ý¥~¡AÁÙ«O¦s°l·¹Åܧó°O¿ý¡C°l·¹Åܧó°O¿ýÀx¦s¦b cn=changelog ³o­Ó¯S®í§À½X¤U¥t¤@­Ó¸ê®Æ®w¤¤¡C°l·¹Åܧó°O¿ý¥Ñ³æ¤@¶¥¼hªº¶µ¥Ø²Õ¦¨¡CÅܧó°O¿ý¤¤ªº¨C­Ó¶µ¥Ø³£¦³ª«¥óÃþ§O changeLogEntry¡A¦Ó¥B¥i¥H¥]§t¤Uªí©Ò¦Cªº¦U¶µÄÝ©Ê¡C

ªí 8-2    °l·¹Åܧó°O¿ý¶µ¥ØªºÄÝ©Ê 

ÄÝ©Ê

©w¸q

changeNumber

³o­Ó³æ­ÈÄݩʥû·¦s¦b¡C¥¦¥]§t¥i°ß¤@ÃѧO¨C¤@¦¸Åܧ󪺾ã¼Æ¡C¦¹¼Æ¦r»PÅܧóµo¥Íªº¶¶§Ç¦³Ãö¡A¼Æ¦r¶V°ª¡AÅܧó®É¶¡¶Vªñ¡C

targetDN

¦¹ÄÝ©Ê¥]§t¨ü LDAP §@·~¼vÅT¤§¶µ¥Øªº DN¡C­Y¬O modrdn §@·~¡AtargetDN ÄÝ©Ê¥]§t¶µ¥Ø­×§ï©Î²¾°Ê«eªº DN¡C

changeTime

¦¹ÄÝ©Ê«ü©wÅܧó§@·~µo¥Íªº®É¶¡¡C

changeType

«ü©w LDAP §@·~ªºÃþ«¬¡C¦¹ÄÝ©Ê¥i¬°¤U¦C­È¤¤ªº¤@­Ó¡Gadd¡Bdelete¡Bmodify ©Î modrdn¡C

changes

¹ï©ó¥[¤J¤Î­×§ï§@·~¡A¦¹ÄÝ©Ê¥]§t¹ï¶µ¥Ø©Ò°µªºÅܧó (®æ¦¡¬° LDIF)¡C

newRDN

­Y¬O modrdn §@·~¡A¦¹ÄÝ©Ê«ü©w¶µ¥Ø·sªº RDN¡C

deleteOldRdn

­Y¬O modrdn §@·~¡A¦¹ÄÝ©Ê«ü©w¬O§_§R°£Âªº RDN¡C

newSuperior

­Y¬O modrdn §@·~¡A¦¹ÄÝ©Ê«ü©w¶µ¥Øªº newSuperior ÄÝ©Ê¡C

±Ò¥Î°l·¹Åܧó°O¿ý¥~±¾µ{¦¡

°l·¹Åܧó°O¿ý¥~±¾µ{¦¡ªº²ÕºA¸ê°TÀx¦s¦b dse.ldif ªº cn=Retro Changelog Plugin,cn=plugins,cn=config ¶µ¥Ø¤¤¡C

­Y­n±q Directory Server ¥D±±¥x±Ò¥Î°l·¹Åܧó°O¿ý¥~±¾µ{¦¡¡G

  1. ¦b Directory Server ¥D±±¥x³Ì¤W¼hªº [²ÕºA] ¼ÐÅÒ¤W¡A®i¶} [¥~±¾µ{¦¡] ¸`ÂI¡A¨Ã¦V¤U±²°Ê¥H¿ï¾Ü [Retro Changelog Plugin]¡C
  2. ¦b¥k­±ªO¤¤®Ö¨ú [±Ò¥Î¥~±¾µ{¦¡] ®Ö¨ú¤è¶ô¡A¦A«ö¤@¤U [Àx¦s]¡C­Y­n°±¥Î¥~±¾µ{¦¡¡A½Ð²M°£¦¹®Ö¨ú¤è¶ô¡C
  3. ±Ò¥Î©Î°±¥Î¥~±¾µ{¦¡«á¡A±z¥²¶·­«·s±Ò°Ê¥Ø¿ý¦øªA¾¹¡C

­Y­n±q«ü¥O¦æ±Ò¥Î°l·¹Åܧó°O¿ý¥~±¾µ{¦¡¡G

  1. ¨Ï¥Î¤U¦C«ü¥O­×§ï°l·¹Åܧó°O¿ý¥~±¾µ{¦¡²ÕºA¶µ¥Ø¡G
  2. ldapmodify -h host -p port -D "cn=Directory Manager" -w password
    dn:cn=Retro Changelog Plugin,cn=plugins,cn=config
    changetype:modify
    replace:nsslapd-pluginenabled
    nsslapd-pluginenabled:on

  3. ­«·s±Ò°Ê¦øªA¾¹¡C¦p»ÝÃö©ó­«·s±Ò°Ê¦øªA¾¹ªº¸ê°T¡A½Ð°Ñ¾\<±Ò°Ê©M°±¤î Diectory Server>¡C

½Õ¾ã°l·¹Åܧó°O¿ý

Åܧó°O¿ý¤¤ªº¶µ¥Ø¥i¦b«ü©wªº®É¶¡«á¦Û°Ê²¾°£¡C­Y­n³]©w¦b¤@¬q®É¶¡«á¦Û°Ê±N¶µ¥Ø±qÅܧó°O¿ý¤¤§R°£¡A±z¥²¶·¦b cn=Retro Changelog Plugin, cn=plugins, cn=config ¶µ¥Ø¤¤³]©w nsslapd-changelogmaxage ²ÕºAÄÝ©Ê¡C¦¹ÄÝ©Ê¥u¯à±q«ü¥O¦æ³]©w¡A¨Ò¦p¡G

ldapmodify -h host -p port -D "cn=Directory Manager" -p password
dn:cn=Retro Changelog Plugin,cn=plugins,cn=config
changetype:modify
replace:nsslapd-changelogmaxage
nsslapd-changelogmaxage:
IntegerTimeunit

nsslapd-changelogmaxage ÄݩʬO³æ­ÈÄÝ©Ê¡A¨ä®æ¦¡¬°¡G

nsslapd-changelogmaxage:IntegerTimeunit

¨ä¤¤ Integer ¥Nªí¤@­Ó¼Æ¦r¡A¦Ó TimeUnit ¥i¬°¨ä¤¤¤@­Ó¤U¦C­È¡Gs ¥Nªí¬í¡Bm ¥Nªí¤ÀÄÁ¡Bh ¥Nªí¤p®É¡Bd ¥Nªí¤é©Î w ¥Nªí¬P´Á¡CInteger »P Timeunit ÅܼƤ§¶¡¨S¦³ªÅ®æ¡A¨Ò¦p¡G

nsslapd-changelogmaxage:2d

¦bÅܧó°O¿ýªº¤U¤@¨B§@·~¤¤¡A·|½Õ¾ã°l·¹Åܧó°O¿ý¡C

¦s¨ú°l·¹Åܧó°O¿ý

Åܧó°O¿ý¤ä´©·j´M§@·~¡C¥¦¤w°w¹ï¥]§t¤U¦C®æ¦¡¤§¿z¿ï±ø¥óªº·j´M³Ì¨Î¤Æ¡G

(&(changeNumber>=X)(changeNumber<=Y))

¤@¯ë¦Ó¨¥¡A±z¤£À³¸Ó¹ï°l·¹Åܧó°O¿ý°õ¦æ¥[¤J©Î­×§ï§@·~¡A¦ý±z¥i¥H§R°£¶µ¥Ø¥H½Õ¾ãÅܧó°O¿ýªº¤j¤p¡F°ß¤@»Ý­n¹ï°l·¹Åܧó°O¿ý°õ¦æ­×§ï§@·~ªº¾÷·|¬O­×§ï¹w³]¦s¨ú±±¨î­ì«h¡C

«Ø¥ß°l·¹Åܧó°O¿ý®É¡A·|¹w³]®M¥Î¤U¦C¦s¨ú±±¨î­ì«h¡G

  • Ū¨ú¡B·j´M»P¤ñ¸ûÅv­­·|±Â»P°l·¹Åܧó°O¿ý³Ì¤W¼h¶µ¥Ø cn=changelog ªº©Ò¦³ÅçÃÒ¨Ï¥ÎªÌ (userdn=anyone¡A¦b userdn=all ³B¨Ï¥Î°Î¦W¦s¨ú¤£·|¾D¨ì©Úµ´)¡C
  • °£¤FÁô§t¦a±Â»P¥Ø¿ýºÞ²z­ûÅv­­¥~¡A¤£±Â»P¼g¤J»P§R°£¦s¨ú¡C

±z¤£À³¸Ó±NŪ¨ú¦s¨ú±Â»P°Î¦W¨Ï¥ÎªÌ¡A¦]¬°Åܧó°O¿ý¶µ¥Ø¤º¥i¯à¥]§t¹ï±Ó·P¸ê®Æ (¨Ò¦p±K½X) ªº­×§ï¡C¦pªG³sÅçÃҨϥΪ̳£¤£³Q¤¹³\À˵ø°O¿ý¤º®e¡A±z¥i¯à§Æ±æ¶i¤@¨B­­¨î¦s¨ú°l·¹Åܧó°O¿ýªº¤º®e¡C

­Y­n­×§ï®M¥Î¦b°l·¹Åܧó°O¿ýªº¹w³]¦s¨ú±±¨î­ì«h¡A±zÀ³¸Ó­×§ï cn=changelog ¶µ¥Øªº aci ÄÝ©Ê¡C¦p»ÝÃö©ó³]©w aci Äݩʪº¸Ô²Ó¸ê°T¡A½Ð°Ñ¾\²Ä 6 ³¹<ºÞ²z¦s¨ú±±¨î>¡C

ºÊ±±½Æ¼gª¬ºA

±z¥i¥H¨Ï¥Î·sªº«ü¥O¦æ¤u¨ã¤Î Directory Server ¥D±±¥x¨ÓºÊ±±½Æ¼gª¬ºA¡C

«ü¥O¦æ¤u¨ã

¦³¤T­Ó·sªº«ü¥O¦æ¤u¨ã¥i¥Î©óºÊ±±±zªº½Æ¼g³¡¸p¡G

  • repldisc - ¡u´M§ä¡v¤Î«Øºc½Æ¼g³¡¸p¤¤©Ò¦³¤wª¾¦øªA¾¹ªºªí®æ¡C
  • insync - «ü¥X¨ÑÀ³°Ó»P¤@©Î¦h­Ó¥Î¤á½Æ¥»¤§¶¡ªº¦P¨Bª¬ºA¡C
  • entrycmp - ¤ñ¸û¨â­Ó©Î¦h­Ó½Æ¥»¤º¬Û¦Pªº¶µ¥Ø¡C

³o¨Ç¤u¨ã¦ì¦b¤U¦C¥Ø¿ý¤º¡G

ServerRoot/shared/bin

¦p»Ý³o¨Ç¤u¨ãªº§¹¾ã«ü¥O¦æ»yªk©M¥Îªk½d¨Ò¡A½Ð°Ñ¾\¡mSun ONE Directory Server °Ñ¦Ò¤â¥U¡n²Ä 1 ³¹ªº<ºÊ±±½Æ¼g¤u¨ã>¡C

½Æ¼gª¬ºA¼ÐÅÒ

­Y­n¦b Directory Server ¥D±±¥x¤¤À˵ø½Æ¼gª¬ºAºK­n¡G

  1. ¦b Directory Server ¥D±±¥x¤W¼hªº [ª¬ºA] ¼ÐÅÒ¤W¡A¿ï¾Ü [½Æ¼g] ¸`ÂI¡C
  2. ¥k­±ªO·|Åã¥Üªí®æ¡Aªí®æ¤¤¥]§t¬°¦¹¦øªA¾¹³]©w¤§¨C­Ó½Æ¼g¨óijªº¬ÛÃö¸ê°T¡C

  3. ¦pªG­nºÊ±±½Æ¼gª¬ºA¡A½Ð¿ï¾Ü [Ä~Äò­«·s¾ã²z] ®Ö¨ú¤è¶ô¡C¨Ò¦p¡A±z·|¬Ý¨ì½Æ¥»¦ó®É§¹¦¨ªì©l¤Æ¡C
  4. ¦pªG±z­n§PÂ_¥D¾÷¤W©|¥¼½Æ¼g¨ì¥Î¤áªº³Ì«á¤@¦¸­×§ï¡A½Ð«ö¤@¤U [ÀÁ¸mÅܧó¼Æ] «ö¶s¡C¨t²Î·|ĵ§i±z¦¹§@·~¥i¯à·|¯Ó¶O¬Û·íªøªº®É¶¡¡A¨Ã½Ð±z½T»{¡C§PÂ_ÀÁ¸mÅܧó¼Æ»Ý­n¤U¸ü§ó·sªº¥Î¤á°O¿ý¡A¨Ã±N¥¦»P¥D¾÷ªºÅܧó°O¿ý¤ñ¸û¡C¦pªG°O¿ý«D±`¦h¡A¦¹§@·~¥i¯à·|¯Ó¶O«Ü¦h®É¶¡»P¦øªA¾¹¸ê·½¡C
  5. ±z¥i¥H«ö¤@¤UÄæ¼ÐÀY¨Ã½Õ¾ã¨ä¤j¤p¡A¨Ó­×§ïªí®æ§G§½¡C±z¤]¥i¥H«ö¤@¤U [À˵ø¿ï¶µ] «ö¶s¡A¨Ã¥B¥u¿ï¾Ü­n¬d¬Ýªº¶µ¥Ø¡A¨Ó­×§ïªí®æ¤º®e¡C¤U¦Cªºªí 8-3 »¡©ú±z¥i¿ï¾Üªí®æ¤¤­n¬°¦¹¦øªA¾¹¤Wªº¨C­Ó¨óijÅã¥Üªº½Æ¼g°Ñ¼Æ¡C
  6. ªí 8-3    Directory Server Console [ª¬ºA] ¼ÐÅÒ¤Wªº½Æ¼g°Ñ¼Æ 

    ªí®æ¼ÐÀY

    ´y­z

    §À½X

    Á|¥X¥¿¦b½Æ¼gªº§À½X»P¤l§À½X¡C

    »·ºÝ½Æ¥»

    ¥]§t¥Î¤á¦øªA¾¹ªº¥D¾÷¦WºÙ»P³s±µ°ð¡C

    ´y­z

    ¥]§t¦b¦¹½Æ¼g¨óij¤¤´£¨Ñªº´y­z¦r¦ê¡C

    ª¬ºA

    ªí¥Ü¨óij¬O§_¤w°±¥Î¡B¥¿ªì©l¤Æ¥Î¤á¡A©Î³z¹L¼W¶q§ó·s¶i¦æ¥¿±`½Æ¼g¡C

    ºK­n

    ¥]§t³Ìªñ¨Æ¥ó (ªì©l¤Æ©Î§ó·sªº¶}©l©Îµ²§ô) ¥H¤Î©Ò±µ¦¬ªº³Ì·s°T®§¡C

    ¶Ç°e§ó·s

    ¦Û±Ò¥Î½Æ¼g©Î­«·s±Ò°Ê¦øªA¾¹°_¡A¶Ç°e¨ì¥Î¤áªº­Ó§O§ó·s²Ö¿nÁ`¼Æ¡C

    ³Ì«á§ó·s¶}©l

    ªí¥Ü³Ìªñ¤@¦¸½Æ¼g§ó·sªº¶}©l®É¶¡¡C

    ³Ì«á§ó·sµ²§ô

    «ü¥Ü³Ìªñ¤@¦¸½Æ¼g§ó·sªºµ²§ô®É¶¡¡C

    ³Ì«á§ó·s°T®§

    ´£¨Ñ³Ìªñ¤@¦¸½Æ¼g§ó·sªºª¬ºA¡C

    ³Ì«áªì©l¤Æ°T®§

    ´£¨Ñ¥Î¤á³Ì«á¤@¦¸ªºªì©l¤Æª¬ºA¡C

    ³Ì«áªì©l¤Æ¶}©l

    «ü¥Ü¥Î¤á½Æ¥»³Ìªñ¤@¦¸ªì©l¤Æªº¶}©l®É¶¡¡C

    ³Ì«áªì©l¤Æµ²§ô

    «ü¥X¥Î¤á½Æ¥»³Ìªñ¤@¦¸ªì©l¤Æªºµ²§ô®É¶¡¡C

¸Ñ¨M¤@¯ë½Æ¼g½Ä¬ð

¦h­«¥D¾÷½Æ¼g¨Ï¥Î¤£ÄY®æªº¤@­P©Ê½Æ¼g¼Ò¦¡¡C³oªí¥Ü¥i¥H¦P®É¦b¤£¦P¦øªA¾¹¤W­×§ï¬Û¦Pªº¶µ¥Ø¡C¦]¦¹¦b¨â³¡¦øªA¾¹¤§¶¡¶Ç°e§ó·s®É¡A«K»Ý­n¸Ñ¨M½Ä¬ðªºÅܧó¡C¸Ñ¨M½Ä¬ð¦h¥b·|¦Û°Ê°õ¦æ¡A¨Ã¥H¨C³¡¦øªA¾¹¤WÅܧó¬ÛÃöªº®É¶¡ÂW°O¬°·Ç¡C¥H³ÌªñªºÅܧóÀu¥ý¡C

µM¦Ó¡A¦³¨Ç±¡ªp¥²¶·³z¹L¤â°Ê¾Þ§@¡A¤~¯à¸Ñ¨M½Ä¬ðªºÅܧó¡C­Y¶µ¥Ø¥ÑµLªk¥Ñ½Æ¼g³B²z¦Û°Ê¸Ñ¨MªºÅܧó½Ä¬ð¡A«h¸Ó¶µ¥Ø·|¥]§t nsds5ReplConflict §@·~Äݩʧ@¬°½Ä¬ð¼Ð¥Ü¡C

½Ð©w´Á·j´M¥]§t¦¹Äݩʪº¶µ¥Ø¡A¥H§ä¥Xµo¥Í½Ä¬ðªº¶µ¥Ø¡C¨Ò¦p¡A±z¥i¥H¨Ï¥Î¤U¦C ldapsearch «ü¥O¡G

% ldapsearch -h host -p port -D "cn=Directory Manager" -w password \
-b "dc=example,dc=com" "(nsds5ReplConflict=*)"

½Ðª`·N¡A¹w³]ª¬ªp¤U nsds5ReplConflict ÄÝ©Ê·|½s»s¯Á¤Þ¡C

¸Ñ¨M©R¦W½Ä¬ð

¥Î¬Û¦Pªº DN ¦b¤£¦P¦øªA¾¹¤W«Ø¥ß¨â­Ó¶µ¥Ø®É¡A½Æ¼gªº½Ä¬ð¸Ñ¨M¾÷¨î·|¦Û°Ê±N²Ä¤G­Ó«Ø¥ßªº¶µ¥Ø­«·s©R¦W¡C¨C¤@­Ó¥Ø¿ý¶µ¥Ø³£¥]§t¤@­Ó¥Ñ nsuniqueid §@·~ÄÝ©Ê©Ò«ü©wªº°ß¤@ÃѧO½X¡A·íµo¥Í©R¦W½Ä¬ð®É¡A´N·|±N³o­Ó°ß¤@ªº ID ªþ¥[¨ì¤£°ß¤@ªº DN «á­±¡C

¦pªG«Ø¥ß²Ä¤G­Ó DN ®É²Ä¤@³¡¦øªA¾¹©|¥¼±N§ó·s½Æ¼g¨ì²Ä¤G³¡¦øªA¾¹¡A´N¥i¯à¦b¨â³¡¦øªA¾¹¤W«Ø¥ß¨â­Ó¨Ï¥Î¬Û¦P DN ªº¶µ¥Ø¡C¨Ò¦p¡A¦pªG¦P®É¦b¨â­Ó¥D¾÷¤W«Ø¥ß¶µ¥Ø uid=bjensen,ou=People,dc=example,dc=com¡A½Æ¼g«á¨â­Ó¥D¾÷¤W·|¦³¤U¦C¨â­Ó¶µ¥Ø¡G

  • uid=bjensen,ou=People,dc=example,dc=com
  • nsuniqueid=66446001-1dd211b2+uid=bjensen,dc=example,dc=com

²Ä¤G­Ó¶µ¥Ø¥²¶·­«·s©R¦W¡A¨Ï¥¦¨ã¦³°ß¤@ªº DN¡C±z¥i¥H§R°£½Ä¬ðªº¶µ¥Ø¡AµM«á¦A¥H¤£¬Û½Ä¬ðªº¦WºÙ¥[¤J¡CµM¦Ó¡A«O«ù¶µ¥Ø³Ì¦w¥þªº§@ªk¬O¦b«Ø¥ß®É´N­«·s©R¦W¥¦¡C­«·s©R¦Wµ{§Ç¶·µø©R¦WÄݩʬO³æ­È©Î¦h­«­ÈÄݩʦөw¡C¨C­Óµ{§Ç¤À§O»¡©ú¦p¤U¡C

­«·s©R¦W¦h­«­È©R¦WÄݩʪº¶µ¥Ø

­Y­n­«·s©R¦W¨ã¦³¦h­«­È©R¦WÄݩʪº½Ä¬ð¶µ¥Ø¡G

  1. ¥Î·s­È¬°©R¦WÄݩʶµ¥Ø­«·s©R¦W¡A¨Ã«O¯dªº RDN¡C¨Ò¦p¡G
  2. ldapmodify -h host -p port -D "cn=Directory Manager" -w password

    dn:nsuniqueid=66446001-1dd211b2+uid=bjensen,dc=example,dc=com
    changetype:modrdn
    newrdn:uid=
    NewValue
    deleteoldrdn: 0
    ^D

  3. ²¾°£©R¦WÄݩʪº RDN ­È©M½Ä¬ð¼Ð¥ÜÄÝ©Ê¡C¨Ò¦p¡G
  4. ldapmodify -h host -p port -D "cn=Directory Manager" -w password

    dn:uid=NewValue,dc=example,dc=com
    changetype:modify
    delete:uid
    uid:bjensen
    -
    delete:nsds5ReplConflict
    ^D



    ª`·N

    ­×§ï RDN ªºµ{§Ç»Ý­n¨â­Ó¨BÆJ¡A¦]¬°±z¤£¯à§R°£°ß¤@ÃѧO½XÄÝ©Ê nsuniqueid¡C



­«·s©R¦W³æ­È©R¦WÄݩʪº¶µ¥Ø

©R¦WÄݩʬ°³æ­È®É¡A±z¤£¯à¥u¬O­«·s©R¦W¶µ¥Ø¬°¬Û¦PÄݩʪº¨ä¥L­È¡C¦Ó¬O¼È®É¡G

  1. ¥Î¤£¦Pªº©R¦WÄݩʬ°¶µ¥Ø­«·s©R¦W¡A¨Ã«O¯dªº RDN¡C¨Ò¦p¡G
  2. ldapmodify -h host -p port -D "cn=Directory Manager" -w password

    dn:nsuniqueid=66446001-1dd211b2+dc=HR,dc=example,dc=com
    changetype:modrdn
    newrdn:o=
    TempName
    deleteoldrdn: 0
    ^D

  3. ²¾°£©R¦WÄݩʪº RDN ­È©M½Ä¬ð¼Ð¥ÜÄÝ©Ê¡C¨Ò¦p¡G
  4. ldapmodify -h host -p port -D "cn=Directory Manager" -w password

    dn:o=TempName,dc=example,dc=com
    changetype:modify
    replace:dc
    dc:
    uniqueValue
    -
    delete:nsds5ReplConflict
    ^D



    ª`·N

    ­×§ï RDN ªºµ{§Ç»Ý­n¨â­Ó¨BÆJ¡A¦]¬°±z¤£¯à§R°£°ß¤@ÃѧO½XÄÝ©Ê nsuniqueid¡C



  5. ¥Î·sªº¡B¤£¬Û½Ä¬ðªº­È¬°¹w´Áªº©R¦WÄݩʶµ¥Ø­«·s©R¦W¡C¨Ò¦p¡G
  6. ldapmodify -h host -p port -D "cn=Directory Manager" -w password

    dn:o=TempName,dc=example,dc=com
    changetype:modrdn
    newrdn:dc=
    uniqueValue
    deleteoldrdn: 1
    ^D

ÂǥѱN deleteoldrdn Äݩʪº­È³]¬° 1¡A¥i§R°£¼È®ÉªºÄÝ©Ê­È°t¹ï o=TempName¡C¦pªG­n«O¯d¦¹ÄÝ©Ê¡A±z¥i¥H±N deleteoldrdn Äݩʭȳ]¬° 0¡C

¸Ñ¨M¿ò¯d¶µ¥Ø½Ä¬ð

·í½Æ¼g§R°£ªº§@·~®É¡A­Y¥Î¤á¦øªA¾¹µo²{³Q§R°£ªº¶µ¥ØÁÙ¦³¤l¶µ¥Ø¡A«h½Ä¬ð¸Ñ¨Mµ{§Ç·|«Ø¥ß±µ¦X¶µ¥Ø¡A¥HÁקK¥Ø¿ý¤¤¦³¿ò¯dªº¶µ¥Ø¡C

¦P¼Ë¦a¡A·í½Æ¼g¥[¤J§@·~®É¡A­Y¥Î¤á¦øªA¾¹§ä¤£¨ì¤÷¶µ¥Ø¡A«h½Ä¬ð¸Ñ¨Mµ{§Ç·|«Ø¥ß¥Nªí¤÷¶µ¥Øªº±µ¦X¶µ¥Ø¡A¨Ï·s¶µ¥Ø¤£·|¦¨¬°¿ò¯d¶µ¥Ø¡C

±µ¦X¶µ¥Ø¬O¥]§tª«¥óÃþ§O glue »P extensibleObject ªº¼È®É¶µ¥Ø¡C±µ¦X¶µ¥Ø¥i¥H¨Ï¥Î¤£¦Pªº¤è¦¡«Ø¥ß¡G

  • ¦pªG½Ä¬ð¸Ñ¨Mµ{§Çµo²{¦³¬Û²Å°ß¤@ÃѧO½Xªº¤w§R°£¶µ¥Ø¡A±µ¦X¶µ¥Ø´N¬O«ì´_¨Ï¥Î¸Ó¶µ¥Ø¡A¨Ã¥[¤W glue ª«¥óÃþ§O¤Î nsds5ReplConflict ÄÝ©Ê¡C
  • ¦b¦¹±¡ªp¤U¡A±z¥i¥H­×§ï±µ¦X¶µ¥Ø¡A¥H²¾°£ glue ª«¥óÃþ§O¤Î nsds5ReplConflict ÄÝ©Ê¡A±N¶µ¥Ø«O¯d¬°¥¿±`¶µ¥Ø¡A©ÎªÌ±z¥i¥H§R°£±µ¦X¶µ¥Ø¤Î¨ä¤l¶µ¥Ø¡C

  • ¦øªA¾¹«Ø¥ß¥u§t glue »P extensibleObject ª«¥óÃþ§Oªº³Ì¤p¶µ¥Ø¡C
  • ¦b¦¹±¡ªp¤U¡A±z¥²¶·­×§ï¶µ¥Ø±N¥¦Åܦ¨¦³·N¸qªº¶µ¥Ø¡A©Î§R°£¥¦¤Î¨ä©Ò¦³¤l¶µ¥Ø¡C

¸Ñ¨M¼ç¦bªº¥æ¤¬¾Þ§@©Ê°ÝÃD

¬°¤FÅý»Ý­nÄݩʰߤ@©Êªº³oÃþÀ³¥Îµ{¦¡ (¦p¶l¥ó¦øªA¾¹) ¯à°÷¨ã¦³¥æ¤¬¾Þ§@©Ê¡A±z¥i¯à¥²¶·­­¨î¦s¨ú¥]§t nsds5ReplConflict Äݩʪº¶µ¥Ø¡C¦pªG¤£­­¨î¦s¨ú³o¨Ç¶µ¥Ø¡A¥u»Ý­n¤@­ÓÄݩʪºÀ³¥Îµ{¦¡±N¦P®É¬D¿ï­ì©l¶µ¥Ø»P¥]§t nsds5ReplConflict ªº½Ä¬ð¸Ñ¨M¶µ¥Ø¡A¾É­P§@·~¥¢±Ñ¡C

­Y­n­­¨î¦s¨ú¡A±z¥²¶·¨Ï¥Î¤U¦C«ü¥O­×§ï±Â»P°Î¦WŪ¨ú¦s¨úªº¹w³] ACI¡G

ldapmodify -h hostname -D "cn=Directory Manager" -w password

dn:dc=example,dc=com
changetype:modify
delete:aci
aci:(target ="ldap:///dc=example,dc=com")
 (targetattr !="userPassword"
 (version 3.0;acl "Anonymous read-search  access";
 allow (read, search, compare)(userdn = "ldap:///anyone");)
-
add:aci
aci:(target="ldap:///dc=example,dc=com")
 (targetattr!="userPassword")
 (targetfilter="(!(nsds5ReplConflict=*))")(version 3.0;acl
 "Anonymous read-search access";allow (read, search, compare)
 (userdn="ldap:///anyone");)
^D

·sªº ACI ·|±q·j´Mµ²ªG¤¤¿z¿ï±¼¥]§t nsds5ReplConflict Äݩʪº©Ò¦³¶µ¥Ø¡C


¤W¤@³¹     ¥Ø¿ý     ¯Á¤Þ     »¡©ú¤å¥ó­º­¶     ¤U¤@³¹    
ª©Åv©Ò¦³ 2003 Sun Microsystems, Inc. «O¯d©Ò¦³Åv§Q¡C