data:image/s3,"s3://crabby-images/21813/21813ad39dc009d10bb41cb6b870464a645ec398" alt="Cray Urika-GX Administration Manual Download Page 226"
Procedure
1. Log on to the LDAP host server as root.
2. Generate a new hashed password.
#
slappasswd
New password:
Re-enter new password:
{SSHA}ZNYj4jyMpTo3xfln0lxpirj0ZyuKVa24
3. Make a back up copy of the
/usr/local/openldap/etc/openldap/slapd.conf
file.
4. Edit the
/usr/local/openldap/etc/openldap/slapd.conf
file, replacing values for the two '
rootpw
'
entries with the hashed password output of the
slappasswd
command.
#local database urika
database bdb
idlcachesize 50000
suffix "dc=urika,dc=com"
rootdn "cn=crayadm,dc=urika,dc=com"
rootpw {SSHA}ZNYj4jyMpTo3xfln0lxpirj0ZyuKVa24
cachesize 50000
dirtyread
dbnosync
checkpoint 128 15
idlcachesize 50000
index objectClass eq
#database meta - COMBINES the LDAP DATABASES
database meta
suffix "dc=local"
rootdn "cn=crayadm,dc=local"
rootpw {SSHA}ZNYj4jyMpTo3xfln0lxpirj0ZyuKVa24
5. Restart the
slapd
service.
#
service slapd restart
6. Verify that the password has been reset by executing the
ldap
command and using the new password for
cn=crayadm,dc=urika,dc=com
, provided to the
slappasswd
command above.
# ldapsearch -D "cn=crayadm,dc=urika,dc=com" -W -p 389 -h localhost -b "ou=groups,dc=urika,dc=com" -t cn
Enter LDAP Password: (enter new password here)
7.9.8
Reset an Administrator LDAP Password when the OLC Schema Password is
Unknown
Prerequisites
●
This procedure requires root privileges.
Security
S3016
226