![Netscape NETSCAPE DIRECTORY SERVER 6.02 Скачать руководство пользователя страница 131](http://html1.mh-extra.com/html/netscape/netscape-directory-server-6-02/netscape-directory-server-6-02_administrators-manual_1674673131.webp)
Creating and Maintaining Database Links
Chapter
3
Configuring Directory Databases
131
dn: cn=server2 proxy admin,cn=config
objectclass: person
objectclass: organizationalPerson
objectclass: inetOrgPerson
cn: server2 proxy admin
sn: server2 proxy admin
userPassword: secret
description: Entry for use by database links
Then you need to add the same local proxy authorization ACI to server three as
you did on server two. Add the following proxy authorization ACI to the
l=Zanzibar,ou=people,dc=example,dc=com
entry:
aci: (targetattr = "*")(version 3.0; acl "Proxied authorization for
database links"; allow (proxy) userdn = "ldap:///cn=server2 proxy
admin,cn=config";)
This ACI gives the server2 proxy admin read-only access to the data contained on
the remote server, server three, within the
l=Zanzibar,ou=people,dc=example,dc=com
subtree only.
You then need to create an local client ACI on the
l=Zanzibar,ou=people,dc=example,dc=com
subtree that corresponds to the
original client application. Use the same ACI as the one you created for the client
on server two:
aci: (targetattr =
"*")(target="l=Zanzibar,c=africa,ou=people,dc=example,dc=com")(vers
ion 3.0; acl "Client authentication for
database link users"; allow
(all) userdn = "ldap:///uid=*,c=us,ou=people,dc=example,dc=com";)
Once you have completed all these steps your cascading chaining configuration is
set up. This cascading configuration will allow you to bind to server one and
modify information in the
l=Zanzibar,c=africa,ou=people,dc=example,dc=com
branch on server three.
Depending on your security needs you may or may not want to provide more
detailed access control.
Содержание NETSCAPE DIRECTORY SERVER 6.02
Страница 1: ...Administrator s Guide Netscape Directory Server Version6 02 May 2002 ...
Страница 16: ...16 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 20: ...20 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 40: ...Starting the Server in Referral Mode 40 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 74: ...Maintaining Referential Integrity 74 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 138: ...Using Referrals 138 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 258: ...Compatibility with Earlier Releases 258 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 274: ...Setting Resource Limits Based on the Bind DN 274 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 330: ...Solving Common Replication Conflicts 330 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 374: ...Attribute Name Quick Reference Table 374 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 390: ...Configuring LDAP Clients to Use SSL 390 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 412: ...Monitoring Database Link Activity 412 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 432: ...Miscellaneous Tuning Tips 432 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 434: ...434 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 468: ...PTA Plug In Syntax Examples 468 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 488: ...488 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 502: ...Storing Information in Multiple Languages 502 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 522: ...Searching an Internationalized Directory 522 Netscape Directory Server Administrator s Guide May 2002 ...
Страница 528: ...Examples of LDAP URLs 528 Netscape Directory Server Administrator s Guide May 2002 ...