Caveats for Implementing OES 2 Services
61
The users Group
There is another default system-created group named
users
that is not used by OES 2 services but is
nevertheless created on all SLES 10 (and therefore, OES 2) servers.
Creating an eDirectory group named
users
would seem logical to many administrators. And as with
the shadow group, nothing prevents you from using this name.
Unfortunately, having a LUM-enabled eDirectory group named
users
is not a viable configuration
for services requiring POSIX access. The local
users
group is always checked first, and the LUM-
enabled
users
group in eDirectory won’t be seen by POSIX.
NOTE:
Do not confuse eDirectory Group objects with Organizational Unit (OU) container objects.
Creating an OU container in eDirectory named
users
is a valid option and does not create conflicts
with POSIX.
Other Non-System Groups
Conflicts between group and user names also occur when administrators create local and eDirectory
groups with the same name.
For example, one administrator creates a group named
myusers
on the local system and another
creates a LUM-enabled group in eDirectory with the same name. Again, the LUM-enabled users
who are members of the eDirectory group won’t have access through POSIX.
This is why we recommend that, as a general rule, administrators should not create local users or
groups on OES 2 servers. You should only make exceptions when you have determined that using
LUM-enabled users and groups is not a viable option and that objects with the same names as the
POSIX users and groups will not be created in eDirectory in the future.
6.2.3 Avoiding Duplication
Having duplicate users and groups is easily avoided by following these guidelines:
“Use YaST to List All System-Created Users and Groups” on page 61
“Create Only eDirectory Users and Groups” on page 62
Use YaST to List All System-Created Users and Groups
We recommend that you use the YaST Group Management/User Management module to check for
names you might duplicate by mistake.
1. Open the YaST Control Center.
2. Click either
Group Management
or
User Management
.
3. Click
Set Filter > Customize Filter
.
4. Select both options (
Local
and
System
), then click
OK
.
All users or groups as displayed, including those that exist only in eDirectory and are LUM-
enabled.
5. To avoid duplication, keep this list in mind as you create eDirectory users and groups.
Содержание OPEN ENTERPRISE SERVER - CONVERSION GUIDE 12-2010
Страница 12: ...12 OES 2 SP3 Planning and Implementation Guide...
Страница 24: ...24 OES 2 SP3 Planning and Implementation Guide...
Страница 50: ...50 OES 2 SP3 Planning and Implementation Guide...
Страница 74: ...74 OES 2 SP3 Planning and Implementation Guide...
Страница 78: ...78 OES 2 SP3 Planning and Implementation Guide...
Страница 80: ...80 OES 2 SP3 Planning and Implementation Guide...
Страница 96: ...96 OES 2 SP3 Planning and Implementation Guide...
Страница 146: ...146 OES 2 SP3 Planning and Implementation Guide...
Страница 176: ...176 OES 2 SP3 Planning and Implementation Guide...
Страница 210: ...210 OES 2 SP3 Planning and Implementation Guide...
Страница 218: ...218 OES 2 SP3 Planning and Implementation Guide...
Страница 226: ...226 OES 2 SP3 Planning and Implementation Guide...
Страница 234: ...234 OES 2 SP3 Planning and Implementation Guide...
Страница 236: ...236 OES 2 SP3 Planning and Implementation Guide...
Страница 244: ...244 OES 2 SP3 Planning and Implementation Guide...
Страница 246: ...246 OES 2 SP3 Planning and Implementation Guide...
Страница 250: ...250 OES 2 SP3 Planning and Implementation Guide...
Страница 254: ...254 OES 2 SP3 Planning and Implementation Guide...
Страница 258: ...258 OES 2 SP3 Planning and Implementation Guide...
Страница 284: ...284 OES 2 SP3 Planning and Implementation Guide...
Страница 286: ...286 OES 2 SP3 Planning and Implementation Guide...
Страница 294: ...294 OES 2 SP3 Planning and Implementation Guide...