Specifications

Chapter 8 Advanced Directory Client Settings 13 5
7 In the list of services, select LDAPv3 and click the Edit (/) button.
8 Click the Show Options control or the Hide Options control, whichever is present.
Conguring Access to an LDAP Directory
Using Directory Utility, you can specify how Mac OS X accesses an LDAPv3 directory if
you know the DNS name or IP address of the LDAP directory server.
If the directory is not hosted by a server that supplies its own mappings (such as
Mac OS X Server) you must know the search base and the template for mapping
Mac OS X data to the directorys data.
Supported mapping templates are:
 Open Directory Server, for a directory that uses the Mac OS X Server schema
 Active Directory, for a directory hosted by a Windows 2000, Windows 2003, or
later server
 RFC 2307, for most directories hosted by UNIX servers
The LDAPv3 plug-in fully supports Open Directory replication and failover. If the Open
Directory master becomes unavailable, the plug-in falls back to a nearby replica.
To specify custom mappings for the directory data, follow the instructions in
Conguring Access to an LDAP Directory Manually” on page 137 instead of the
instructions here.
Important: If your computer name contains a hyphen, you might not be able to join or
bind to a Directory Domain such as LDAP or Active Directory. To establish binding, use
a computer name that does not contain a hyphen.
To have Directory Utility help you congure access to an LDAP directory:
1 Open System Preferences and click Accounts.
2 If the lock icon is locked, unlock it by clicking it and entering the name and password
of an administrator.
3 Click Login Options, then click Join or Edit.
4 Click Open Directory Utility.
5 If the lock icon is locked, unlock it by clicking it and entering the name and password
of an administrator.
6 Click Services.
7 In the list of services, select LDAPv3 and click the Edit (/) button.
You can select LDAPv3 in the list of services without selecting the Enable checkbox
for LDAPv3.
8 Click New and enter the LDAP servers DNS name or IP address.