Specifications

77
Use this chapter to learn how to set up Open Directory
services, including congurations, roles, master and
replica LDAP service options, and single sign-on Kerberos
authentication.
Setup Overview
Open Directory services—directory services and authentication services—are an
essential part of a networks infrastructure. These services have a signicant eect
on other network services and on users. Therefore you must set up Open Directory
correctly from the beginning. Here is a summary of the major tasks you perform to
set up Open Directory services. For detailed information about each step, see the
pages indicated.
Step 1: Before you begin, do some planning.
For a list of items to think about before you congure Open Directory on Mac OS X
Server, see “Before You Begin on page 78.
Step 2: Turn on Open Directory service.
Use Server Admin to turn the Open Directory service on. After the service is on you
can congure Open Directory service settings. For more information about turning on
Open Directory service, see Turning Open Directory On on page 79.
Step 3: Set up a standalone directory service.
To set up servers that won’t get authentication and other administrative information
from another directory service, see “Setting Up a Standalone Directory Service on
page 80.
Step 4: Set up an Open Directory master.
To set up a server to provide directory and authentication services, see “Open Directory
Master and Replica Compatibility on page 64 and “Setting Up an Open Directory
Master on page 81.
5
Setting Up Open Directory
Services