Specifications

188 Index
disabling domain 66, 68, 69
enabling and disabling access 85
migrating domain to LDAP 66
parent 109
port configuration 112
shared domain 30
switching clients to LDAP 68
NetInfo Manager 52, 111, 112
network authentication methods 173
network services
data items used by 165–166
discovery protocols 25
NIS, accessing 107
NT authentication 36, 175
NT hash 40
O
object classes 126
offline attack 41
Open Directory
See also directory services
access privileges and 20
administrator rights 80
authentication 16
automount share points and 20
compared to UNIX systems 18
configuring protocols 83
group records and 20
home directories and 20
information management 19, 26
information storage in 14, 25
mail settings and 20
performance 48
planning 43
quotas and 20
schema 126
searching non-Apple domains 24
search policies 27–32
service discovery and 25
UNIX heritage 16
uses of 19–20
Open Directory master
about 47
backing up 118
failover to replica 59
Kerberos 61
restoring from backup 120
setting up 56
single signon 61
Open Directory password 35, 76, 81
Open Directory Password Server
authentication methods 173
backup 118
enabling for a user 76
hosting 56, 57
logs 115
monitoring 116
password policies 74, 75
recommended for Windows 14
replication 47
restoring from backup 120
security features 14
setting up 56, 57
solving problems 122
Windows authentication 14
Open Directory replica
about 47
failover from master 59
password policies 47
setting up 57
Option 95, DHCP 31
P
parent NetInfo domain 109
password policies
administrator 35, 80
global 74
individual user 75
Kerberos 35, 39
replicas 47
passwords
authentication methods 35
changing 72
clear text 36
composing 72
cracking 41
crypt password type 39, 78
migrating to Open Directory 82
Open Directory password type 35, 76, 81
problems with readable 41
resetting multiple 73
shadow password type 39, 79
synchronizing changes in replicas 59
unable to modify 122
Password Server
See Open Directory Password Server
password type
crypt password 39, 78
Open Directory password 35, 76, 81
shadow password 39, 79
password validation
authentication authority attribute 34
Kerberos 37
Open Directory 35
shadow password 39
performance, Open Directory 48
planning 43
preset computer list object class 130
preset group object class 130
preset user attributes 144
LL2352.Book Page 188 Friday, August 22, 2003 3:12 PM