Specifications
54 Chapter 5 Setting Up Open Directory Services
Step 6: Migrate upgraded servers from NetInfo to LDAP
See “Migrating a Directory Domain From Netinfo to LDAP” on page 66 and “Disabling
NetInfo After Migrating to LDAP” on page 69.
Step 7: Set up Directory Access on servers and client computers
See Chapter 7, “Managing Directory Access.”
Before You Begin
Before setting up Open Directory services for the first time:
• Understand the uses of directory data and assess your directory needs.
Identify the services that require data from directory domains, and determine which
users will need access to those services.
Users whose information can be managed most easily on a server should be defined
in the shared LDAP directory of a Mac OS X Server that is an Open Directory master.
Some of these users may instead be defined in directory domains on other servers,
such as an Active Directory domain on a Windows server.
These concepts are discussed in Chapter 1, “Directory Service Concepts.”
• Assess whether you need more than one shared domain. If so, decide which users
will be defined in each shared domain. See Chapter 2, “Open Directory Search
Policies,” for more information.
• Determine which authentication options users need. For descriptions of the available
options, see Chapter 3, “User Authentication With Open Directory.”
• Decide how to organize your directory domains, including replicas of Open Directory
masters. Chapter 4, “Open Directory Planning,” provides some guidelines.
• Pick server administrators very carefully. Give only trusted people administrator
passwords. Have as few administrators as possible. Don’t delegate administrator
access for minor tasks, such as changing settings in a user record.
Important: Directory information is authoritative. It vitally affects everyone whose
computers use it.
Setting Up Open Directory With Server Assistant
The initial setup of Open Directory occurs when you use Server Assistant during
installation of Mac OS X Server. For instructions on using Server Assistant, see the
getting started guide.
LL2352.Book Page 54 Friday, August 22, 2003 3:12 PM