LDAP-UX Client Services B.04.10 Administrator's Guide (edition 7)
Configure the LDAP-UX Client Services
Below is a summary of how to configure LDAP-UX Client Services with Netscape Directory
Server 6.x. For a default configuration, see Quick Configuration (page 34). For a custom
configuration, see Custom Configuration (page 38) for more information.
NOTE: The setup program has only been certified with Netscape Directory Server 6.x, Red Hat
Directory Server 7.x and Windows 2000/2003/2003 R2 Active Directory Sever. See the LDAP-UX
Integration B.04.10 Release Notes (P/N J4269-90063).
NOTE: The LDAP-UX Client Services B.04.00 or later supports storage of automount maps and
publickeys on Netscape /Red Hat Directory Server 6.x and 7.0/7.1. See the LDAP-UX Integration
B.04.10 Release Notes (P/N J4269-90065).
• Run the Setup program. The setup program provides the following assistance:
— Extends your Netscape/Red Hat directory schema with the configuration profile schema,
if not already done
— Imports the LDAP printer schema into your Directory Server if you choose to start the
LDAP printer configurator
— Imports the publickey schema into your Directory Server if you choose to store the
public keys of users and hosts in an LDAP directory
— Imports the new automount schema into your Directory Server if you choose to store
the AutoFS maps in an LDAP directory
— Provides the option to enable SSL for secure communication between LDAP clients and
Directory servers
— Optionally configures SASL Digest-MD5 authentication (for Netscape/Red Hat Directory
only)
— Creates a configuration profile entry in your directory server from information you
provide
— Updates the local client's start-up file (/etc/opt/ldapux/ldapux_client.conf) with your
directory and configuration profile location
— Downloads the configuration profile from the directory to your local client system
— Configures a proxy user for the client, if needed
— Starts the Client Daemon if you choose to start it
IMPORTANT: Starting with LDAP-UX Client Services B.03.20, the client daemon,
/opt/ldapux/bin/ldapclientd, must be running for LDAP-UX functions to work.
With LDAP-UX Client Services B.03.10 or earlier, running the client daemon, ldapclientd,
is optional.
NOTE: The LDAP printer configurator can support any Directory Servers that support the
LDAP printer schema based on IETF<draft-fleming-ldap-printer-schema-02.txt>.
However, the LDAP-UX Client Services only supports automatically importing the LDAP
printer schema into the Directory Server by running the setup program.
If your directory server does not support the LDAP printer schema, you may experience
problems when importing the printer schema.
• Configure the Pluggable Authentication Module (PAM) by modifying the file /etc/pam.conf.
See /etc/pam.ldap for a sample.
• Configure the Name Service Switch (NSS) by modifying the file /etc/nsswitch.conf. See
/etc/nsswitch.ldap for a sample.
Configure the LDAP-UX Client Services 33