LDAP-UX Client Services B.05.01 Administrator Guide for HP directory servers and Windows ADS
3 Installing and configuring LDAP-UX Client Services for a
Windows ADS environment
This chapter describes the decisions you must make and the steps for installing and configuring
LDAP-UX Client Services in a Windows ADS environment.
3.1 Before you begin: general installation and configuration considerations
for a Windows ADS environment
This section lists some things to keep in mind as you plan your installation:
• You may use either of the following methods for installing and configuring LDAP-UX Client
Services on your HP-UX system:
◦ Guided installation, providing a simple, quick, and automated procedure that sets up a
basic installation of the software, which you can customize afterward as needed
◦ Customized installation, providing a screen-based procedure that enables you to customize
the software
For information about the benefits of each type of installation, see Section 3.2 (page 114).
• For a customized installation, use “Configuration worksheet” (page 403) to record your decisions
and other information needed for configuration.
• For the latest information, see the LDAP-UX Client Services Release Notes , available at:
http://www.hp.com/go/hpux-security-docs (Click HP-UX LDAP-UX Integration Software)
• For advice on how to set up and configure your directory to work with HP-UX, see the white
paper Preparing Your Directory for HP-UX Integration, available at:
http://www.hp.com/go/hpux-security-docs (Click HP-UX LDAP-UX Integration Software)
NOTE: This white paper was published before support for Windows ADS was introduced.
However, much of the information continues to be relevant and helpful.
• For more information about how to integrate LDAP-UX Client Services with HP-UX based LDAP
directories, see “Installing and configuring LDAP-UX Client Services for an HP server
environment” (page 25).
• The examples use a base distinguished name (DN) of DC=cup, DC=hp, DC=com for
illustrative purposes.
NOTE: LDAP-UX using Windows 2003 R2 or 2008 Active Directory Server does not support
netgroup and publickey service data. In multiple domains, it only supports the passwd and
group service data.
3.2 Selecting the method of installation: guided or customized
LDAP-UX Client Services releases before B.05.00 provided only one installation option, the
customized installation using the setup program. This is a traditional screen-based program that
requires several procedures to be executed. This option enables an experienced administrator to
customize the software. LDAP-UX Client Services B.05.00 introduces the guided installation using
the autosetup program, which greatly simplifies the installation and configuration process. This
is a simple, quick, and automated procedure that gets you started with a basic implementation of
the software, requiring little input other than identifying administrator-level entities. These entities
automatically perform privileged configuration tasks for you, including configuration of Kerberos
114 Installing and configuring LDAP-UX Client Services for a Windows ADS environment