LDAP-UX Integration B.04.17 Release Notes

LDAP Directory Interoperability
The LDAP-UX product has been certified under the OpenGroup’s works with LDAP 2000
branding.
LDAP-UX has been designed to work with any directory server that can support the RFC 2307
schema or similar syntactic schema (such as the Microsoft Services For Unix 3.0 schema). The
LDAP-UX product requires the "Configuration Profile" schema, which is defined at the IETF
drafts web site http://www.ietf.org/ID.html.
This draft is currently published as draft-joslin-config-schema-07.txt (which will likely be replaced
by a future draft revision or RFC). The "Configuration Profile" schema will be automatically
installed on directory servers that support online modification of the subschema subentry.
The following list of directories have been tested or minimally verified.
Netscape Directory Server 6.11/6.21 and Red Hat Directory Server 7.0/7.1for HP-UX - Fully
tested and supported
Microsoft Windows 2000/2003 Active Directory - Fully tested and supported
OpenLDAP 2.1.13a - Verified with limited support
— Manual schema installation required
Novell eDirectory 8.7 - Minimally verified
IBM IDS 5.1 - Minimally verified
Oracle Internet Directory 9.04 - Minimally verified
— Required to index all attributes
— Bypass setup with ldapmodify to manually load the profile schema
Computer Associates eTrust 4.0 - Minimally verified
— Manual schema installation required
Sun SunOne 5.2.β3 Μινιµαλλψ ϖεριφιεδ
If you have another directory, you may be able to use that directory if it meets the following
requirement:
Supports version 3 of the LDAP specification as defined by IETF RFCs 2251 through 2256
Supports the Posix name service schema (RFC 2307) or a similar schema
The schema can be extended to include the DUAConfigProfile object classes and required
attributes (see above)
For security, the directory should support an access control mechanism that can restrict
modification rights of entries and attributes to specific users
For security, the directory should support at least ldap_simple_bind authentication
Supported Name Service Databases
LDAP-UX Client Services using Netscape/Red Hat Directory Server supports the following
name services data:
— passwd
— group
— netgroup
— services
— rpc
— hosts
— networks
— automount
— publickey
20 LDAP-UX Integration B.04.17 Release Note