LDAP-UX Integration B.05.00 Release Notes
2.6.4 Long user and group name support
LDAP-UX supports long user and group name of up to 255 characters on an HP-UX 11i v3 system
when you explicitly enable the system for expanded user and group name feature by using the
lugadmin -e command. Refer to the lugadmin man page for details.
On HP-UX 11i v2, the maximum length of the user or group name can be only eight characters.
2.6.5 LDAP directory interoperability
The LDAP-UX product has been certified under the OpenGroup’s works with LDAP 2000
branding.
LDAP-UX has been designed to work with any directory server that can support the RFC 2307
schema or similar syntactic schema (such as the Microsoft Services For Unix 3.5 schema). The
LDAP-UX product requires the "Configuration Profile" schema, which is defined by RFC 4876,
available at http://www.rfc-editor.org. at the IETF drafts web site http://www.ietf.org/
ID.htmlhttp://www.ietf.org/ID.html.
The "Configuration Profile" schema will be automatically installed on directory servers that
support online modification of the subschema subentry.
The following list of directories have been tested or minimally verified.
• HP-UX Directory Server for HP-UX 8.1 - Fully tested and supported
• Red Hat Directory Server 8.0 for HP-UX - Verified and supported
• Microsoft Windows 2003 R2/2008 Active Directory - Fully tested and supported
• OpenLDAP 2.1.13a - Verified with limited support
— Manual schema installation required
• Novell eDirectory 8.7 and 8.8 - Minimally verified with limited support
— Manual schema installation required
— Password modification via the passwd(1) command not yet supported.
• IBM IDS 6.2 - Verified and supported
— Manual schema installation required
• Oracle Internet Directory 9.04 - Minimally verified
— Required to index all attributes
— Bypass setup with ldapmodify to manually load the profile schema
• Computer Associates eTrust 4.0 - Minimally verified
— Manual schema installation required
• Sun SunOne 6.3 - Minimally verified
If you have another directory, you may be able to use that directory if it meets the following
requirement:
• Supports version 3 of the LDAP specification as defined by IETF RFCs 2251 through 2256
• Supports the Posix name service schema (RFC 2307) or a similar schema
• The schema can be extended to include the DUAConfigProfile object classes and required
attributes (see above)
• For security, the directory should support an access control mechanism that can restrict
modification rights of entries and attributes to specific users
• For security, the directory should support at least ldap_simple_bind authentication
2.6.6 Supported name service databases
• LDAP-UX Client Services using HP-UX Directory Server supports the following name
services data:
— passwd
20 LDAP-UX Client Services