[389-users] Issue with 389

Andrea Modesto Rossi amrossi at linux.it
Sat Mar 5 12:39:23 UTC 2011


Dear all,

I hope you can help me in order to set up my first 389 Server.

My situation : fresh install of 389 (Fedora 14), installed the DS via
yum from the standard repos. Everything seems to work properly, DNA as well.

Basically i've got 2 problems and 1 question.

First of all, i work with 389 console  ):

1) Adding a new group (e.g. administrator) i see that there is not the GID
attribute and i have to add it (by hand) every time (Advanced propertis
---> Object class ---> Add value ---> Posix Group); it's very boring :-)
How can i fix this issue? In general, is it possible to modify the basic
DIT ? Indeed i'd like to add much more information (manager, company,...an
so on) for each new users in a fast way.

2) I'm writing a Web interface able to manage users account (e.g.:password).
For some operations(reset pw) i need a Bind DN user, right? Ok, please
could you help me write an ACL (principle of least privilege) for this
user? i don't like to use the directory manage (cn=directory manager). My
idea is to create a new user able to handle only his OU, and nothing else!

3) I have a PKI. can i manage(store) users keys(public and private)
directly through 389? If so, how? could you point me in the right
direction?



Thank you very much.

have a nice weekend

/AMR
-- 
Andrea Modesto Rossi
Fedora Ambassador





More information about the 389-users mailing list