User Tasks

To Change Passwords

directory on sys001. However, the passwd(1) command on clients 51-100 will fail because the replica server on sys002 cannot be modified. See the diagram below.

Figure 6-1

Cannot Change Passwords on Replica Servers

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Master LDAP

Updates

Replica LDAP

 

 

 

 

 

 

Directory Server

 

 

 

Directory Server

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

passwd(1) can

 

 

 

 

 

 

 

passwd(1) can not

 

 

 

 

 

 

 

 

 

 

modify master

 

 

 

 

 

 

 

modify replica

LDAP server

 

 

 

 

 

 

 

LDAP server

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

LDAP-UX

 

 

 

 

 

LDAP-UX

 

 

 

 

 

Clients 1-50

 

 

 

 

 

 

Clients 51-100

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

One way to allow clients 51-100 to change their passwords is to create a new passwd(1) command wrapper on these clients that calls ldappasswd(1), which modifies the master directory. When the replica server is updated depends on how you have configured the replication. All other LDAP requests continue to go to the replica server through

170

Chapter 6