LDAP Integration:

Windows 2000 as LDAP server + HP-UX as LDAP Client + HP-UX PAM_Kerberos

HP-UX uses Windows 2000 AD to store user account and group information. The LDAP-UX client on HP-UX retrieves information from AD. The PAM Kerberos product on HP-UX uses Windows 2000 Kerberos Services to authenticate users who want to log into HP-UX machines. The following figure illustrates the integration between two platforms.

LDAP:

HP-UX Client

Windows 2000 Server

getpwnam ()

NSS engine

NSS_LDAP

LDAP protocol

 

Extend

 

Active

schema

Server for NIS

Directory

 

(SFU 2.0)

 

 

 

LDAP + PAM_Kerberos:

HP-UX Client

Windows 2000 Server

login

PAM Library

PAM_Kerberos

getpwnam()

NSS engine

NSS_LDAP

Kerberos protocol

LDAP protocol

Kerberos Services

Active

Directory

Server for NIS (SFU 2.0)

9

Page 9
Image 9
HP UX LDAP-UX Integration Software manual Ldap Integration, HP-UX Client Windows 2000 Server