23
Administration
OpenLDAP ServerOpenLDAP Server InstallationOpenLDAP Server ConfigurationStarting the OpenLDAP ServerOpenLDAPisanOpensourceLDAPserverdesignedforUNIXplat forms.AWindowsversioncanbedownloadedfrom:
http://download.bergmans.us/openldap/openldap-2.2.29/openldap-2.2.29-db-4.3.29-openssl-0.9.8awin32_Setup.exe.
After downloading the program, launch the in staller, select your
language, accept the license and choose the target inst allation
directory. The default directory is:
c:\Program Files\OpenLDA P.
When the Select Components dialog box appear s, select install BDB-
tools and install OpenLDAP-slapd a s NT service, as shown in the
diagram:
The main OpenLDAP configuration file, slapd.conf, has to be
customized before launching the server. The modifications to the
configuration file will do the following:
• SpecifytheUnicodedatadirectory.Thedefaultis. /ucdata.
• ChoosetherequiredLDAPschemas.Thecoreschemais
mand ator y.
• CongurethepathfortheOpenLDAPpid and args star t up files.
The first contains the server pid, the second includes comm and line
arguments.
• Choosethedatabasetype.Thedefaultisbdb (Berkeley DB).
• Specifytheserversufx.Allentriesint hedirectorywillhavethis
suffix, which represents the root of the directory t ree. For example,
with suffix dc=tripplite,dc= com, the fully qualified name of all
entries in the database will end with dc =tripplite,dc=com.
To start the OpenLDAP server, run slapd (the OpenLDAP server
executable file) from the command line. slapd supports a numb er of
command line options, the most important opt ion is the d switch that
triggers debug information. For example, a command of slapd -d
256 would start OpenLDAP with a debug level of 256, as shown in
the following screenshot:
• Denethenameoftheadministratorentr yfortheserver(rootdn),
along with its password (rootpw). This is the server’s super user.
The rootdn name must match the suffix defined above. (Since all
entry names must end with the defined suffix, and the ro otdn is an
entr y.)
• Anexamplecongurationleisprovidedinthegure,below:
Note: For details about slapd options and t heir meanings, refer to the
OpenLDAP documentation .