nss with Solaris 10


(Working copy)

In Solaris 10 (or maybe older) a tool named "ldapclient" should be used to configure the ldap client for a Netscape Ldap Server. Unfortunately i did not yet get it running with Openldap. It shall create two files:
/var/ldap/ldap_client_cred
/var/ldap/ldap_client_file
with credentials how to connect to the ldap server and configuration. The configuration looks like that:

NS_LDAP_FILE_VERSION= 2.0
NS_LDAP_SERVERS= ldap.redflo.de
NS_LDAP_SEARCH_BASEDN= dc=redflo,dc=de
NS_LDAP_SEARCH_REF= TRUE
NS_LDAP_SEARCH_SCOPE= sub
NS_LDAP_SEARCH_TIME= 30
NS_LDAP_CACHETTL= 3600
NS_LDAP_SERVICE_SEARCH_DESC= passwd:ou=people,dc=redflo,dc=de
NS_LDAP_SERVICE_SEARCH_DESC= shadow:ou=people,dc=redflo,dc=de
NS_LDAP_SERVICE_AUTH_METHOD= pam_ldap:simple


ldapclient also enables the client service. We can do it by hand:

svcadm enable ldap/client

This page is not yet finished. Todo: make this working