- Taschenbuch: 308 Seiten
- Verlag: O'Reilly and Associates; Auflage: 1 (1. April 2003)
- Sprache: Englisch
- ISBN-10: 1565924916
- ISBN-13: 978-1565924918
- Größe und/oder Gewicht: 17,8 x 2 x 23,3 cm
- Durchschnittliche Kundenbewertung: 2 Kundenrezensionen
- Amazon Bestseller-Rang: Nr. 92.633 in Fremdsprachige Bücher (Siehe Top 100 in Fremdsprachige Bücher)
- Komplettes Inhaltsverzeichnis ansehen
Andere Verkäufer auf Amazon
+ GRATIS Lieferung innerhalb Deutschlands
+ EUR 3,00 Versandkosten
LDAP System Administration (Englisch) Taschenbuch – 1. April 2003
|Neu ab||Gebraucht ab|
Wird oft zusammen gekauft
Kunden, die diesen Artikel gekauft haben, kauften auch
Es wird kein Kindle Gerät benötigt. Laden Sie eine der kostenlosen Kindle Apps herunter und beginnen Sie, Kindle-Bücher auf Ihrem Smartphone, Tablet und Computer zu lesen.
Geben Sie Ihre Mobiltelefonnummer ein, um die kostenfreie App zu beziehen.
Wenn Sie dieses Produkt verkaufen, möchten Sie über Seller Support Updates vorschlagen?
"This is a clearly written and well structured book with good use of example and figures... I thoroughly commend the text to those who are looking to centralise information directories." - Raza Rizvi, news@UK, December 2003
System administrators often spend a great deal of time managing configuration information located on many different machines: usernames, passwords, printer configurations, email client configurations, and network filesystem configurations, to name a few. LDAPv3 provides tools for centralizing all of the configuration information and placing it under your control. Rather than maintaining several administrative databases (NIS, Active Directory, Samba, and NFS configuration files), you can make changes in only one place and have all your systems immediately "see" the updated information. Practically platform independent, this book uses the widely available, open source OpenLDAP 2 directory server as a premise for examples, showing you how to use it to help you manage your configuration information effectively and securely. OpenLDAP 2 ships with most Linux distributions and Mac OS X, and can be easily downloaded for most Unix-based systems.After introducing the workings of a directory service and the LDAP protocol, all aspects of building and installing OpenLDAP, plus key ancillary packages like SASL and OpenSSL, this book discusses: configuration and access control; distributed directories - replication and referral; using OpenLDAP to replace NIS; using OpenLDAP to manage email configurations; using LDAP for abstraction with FTP and HTTP servers, Samba, and Radius; interoperating with different LDAP servers, including Active Directory; and programming using Net::LDAP. Alle Produktbeschreibungen
Welche anderen Artikel kaufen Kunden, nachdem sie diesen Artikel angesehen haben?
Derzeit tritt ein Problem beim Filtern der Rezensionen auf. Bitte versuchen Sie es später noch einmal.
Als Neuling in Sachen LDAP ist es vielleicht nicht zu empfehlen!
Aber wer schon mit LDAP gearbeitet hat für den wird dieses Buch bestimmt sehr interessant sein.
Das einigste was mir nicht gefallen hat ist das oreilly dieses Buch NUR in englisch anbietet!
Wer also mit LDAP schon was zutun hatte und nicht vor englisch zurückschreckt für den ist das Buch genau das richtige!
Die hilfreichsten Kundenrezensionen auf Amazon.com
Chapter 1 LDAP is defined and you are pointed to the appropriate RFC's.
Chapter 2 is an overview of the LDAPv3 and explains very well the format of the LDIF directory data/structure files. Incidentally, I found that this book enhanced my understanding of Microsofts Active Directory which encompasses among other things LDAPv3.
Chapter 3 familiarizes you with the slapd.conf file and the example uses an SSHA hashed rootpw (an OpenSSL algorithm) and introduces you to the use of ACL's in this server config file.
Chapter 4 leads you through building a company white pages using the command line (which you certainly should know how to do even if you are a GUI fan); the chapter concludes with a brief list of GUI editors for the faint of heart.
Chapter 5 explains replicating to a backup LDAP server with slurpd, enhanced backups using generated LDIF files and distributing the directory to maximize network traffic efficiency. Additions, deletions and modifications to the database are illustrated. Searching is briefly, but concisely explained.
Chapter 6 begins Part II, application integration. The Pluggable Authentication module pam_ldap and it's configuration file, ldap.conf are discussed and there is a list of ldap.conf parameters with explanations. Replacing NIS with LDAP is covered in this chapter. Chapter 6 ends with a brief overview of security mechanisms in LDAPv3.
Chapter 7 presents LDAP as a directory storing email addresses and other contact information. Configuration examples for connection 4 popular email clients are included. Integration with 3 popular MTA's (postfix, sendmail and Exim) round out the chapter.
Chapter 8 introduces integration of network services other than authentication and email with LDAP. Among other things, DNS, printing and Samba LDAP integration are discussed.
Chapter 9 has a few valuable pointers in interoperability with other platforms, specifically Windows 2000 Active Directory. Digital certificates and Kerberos authentication on the Windows platform as relating to *nix are very briefly discussed.
Chapter 10, Net::LDAP and Perl gives a mainly informational overview of connecting, binding and searching and contains sample scripts using the Net::LDAP module. It also demonstrates adding, updating and deleting entries using Perl scripts instead of the LDIF methods earlier in the book. Note, however that this is not a book about programming; it is a book about LDAP Administration.
Lastly, this book does need an update. Some modules which were separate entities not so long ago are now symbolic links; for example:
/usr/local/sbin/slapacl -> slapd
/usr/local/sbin/slapadd -> slapd
/usr/local/sbin/slapauth -> slapd
/usr/local/sbin/slapcat -> slapd
/usr/local/sbin/slapdn -> slapd
/usr/local/sbin/slapindex -> slapd
/usr/local/sbin/slappasswd -> slapd
/usr/local/sbin/slaptest -> slapd
Even the best needs to be updated; and when it is I will be one of the first to purchase it.
LDAP protocol will very likely solve the complex problem of redundant authentication/authorization data spread across heterogenous networks. However, whether your users access resources through passwords or some other mechanism one thing stands out.
If your security database resides in one place, it must be secured and precautions taken that authentication data traversing the network cannot be sniffed or otherwise compromised. In general, most admins accomplish this by encryption using SSH/SSH2 or OpenSSH.
OpenSSH, in turn uses the encryption libraries of OpenSSL so it's a required dependency.
To summarize, IMHO: LDAP is only 1 part of the solution and this book covers it better than any other I have seen. No single reference will cover all the bases and like any well written book this one keeps the focus on the major subject of LDAP, but offers references to other related topics.
Above my workstation is a wooden shelf containing my most important references; this is one of them. I have found the following volumes very helpful and LDAP plays well with these technologies.
"LDAP System Administration" by Gerald Carter.
"SSH The Secure Shell, The Definitive Guide" by Daniel J. Barrett, Richard E. Silverman & Robert G. Byrnes.
"Network Security with OpenSSL" by John Viega, Matt Messier & Pravir Chandra.
"Kerberos: The Definitive Guide" by Jason Garman
These 4 volumes will help you both in securing your network and making it more productive and accessable to authorized users. These volumes complement each other.
If you need guidance for software development, you might try "Secure Programming Cookbook for C and C++" by John Viega and Matt Messier
Definitely Five stars - even though it does need updating.
This book fills a knowledge void and can make your life a lot easier. It can save you hours of Google searches, searching forums, pumping your friends for tips, trial and error, and grep'ing log files; this one deserves a slot in your special library.
LDAP System Administration starts with a brief review of LDAP in its incarnations and takes you quickly into the theory of distributed directory services. This book will work best if you some place where you can experiment with the commands a bit.
The book does a good job of describing LDIF files which are a must for all but the most insignificant updates. Once you have an understanding of the commands, I suggest you get one of the graphical tools discussed in the book. These tools will allow you to import and export LDIF files and, in general, make your life a delight.
If you are building your first distributed directory implementation, get one of the books on Unix system administration or the NIS/NFS system administration book.
Though I bought the paper version of this book, I was happy to see a Kindle version available. I may still yet get the Kindle version but for now, the paper version is meeting my needs.