Cliente Ldap

Embed Size (px)

Citation preview

Pacotes do cliente ubuntu 12.04 apt-get -y install libnss-ldap libpam-ldap ldap-utils nscd Alteraes no cliente: /etc/nsswitch.conf passwd: group: shadow: hosts: networks: protocols: services: ethers: rpc: netgroup: compat ldap compat ldap compat ldap files mdns4_minimal [NOTFOUND=return] dns mdns4 files db db db db nis files files files files############################################# /etc/ldap/ldap.conf base dc=teste,dc=eb,dc=mil,dc=br uri ldap://10.56.83.82 ldap_version 3 bind_policy soft ########################################### /etc/lightdm/lightdm.conf [SeatDefaults] user-session=ubuntu greeter-session=unity-greeter greeter-show-manual-login=true allow-guest=false ########################################## /etc/pam.d/lightdm auth requisite pam_nologin.so auth required pam_env.so readenv=1 auth required pam_env.so readenv=1 envfile=/etc/default/locale auth sufficient pam_succeed_if.so user ingroup nopasswdlogin @include common-auth auth optional pam_group.so auth optional pam_gnome_keyring.so @include common-account session [success=ok ignore=ignore module_unknown=ignore default=bad] pam_selinux .so close session required pam_limits.so @include common-session session [success=ok ignore=ignore module_unknown=ignore default=bad] pam_selinux .so open session optional pam_gnome_keyring.so auto_start@include common-password session required pam_mkhomedir.so skel=/etc/skel umask=0022 ########################### /etc/security/group.conf login;*;*;Al0000-2400;users,cdrom,floppy,plugdev,audio,dip kdm;*;*;Al0000-2400;users,cdrom,floppy,plugdev,audio,dip,video lightdm;*;*;Al0000-2400;users,cdrom,floppy,plugdev,audio,dip,video *;*;*;Al0000-2400;audio,cdrom,dialout,floppy,video ############################## /etc/pam.d/common-account account [success=2 new_authtok_reqd=done default=ignore] account [success=1 default=ignore] pam_ldap.so account requisite pam_deny.so account required pam_permit.so ######################################### /etc/pam.d/common-session" session session session session session session 077 session session session [default=1] requisite required optional required required optional optional optional pam_permit.so pam_deny.so pam_permit.so pam_umask.so pam_unix.so pam_mkhomedir.so skel=/etc/skel/ umask=0 pam_mount.so pam_ldap.so pam_ck_connector.so nox11 pam_unix.so###################### /etc/pam.d/common-password password password first_pass password password password [success=2 default=ignore] pam_unix.so obscure sha512 [success=1 user_unknown=ignore default=die] pam_ldap.so try_ requisite required optional pam_deny.so pam_permit.so pam_gnome_keyring.so############################## /etc/pam.d/common-auth auth auth auth auth auth auth [success=2 default=ignore] [success=1 default=ignore] requisite required optional optional pam_unix.so nullok_secure pam_ldap.so use_first_pass pam_deny.so pam_permit.so pam_mount.so pam_cap.so###########################