Mailing Lists: Apple Mailing Lists
Image of Mac OS face in stamp
eDirectory LDAP, Tiger server/clients
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

eDirectory LDAP, Tiger server/clients



Recently, I was placed in charge of several computer labs full of Macs, 4 servers, and one big authentication problem. All of our clients are running 10.4.5 or better and the servers are on 10.4.6. My boss wishes for an xserve to handle authentication with all the clients. He also wishes the xserve to get account information from a Novell eDirectory that we do not control. Ideally, he wants the OS X server to add group memberships to accounts in the Novell eDirectory server. The reason is to add printers that computer science students are allowed to use but no one else.

So the proposed setup is this:

novell eDir <-  xserve (10.4.6) <- clients (10.4.x)

We do not need to use file shares from the novell servers, only authentication/user accounts. We wish to offer storage to cs students from an xserve raid attached to the xserve.

1. Is it possible to have OS X server authenticate on behalf of clients using a novell eDir in tiger? I've noticed in the archives and googling that it works in older versions but there is a question about 10.4.x.

2. If so, can we apply groups on the OS X server using a third party LDAP server without having any control over that server? I know very little about LDAP.


The only other option I can think of is to have accounts replicated on the OS X server as login requests are sent it would fetch the accounts and then we could copy them in. I'm aware of a setup like this involving linux clients and an ldap server with a very unusual schema.


I appreciate any feedback on this.

Lucas Holt
_______________________________________________
Do not post admin requests to the list. They will be ignored.
Macos-x-server mailing list      (email@hidden)
Help/Unsubscribe/Update your Subscription:
This email sent to email@hidden




Visit the Apple Store online or at retail locations.
1-800-MY-APPLE

Contact Apple | Terms of Use | Privacy Policy

Copyright © 2011 Apple Inc. All rights reserved.