ABSTRACT

OpenLDAP has been developed and is maintained by a group of people that includes the authors of the Lightweight Directory Access Protocol (LDAP) standard. OpenLDAP is considered to be a reference implementation of LDAP, and it implements the LDAP (v3) protocol. It allows replication, but not multimaster replication. The proxy feature, called “meta back-end,” offers a powerful rewrite engine configurable via regular expressions. OpenLDAP supports all security features necessary for sensitive data and can be used together with open-source software implementing security layers, such as OpenSSL, Cyrus SASL, or Kerberos. This chapter addresses the administration issues of LDAP. It begins with the instructions for a general installation. Commercial products will include an installation guide, release notices, a “readme-first” document, a “readme before readme-first document,” and so on. It is good practice, at a minimum, to look at these documents before beginning the installation.