[OT] OS X Open Directory with linux clients

Shawn L Johnston sjohnston
Thu Sep 23 15:18:07 PDT 2004


Ok, another stupid mac question for any LDAP experts out there. I gave
up trying to use another LDAP directory for my Xserve to authenticate
against and went with Apple's Open Directory (which is actually OpenLDAP
with their own schema extensions).

My problem is I now want to authenticate my linux machines against Open
Directory,which was easy to set up. Unfortunatly Apple has seen in its
ultimate wisdom to include the OS X root user in Open Directory (OD)
which means any linux box I have using OD for authentication sees two
root users which I don't want.

I think my options are:
1) Forget having 1 ldap service with one set of logins/passwords 

2) Perhaps there is some sort of filter I can do in my linux ldap.conf
file that will "hide" undesirable users such as root?

3) Since the root user on OS X exists both in flat file and in OD. I
could delete the root user from OD. and everything will still be "ok" -
but thats probably a bad idea... ;)

Anyone else have experience or ideas on this one?

Thanks,

Shawn



More information about the Linux-users mailing list