summaryrefslogtreecommitdiff
path: root/etc/examples/ypldap.conf
blob: ebc387e9d6a8db9aff6e537ab09a6dd680e79b13 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
# $OpenBSD: ypldap.conf,v 1.1 2014/07/11 21:20:10 deraadt Exp $

domain		"example.com"
interval	60
provide map	"passwd.byname"
provide map	"passwd.byuid"
provide map	"group.byname"
provide map	"group.bygid"
provide map	"netid.byname"

directory "127.0.0.1" {
	# directory options
	binddn "cn=admin,dc=example,dc=com"
	bindcred "secret"
	basedn "dc=example,dc=com"
	# starting point for groups directory search, default to basedn
	#groupdn "ou=Groups,dc=example,dc=com"

	# passwd maps configuration (RFC 2307 posixAccount object class)
	passwd filter "(objectClass=posixAccount)"

	attribute name maps to "uid"
	fixed attribute passwd "*"
	attribute uid maps to "uidNumber"
	attribute gid maps to "gidNumber"
	attribute gecos maps to "cn"
	attribute home maps to "homeDirectory"
	attribute shell maps to "loginShell"
	fixed attribute change "0"
	fixed attribute expire "0"
	fixed attribute class ""

	# group maps configuration (RFC 2307 posixGroup object class)
	group filter "(objectClass=posixGroup)"

	attribute groupname maps to "cn"
	fixed attribute grouppasswd "*"
	attribute groupgid maps to "gidNumber"
	# memberUid returns multiple group members
	list groupmembers maps to "memberUid"
}