?
Solved

How to Create OpenLDAP schema

Posted on 2012-03-28
3
Medium Priority
?
905 Views
Last Modified: 2012-03-31
I have configured the openldap (2.4.23) server in centos 6 and running successfully. I want to store secret question and answer in ldap for all user, by using this user can able to reset their password by answering the secret question.  For this i need to create a custom schema. i don't know how to create a own schema for this. Please help.
0
Comment
Question by:rajasekarramasamy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 31

Expert Comment

by:farzanj
ID: 37776707
It depends upon your current set up.  Is the current schema accessible by the users?  Can they query the LDAP and see at least the hashes of their passwords?  Basically, your questions and answers should be hidden just like the password hashes.

There is no complicated schema.  Just add
secret question:
secret answer:

Just like the password field.
0
 

Author Comment

by:rajasekarramasamy
ID: 37777787
Can they query the LDAP and see at least the hashes of their passwords?

Yes.

Having any sample schema for my requirement?
0
 
LVL 31

Accepted Solution

by:
farzanj earned 1500 total points
ID: 37777897
This might be a little help
http://publib.boulder.ibm.com/infocenter/iseries/v5r3/index.jsp?topic=%2Frzahy%2Frzahyunderdn.htm

First you have to see which object class is the password stored in or a member of.  Use your object browser to see that.
http://publib.boulder.ibm.com/infocenter/iseries/v5r3/index.jsp?topic=%2Frzahy%2Frzahyunderdn.htm

In that object class, you need to add two more fields, secretQuestion and secretAnswer.  Since this object class would also be a part of person's LDIF, you will have to make minimal changes.  You will only need to add these attributes.
0

Featured Post

Building an interactive eFuture classroom

Watch and learn how ATEN provided a total control system solution including seamless switching matrix switch, HDBaseT extenders, PDU, lighting control to build an interactive eFuture classroom.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Note: for this to work properly you need to use a Cross-Over network cable. 1. Connect both servers S1 and S2 on the second network slots respectively. Note that you can use the 1st slots but usually these would be occupied by the Service Provideā€¦
In the first part of this tutorial we will cover the prerequisites for installing SQL Server vNext on Linux.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.
Suggested Courses
Course of the Month10 days, 10 hours left to enroll

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question