source: trunk/server/source4/setup/slapd.conf@ 904

Last change on this file since 904 was 745, checked in by Silvan Scherrer, 13 years ago

Samba Server: updated trunk to 3.6.0

File size: 3.2 KB
Line 
1loglevel 0
2
3### needed for initial content load ###
4sizelimit unlimited
5
6### Multimaster-ServerIDs and URLs ###
7
8${MMR_SERVERIDS_CONFIG}
9
10include ${LDAPDIR}/backend-schema.schema
11
12pidfile ${LDAPDIR}/slapd.pid
13argsfile ${LDAPDIR}/slapd.args
14sasl-realm ${DNSDOMAIN}
15
16#authz-regexp
17# uid=([^,]*),cn=${DNSDOMAIN},cn=digest-md5,cn=auth
18# ldap:///${DOMAINDN}??sub?(samAccountName=\$1)
19
20#authz-regexp
21# uid=([^,]*),cn=([^,]*),cn=digest-md5,cn=auth
22# ldap:///${DOMAINDN}??sub?(samAccountName=\$1)
23
24authz-regexp
25 uid=([^,]*),cn=([^,]*),cn=digest-md5,cn=auth
26 ldap:///cn=samba??one?(cn=\$1)
27
28authz-regexp
29 uid=([^,]*),cn=([^,]*),cn=ntlm,cn=auth
30 ldap:///cn=samba??one?(cn=\$1)
31
32access to dn.base=""
33 by dn=cn=samba-admin,cn=samba manage
34 by anonymous read
35 by * read
36
37access to dn.subtree="cn=samba"
38 by anonymous auth
39
40access to dn.subtree="${DOMAINDN}"
41 by dn=cn=samba-admin,cn=samba manage${REPLICATOR_ACL}
42 by dn=cn=manager manage
43 by * none
44
45password-hash {CLEARTEXT}
46
47defaultsearchbase ${DOMAINDN}
48
49rootdn cn=Manager
50
51moduleload rdnval
52
53moduleload deref
54overlay deref
55
56moduleload refint
57${REFINT_CONFIG}
58
59moduleload memberof
60${MEMBEROF_CONFIG}
61
62moduleload syncprov
63
64database ldif
65suffix cn=Samba
66directory ${LDAPDIR}/db/samba
67rootdn cn=Manager,cn=Samba
68
69########################################
70## olc - configuration ###
71database config
72rootdn cn=config
73
74${OLC_SYNCREPL_CONFIG}
75${OLC_MMR_CONFIG}
76
77access to dn.sub="cn=config"
78 by dn="cn=samba-admin,cn=samba" write
79 by dn="cn=replicator,cn=samba" read
80
81
82########################################
83### cn=schema ###
84database hdb
85suffix ${SCHEMADN}
86rootdn cn=Manager,${SCHEMADN}
87directory ${LDAPDIR}/db/schema
88${NOSYNC}
89${INDEX_CONFIG}
90
91#syncprov is stable in OpenLDAP 2.3, and available in 2.2.
92#We need this for the contextCSN attribute and mmr.
93overlay syncprov
94syncprov-sessionlog 100
95syncprov-checkpoint 100 10
96
97overlay rdnval
98
99### Multimaster-Replication of cn=schema Subcontext ###
100${MMR_SYNCREPL_SCHEMA_CONFIG}
101${MIRRORMODE}
102
103#########################################
104### cn=config ###
105database hdb
106suffix ${CONFIGDN}
107rootdn cn=Manager,${CONFIGDN}
108directory ${LDAPDIR}/db/config
109${NOSYNC}
110${INDEX_CONFIG}
111
112#syncprov is stable in OpenLDAP 2.3, and available in 2.2.
113#We need this for the contextCSN attribute and mmr.
114overlay syncprov
115syncprov-sessionlog 100
116syncprov-checkpoint 100 10
117
118overlay rdnval
119
120### Multimaster-Replication of cn=config Subcontext ###
121${MMR_SYNCREPL_CONFIG_CONFIG}
122${MIRRORMODE}
123
124########################################
125### cn=users /base-dn ###
126database hdb
127suffix ${DOMAINDN}
128rootdn cn=Manager,${DOMAINDN}
129directory ${LDAPDIR}/db/user
130${NOSYNC}
131${INDEX_CONFIG}
132
133#syncprov is stable in OpenLDAP 2.3, and available in 2.2.
134#We need this for the contextCSN attribute and mmr.
135overlay syncprov
136syncprov-sessionlog 100
137syncprov-checkpoint 100 10
138
139overlay rdnval
140
141### Multimaster-Replication of cn=user/base-dn context ###
142${MMR_SYNCREPL_USER_CONFIG}
143${MIRRORMODE}
Note: See TracBrowser for help on using the repository browser.