The Directory Namespace
Although we will eventually need to modify it, we will start by using
the namespace developed in Chapter 6 and Chapter 7. Our directory root is
dc=plainjoe,dc=org
, and user-related information
is stored beneath the people
organizational unit
directly below the root, as shown in Figure 8-1.
The group
organizational unit contains any
posixGroup
entries as well as any administrative
group (groupOfNames
) objects used in access
control rules for the directory.[1] We will need to add additional organizational units,
which we will do later in this chapter.
[1] Examples of using
administrative groups in ACLs and the groupofNames
object can be found in Appendix E.
Get LDAP System Administration now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.