[Date Prev][Date Next] [Chronological] [Thread] [Top]

top level design - Posix groups for rights ?



I have some more top level design questions.

I am trying to do 3 things with LDAP.
    1. create a readable campus wide address directory
        read name
        read email
        read office phone
        read office location
    2. create a centralized posix login directory
        uid = login
    3. set up posix access control groups 

Would this design make sense ?

dn: o=Washington College, st=Maryland, c=US
objectClass: top
objectClass: organization
o: Washington College
Description: Top level of Directory

dn: ou=People, o=Washington College,  st=Maryland, c=US
objectClass: top
objectClass: organizationalUnit
ou: People
Description: All people within Washington College.

dn: ou=Addressbook, o=Washington College,  st=Maryland, c=US
objectClass: top
objectClass: microsoftaddressbook
ou: Addressbook
Description: Address book entries for Washington College staff and
students.

dn: ou=group,  o=Washington College,  st=Maryland, c=US
objectClass: top
objectClass: organizationalUnit
ou: group
Description: Access control groups include Faculty, Staff, Students,Admin 

---------------------
Ted Knab