Red Hat DIRECTORY SERVER 7.1 - DEPLOYMENT Deployment Manual page 149

Table of Contents

Advertisement

Special schema are applied to synchronized user entries in the Directory Server. A
new Directory Server account is synchronized to a Windows server if the new
Directory Server entry uses the
ntUserCreateNewAccount
in the Red Hat Directory Server Schema Reference.
All synchronized entries in the Directory Server, whether they originated in the
Directory Server or in the Windows server, have these special synchronization
attributes:
ntUniqueId. This contains the value of the
corresponding Windows entry. This attribute is set by the synchronization
process and should not be set or modified manually.
ntUserDeleteAccount. This attribute is set automatically when a Windows
entry is synched over but must be set manually for Directory Server entries. If
ntUserDeleteAccount
be deleted when the Director Server entry is deleted.
ntDomainUser. User entries only. This corresponds to the
attribute for Active Directory entries or the user name for NT4 Server enties.
ntGroupType. Group entries only. This is set automatically for Windows groups
that are synchronized over, but this attribute must be set manually on
Directory Server entries before they will be synched.
Table 7-1 shows the attributes that can be synched between user entries, and
Table 7-2 shows the attributes that can be synched between groups. Use the
information to best plan the type of directory data that can be synched.
NOTE
User Attributes Supported by Synchronization
Table 7-1
Directory Server
Attributes
cn
ntUser
attribute.
has the value
There are differences in how Directory Server attributes are mapped
to (non-standard) Active Directory attributes for synchronization.
Also the attributes available to NT4 Server for synchronization are
extremely limited; see chapter 18, "Windows Sync," in the Red Hat
Directory Server Administrator' s Guide for more information on these
differences.
Active Directory Attributes
cn
name
or
object class and the
ntGroup
and
ntUser
ntGroup
objectGUID
, the corresponding Windows entry
true
Chapter 7
Designing Windows Sync
attributes are described
attribute for the
samAccountName
Designing Synchronization
149

Advertisement

Table of Contents
loading

This manual is also suitable for:

Directory server 7.1

Table of Contents