ibm-information-center/dist/eclipse/plugins/i5OS.ic.rzahy_5.4.0.1/rzahyscenariocrtdb.htm

136 lines
9.8 KiB
HTML

<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN"
"http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
<html xmlns="http://www.w3.org/1999/xhtml" lang="en-US" xml:lang="en-us">
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
<meta name="dc.language" scheme="rfc1766" content="en-us" />
<!-- All rights reserved. Licensed Materials Property of IBM -->
<!-- US Government Users Restricted Rights -->
<!-- Use, duplication or disclosure restricted by -->
<!-- GSA ADP Schedule Contract with IBM Corp. -->
<meta name="dc.date" scheme="iso8601" content="2005-09-06" />
<meta name="copyright" content="(C) Copyright IBM Corporation 1998, 2006" />
<meta name="security" content="public" />
<meta name="Robots" content="index,follow"/>
<meta http-equiv="PICS-Label" content='(PICS-1.1 "http://www.icra.org/ratingsv02.html" l gen true r (cz 1 lz 1 nz 1 oz 1 vz 1) "http://www.rsac.org/ratingsv01.html" l gen true r (n 0 s 0 v 0 l 0) "http://www.classify.org/safesurf/" l gen true r (SS~~000 1))' />
<title>Directory Server (LDAP) - Scenario details: Create the directory database</title>
<link rel="stylesheet" type="text/css" href="ibmidwb.css" />
<link rel="stylesheet" type="text/css" href="ic.css" />
</head>
<body>
<a id="Top_Of_Page" name="Top_Of_Page"></a><!-- Java sync-link -->
<script language = "Javascript" src = "../rzahg/synch.js" type="text/javascript"></script>
<a name="rzahyscenariocrtdb"></a>
<h2 id="rzahyscenariocrtdb">Scenario details: Create the directory database</h2>
<p>Before you can begin to enter data, you must create a place for the data
to be stored.</p>
<p class="sectionscenariobar"><span class="bold">Step 1: Create a
base DN object</span></p>
<ol type="1">
<li>In the Web administration tool, click <span class="bold">Directory management &mdash;>
Manage entries</span>. You see a listing of the objects in the base level of
the directory. Since the server is new, you see only the structural objects
which contain the configuration information.</li>
<li>You want to add a new object to contain the MyCo, Inc. data. First click <span class="bold">Add...</span> on the right side of the window. In the
next window, scroll within the <span class="bold">Object class</span> list
to select <span class="bold">domain</span> and click <span class="bold">Next</span>.</li>
<li>You do not want to add any auxiliary object classes, so click <span class="bold">Next</span> again.</li>
<li>In the <span class="bold">Enter the attributes</span> window, enter
the data that corresponds with the suffix that you created earlier in the
wizard. Leave the <span class="bold">Object class</span> drop down list
on <span class="bold">domain</span>. Type <tt>dc=my_co</tt> in the <span class="bold">Relative DN</span> field. Type <tt>dc=com</tt> in the <span class="bold">Parent DN</span> field. Type <span>my_co</span> in the <span class="bold">dc</span> field.</li>
<li>Click <span class="bold">Finish</span> at the bottom of the window.
Back in the base level you should see the new base DN.</li></ol>
<p class="sectionscenariobar"><span class="bold">Step:2 Create a user
template</span></p>
<p>You will create a user template as an aid to adding the MyCo, Inc. employee
data.</p>
<ol type="1">
<li>In the Web administration tool, click <span class="bold">Realms and templates &mdash;>
Add user template</span>.</li>
<li>In the <span class="bold">User template name</span> field, type <tt>Employee</tt>.</li>
<li>Click the <span class="bold">Browse...</span> button next to the <span class="bold">Parent DN</span> field. Click the base DN you created in the previous section, <span class="bold">dc=my_co,dc=com</span>, and click <span class="bold">Select</span>, on the right of the window.</li>
<li>Click <span class="bold">Next.</span></li>
<li>In the <span class="bold">Structural object class</span> drop-down</li>
<li> list, choose <span class="bold">inetOrgPerson</span> and click <span class="bold">Next</span>.</li>
<li>In the <span class="bold">Naming attribute</span> drop-down list,
select <span class="bold">cn</span>.</li>
<li>In the <span class="bold">Tabs</span> list, select <span class="bold">Required</span> and click <span class="bold">Edit</span>.</li>
<li>The <span class="bold">Edit tab</span> window is where you choose
which fields to include in the user template. <span class="bold">sn</span> and <span class="bold">cn</span> are required.</li>
<li>In the <span class="bold">Attributes</span> list, select <span class="bold">departmentNumber</span> and click <span class="bold">Add >>></span>.</li>
<li>Select <span class="bold">telephoneNumber</span> and click <span class="bold">Add >>></span>.</li>
<li>Select <span class="bold">mail</span> and click <span class="bold">Add >>></span>.</li>
<li>Select <span class="bold">userPassword</span> and click <span class="bold">Add >>></span>.</li>
<li>Click <span class="bold">OK</span> and then <span class="bold">Finish</span> to create the user template.</li></ol>
<p class="sectionscenariobar"><span class="bold">Step:3 Create a realm</span></p>
<ol type="1">
<li>In the Web Administration tool, click <span class="bold">Realms
and templates &mdash;> Add realm</span>.</li>
<li>In the <span class="bold">Realm name</span> field, type <tt>employees</tt>.</li>
<li>Click <span class="bold">Browse...</span> to the right of the <span class="bold">Parent DN</span> field.</li>
<li>Select the parent DN you created, <span class="bold">dc=my_co,dc=com</span>, and click <span class="bold">Select</span> on the right side
of the window.</li>
<li>Click <span class="bold">Next</span>.</li>
<li>In the next window you only need to change the <span class="bold">User template</span> drop-down list. Select the user template you created, <span class="bold">cn=employees,dc=my_co,dc=com</span>.</li>
<li>Click <span class="bold">Finish</span>.</li></ol>
<p class="sectionscenariobar"><span class="bold">Step:4 Create a manager
group</span></p>
<ol type="1">
<li>Create the manager group.
<ol type="a">
<li>In the Web administration tool, click <span class="bold">Users
and groups &mdash;> Add group</span>.</li>
<li>In the <span class="bold">Group name</span> field, type <tt>managers</tt>.</li>
<li>Ensure that <span class="bold">employees</span> is selected in the <span class="bold">Realm</span> pull down list.</li>
<li>Click <span class="bold">Finish</span>.</li></ol></li>
<li>Configure the manager group administrator for the <span class="bold">employees</span> realm.
<ol type="a">
<li>Click <span class="bold">Realms and templates &mdash;> Manage
realms</span>.</li>
<li>Select the realm that you created, <span class="bold">cn=employees,dc=my_co,dc=com</span>, and click <span class="bold">Edit</span>.</li>
<li>To the right of the <span class="bold">Administrator group</span> field,
click <span class="bold">Browse...</span>.</li>
<li>Select <span class="bold">dc=my_co,dc=com</span> and click <span class="bold">Expand</span>.</li>
<li>Select <span class="bold">cn=employees</span> and click <span class="bold">Expand</span>.</li>
<li>Select <span class="bold">cn=managers</span> and click <span class="bold">Select</span>.</li>
<li>In the <span class="bold">Edit realm</span> window, click <span class="bold">OK</span>.</li></ol></li>
<li>Give the manager group authority over the <span class="bold">dc=my_co,dc=com</span> suffix.
<ol type="a">
<li>Click <span class="bold">Directory management &mdash;> Manage
entries</span>.</li>
<li>Select <span class="bold">dc=my_co,dc=com</span> and click <span class="bold">Edit ACL...</span>.</li>
<li>In the <span class="bold">Edit ACL</span> window, click the <span class="bold">Owners</span> tab.</li>
<li>Select the <span class="bold">Propagate owner</span> check box.
Everyone who is a member of the managers group will be made an owner of the <span class="bold">dc=my_co,dc=com</span> data tree.</li>
<li>In the <span class="bold">Type</span> pull down list, select <span class="bold">Group</span>.</li>
<li>In the <span class="bold">DN (Distinguished name)</span> field,
type <tt>cn=managers,cn=employees,dc=my_co,dc=com</tt>.</li>
<li>Click <span class="bold">Add</span>.</li>
<li>Click <span class="bold">Ok</span>.</li></ol></li></ol>
<p class="sectionscenariobar"><span class="bold">Step:5 Add a user
as a manager</span></p>
<ol type="1">
<li>In the Web Administration tool, click <span class="bold">Users
and groups &mdash;> Add user</span>.</li>
<li>Select the realm you created, <span class="bold">employees</span>,
in the <span class="bold">Realm</span> drop-down menu, and click <span class="bold">Next</span>.</li>
<li>In the <span class="bold">cn</span> field, type <tt>Jose Alvirez</tt>.</li>
<li>In the <span class="bold">*sn</span> (surname) field type <tt>Alvirez</tt>.</li>
<li>In the <span class="bold">*cn</span> (complete name) field, type <tt>Jose Alvirez</tt>. cn is used to create the entry's
DN. *cn is an attribute of the object.</li>
<li>In the <span class="bold">telephoneNumber</span> field type <tt>999 555 1234</tt>.</li>
<li>In the <span class="bold">departmentNumber</span> field type <tt>DEPTA</tt>.</li>
<li>In the <span class="bold">mail</span> field type <tt>jalvirez@my_co.com</tt>.</li>
<li>In the <span class="bold">userPassword</span> field type <tt>secret</tt>.</li>
<li>Click the <span class="bold">User groups</span> tab.</li>
<li>In the <span class="bold">Available groups</span> list, select <span class="bold">managers</span> and click <span class="bold">Add &mdash;></span>.</li>
<li>At the bottom of the window, click <span class="bold">Finish</span>.</li>
<li>Log out of the Web administration tool by clicking <span class="bold">Log out</span> in the left hand navigation.</li></ol>
<a id="Bot_Of_Page" name="Bot_Of_Page"></a>
</body>
</html>