Understanding LDAP Services for Novell eDirectory
321
no
vd
ocx
(e
n)
6 Ap
ril 20
07
4
Add, delete, or modify the classes you want.
The default LDAP Services for eDirectory configuration contains a predefined set of class and
attribute mappings. These mappings map a subset of LDAP classes and attributes to a subset of
eDirectory classes and attributes. If an attribute or class is not mapped in the default
configuration, an auto-generated map is assigned to the attribute or class.
Also, if the schema name is a valid LDAP name with no spaces or colons, no mappings are
required. You should examine the class and attribute mapping and reconfigure as needed.
5
Click
Apply
, then click
OK
Mapping LDAP Classes and Attributes
Because the schemas of the LDAP directory and the eDirectory directory are different, mapping
LDAP classes and attributes to the appropriate eDirectory objects and attributes is necessary. These
mappings define the name conversion from the LDAP schema to the eDirectory schema.
No LDAP schema mappings are required for a schema entry if the name is a valid LDAP schema
name. In LDAP, the only characters allowed in a schema name are alphanumeric characters and
hyphens (-). No spaces are allowed in an LDAP schema name.
To ensure that searching by object IDs works after a schema extension other than LDAP, such as for
.sch files, you must refresh the LDAP server configuration if the schema is extended outside of
LDAP.
Many-to-One Mappings
To support LDAP from eDirectory, LDAP Services uses mappings in the protocol level (instead of
the directory service level) to translate between LDAP and eDirectory attributes and classes.
Because of this, two LDAP classes or attributes can be mapped to the same eDirectory class or
attribute.
For example, if you create a Cn through LDAP and then search for CommonName=Value, you will
get back a commonName, which might be the same attribute value for Cn.
If you request all attributes, you get the attribute that is first in the mappings list for that class. If you
ask for an attribute by name, you will get the correct name.
Many-to-One Class Mappings
LDAP Class Name
eDirectory Class Name
alias
aliasObject
Alias
groupOfNames
groupOfUniqueNames
group
Group
mailGroup
rfc822mailgroup
NSCP:mailGroup1
Summary of Contents for EDIRECTORY 8.8 SP2
Page 4: ...novdocx en 6 April 2007...
Page 116: ...116 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 128: ...128 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 255: ...256 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 406: ...408 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 563: ...566 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 573: ...576 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 601: ...604 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...