4.2 Initializing the LDAP Directory
All system information (system structure, the configuration and deployment method
for each Branch Server, available system images, and Point of Service terminal types)
is stored in an LDAP directory on the Administration Server.
SUSE Linux Enterprise Point of Service uses the OpenLDAP directory service. The
posInitLdap
script defines the LDAP directory schema and the initial records for
OpenLDAP. It cannot add a SUSE Linux Enterprise Point of Service LDAP directory
to an existing OpenLDAP tree; it creates an entirely new LDAP directory tree.
To create the SUSE Linux Enterprise Point of Service LDAP directory for OpenLDAP:
1
After you have installed the SUSE Linux Enterprise Point of Service Administra-
tion Server, log in as
root
on the Administration Server.
2
Configure the firewall running on the Administration Server to allow traffic on
the ldap and ldaps ports, 389 TCP/UDP and 636 TCP/UDP, respectively. Do this
by using the YaST Firewall module (
yast2 firewall
).
3
Run
posInitAdminserver.sh
.
4
Specify your company name without spaces or special characters.
5
Specify the two-letter code of your country.
Use
de
for Germany,
us
for United States,
uk
for United Kingdom, and so forth.
6
Specify the LDAP administrator password. The password must be alphanumeric.
You are assigning the password for the LDAP directory administrator account.
The Branch Server uses this account to access the LDAP directory and this ac-
count is required to use
posAdmin
to add objects to the LDAP directory.
7
Determine if you want to use SSL when the Branch Server connects to the LDAP
directory on the Administration Server. The default is to not use SSL.
• Select
Y
to use an SSL connection when the Branch Server connects to the
LDAP Directory.
38
SUSE Linux Enterprise Point of Service Guide