Good morning all !
My first post, so let me introduce myself : I'm Francois, I'm the administrator of 350+ macs, 70+ servers, network, telephony… and a casper suite user for two years ! It made my life really easier, I'm very happy about it. My company sells language studies, and owns 4 language schools. We have around 40 remote offices worldwide, adding a bit of complexity ;-) I live in Montreux in Switzerland. Everyone should experience the Montreux Jazz Festival some day !
So now, the IT stuff :
I'm setting up a new Open Directory server on 10.7.3 to replace my older 10.6.8 server.
This time, I would like to use SSL and authenticated bindings. It looks like it's not possible to use the built-in tools.
Is there a simple method to do this, or should I script a bit ? I found the bindToLDAP.sh script in the Ressource Kit, but there's no mention of any authentification.
FYI I checked these options on my ODM :
- Enable authenticated directory binding
- Disable clear text passwords
- Encrypt all packets
- Digitally sign all packets
- Block man-in-the-middle attacks
- Allow users to edit their own contact information
Any help would be very appreciated.
Thanks in advance,
Francois