Configure the verification mode of your host account and the password as LDAP. And it can login successfully through ldapuser40. The password is set as "password". And the certificate can be downloaded from http://ip/dir/ldap.crt. After the user logs on the user has no host directory unless you configure the autofs in the following questions.
See explanation below.
Correct answer: 1
Explanation:
system-config-authentication LDAP Server: ldap//instructor.example.com (In domain form, not write IP)OR # yum groupinstall directory-client (1.krb5-workstation 2.pam-krb5 3.sssd) # system-config-authentication 1.User Account Database: LDAP2.LDAP Search Base DN: dc=example,dc=com3.LDAP Server: ldap://instructor.example.com (In domain form, not write IP) 4.Download CA Certificate5.Authentication Method: LDAP password6.Apply getent passwd ldapuser40
system-config-authentication
LDAP Server: ldap//instructor.example.com (In domain form, not write IP)
3.LDAP Server: ldap://instructor.example.com (In domain form, not write IP) 4.Download CA Certificate
5.Authentication Method: LDAP password
6.Apply
getent passwd ldapuser40
Question 2
Configure autofs to make sure after login successfully, it has the home directory autofs, which is shared as /rhome/ldapuser40 at the ip: 172.24.40.10. and it also requires that, other ldap users can use the home directory normally.
See explanation below.
Correct answer: 1
Explanation:
# chkconfig autofs on # cd /etc/ # vim /etc/auto.master /rhome /etc/auto.ldap # cp auto.misc auto.ldap # vim auto.ladp ldapuser40 -rw,soft,intr 172.24.40.10:/rhome/ldapuser40* -rw,soft,intr 172.16.40.10:/rhome/&# service autofs stop # server autofs start # showmount -e 172.24.40.10 # su - ladpuser40