编写脚本 直接可以通过authconfig 认证ldap用户,并且开机自动

来源:互联网 发布:淘宝图书抗日战争 编辑:程序博客网 时间:2024/06/05 05:05

以下为脚本内容

#!/bin/bashecho "install packages..."yum install sssd krb5-workstation -y &> /dev/nullecho "config authconfig..."authconfig \--enableldap \--enablekrb5 \--disableldapauth \--enableldaptls \--ldapserver="classroom.example.com" \--ldapbasedn="dc=example,dc=com" \--ldaploadcacert=http://172.25.254.254/pub/example-ca.crt \--krb5realm="EXAMPLE.COM" \--krb5kdc="classroom.example.com" \--krb5adminserver="classroom.example.com" \--updateecho "ok !!"

自动挂在ldap用户家目录,可以通过authconfig认证ldap用户

#!/bin/bashecho "install packages..."yum install sssd krb5-workstation autofs -y &> /dev/nullecho "config authconfig..."authconfig \--enableldap \--enablekrb5 \--disableldapauth \--enableldaptls \--ldapserver="classroom.example.com" \--ldapbasedn="dc=example,dc=com" \--ldaploadcacert=http://172.25.254.254/pub/example-ca.crt \--krb5realm="EXAMPLE.COM" \--krb5kdc="classroom.example.com" \--krb5adminserver="classroom.example.com" \--updateecho "config autofs...."echo "/home/guests /etc/auto.ldap" >>/etc/auto.masterecho "* 172.25.254.254:/home/guests/&" >>/etc/auto.ldapsystemctl restart autofsecho "ok !!"           
0 0