CERT2LDAP - Online Linux Manual PageSection : L
Updated : 21/04/01
Source : MOD_AUTHZ_LDAP

NAMEcert2ldap − import a certificate into an LDAP server

SYNOPSIScert2ldap [ options ] [ certificatefile ]

OPTIONS−hhostname  connect to server hostname. −pport  use port port instead of the usual LDAP port 389. −i  store the issuer distinguished name of the certificate in the directory. −s  store the subject distinguished name of the certificate in the directory. −c  store the certificate in binary form in the directory. −n  store the serial number of the certificate in the directory. −d  increase debug level. −Dtargetdn  add all the attributes specified to the entry with distinguished name targetdn. −bbinddn  bind as user binddn to the directory. −wpassword  use password to bind to the directory. −oowner  create a certificate mapping entry that specifies owner as the owner of the certificate. −Vversion  use LDAP protocol version version to connect to the server. −B  use "userCertifiate;binary" format for update, some servers seem to require this, others are happy without.

DESCRIPTIONCert2ldap is used to import a certificate into an LDAP directory in such a as to allow the mod_authz_ldap Apache module to authenticate and authorize users based on their certificates. The certificate is either specified as a certificatefilename argument on the command line or read from standard input. There are essentially two ways to use the program: either a certificate is added as a userCertifcate attribute to a users node, or a certificate mapping node is added somewhere else in the directory, referencing the user. The second form is active as soon as one if the options -i, -s, -o or -n are used. The first form uses only the -c option. The correct configuration of the entires can be checked using the certfind(1) program. If the node to be updated does not exist yet, a minimal node is created. However this is only marginally useful in the case of a node containing the certificate proper.

SEE ALSOcertfind(1)

AUTHORAndreas F. Mueller <andreas.mueller@othello.ch>
0
Johanes Gumabo
Data Size   :   7,634 byte
man-cert2ldap.1Build   :   2024-12-05, 20:55   :  
Visitor Screen   :   x
Visitor Counter ( page / site )   :   4 / 193,828
Visitor ID   :     :  
Visitor IP   :   3.144.3.235   :  
Visitor Provider   :   AMAZON-02   :  
Provider Position ( lat x lon )   :   39.962500 x -83.006100   :   x
Provider Accuracy Radius ( km )   :   1000   :  
Provider City   :   Columbus   :  
Provider Province   :   Ohio ,   :   ,
Provider Country   :   United States   :  
Provider Continent   :   North America   :  
Visitor Recorder   :   Version   :  
Visitor Recorder   :   Library   :  
Online Linux Manual Page   :   Version   :   Online Linux Manual Page - Fedora.40 - march=x86-64 - mtune=generic - 24.12.05
Online Linux Manual Page   :   Library   :   lib_c - 24.10.03 - march=x86-64 - mtune=generic - Fedora.40
Online Linux Manual Page   :   Library   :   lib_m - 24.10.03 - march=x86-64 - mtune=generic - Fedora.40
Data Base   :   Version   :   Online Linux Manual Page Database - 24.04.13 - march=x86-64 - mtune=generic - fedora-38
Data Base   :   Library   :   lib_c - 23.02.07 - march=x86-64 - mtune=generic - fedora.36

Very long time ago, I have the best tutor, Wenzel Svojanovsky . If someone knows the email address of Wenzel Svojanovsky , please send an email to johanes_gumabo@yahoo.co.id .
If error, please print screen and send to johanes_gumabo@yahoo.co.id
Under development. Support me via PayPal.