Apache LDAP

Da Emigar.
Jump to navigation Jump to search

Come configurare apache2 2.0 con autenticazione a LDAP (MS Active Directory)

Alias /miosito "/var/www/miosito"
<Directory "/var/www/miosito">
        SSLRequireSSL
        DirectoryIndex index.html
        Options Indexes FollowSymLinks MultiViews
        AllowOverride None
        Order allow,deny
        Allow from all

        AuthType        Basic
        AuthName        "miosito"
        AuthLDAPEnabled on
        AuthLDAPBindDN "CN=Nome Cognome,OU=XXX,OU=YYY,OU=ZZZZ,OU=Sede,DC=miodominio,DC=it"
        AuthLDAPBindPassword "miapassword"
        AuthLDAPAuthoritative on
        AuthLDAPURL ldap://ldap1.miodominio.it/ou=sede,dc=miodomino,dc=it?userPrincipalName?sub?(objectClass=*)
        Require group CN=GRUPPO1,OU=XXX,OU=YYY,OU=ZZZZ,ou=Sede,DC=miodominio,DC=it
</Directory>



Con Apache 2.2 il modulo apache mod_auth_ldap è sostituito dal modulo mod_authnz_ldap, quindi bisogna eliminare le righe:

  AuthLDAPEnabled on
  AuthLDAPAuthoritative on

e sostituirle con:

  AuthBasicProvider       ldap
  AuthzLDAPAuthoritative on