Oracle FAQ Your Portal to the Oracle Knowledge Grid
HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US
 

Home -> Community -> Mailing Lists -> Oracle-L -> RE: Oracle and OpenLDAP server

RE: Oracle and OpenLDAP server

From: Jesse, Rich <Rich.Jesse_at_qtiworld.com>
Date: Mon, 28 Jul 2003 11:09:23 -0800
Message-ID: <F001.005C780C.20030728110923@fatcity.com>


I agree. It was disheartening to look at the "LDAP v3 standard compliant" OiD and not be able to do much with the extracted LDIFs. After looking up the RFCs, I saw that there is an RFC for LDIF files that is separate from the RFC for LDAP. My opinion is that OiD *may* be "LDAP v3-compliant", but is more than likely *not* LDIF compliant, given that the LDIFs extracted by ldifwrite (OiD v9.0.1) cannot be imported into SunOne, or OpenLDAP, which are LDAP v3-compliant, and that the LDIFs from SunOne (the former iPlanet) and OpenLDAP are interchangeable.

I seem to remember that you also could not use OiD for SMTP-AUTH since the standard schema could not be created in OiD. This was due to the fact that OiD object IDs (OiD OIDs?) were (are?) fixed and could not be added, changed, nor deleted. Thus, the industry standard oid for the object could not be created. This is from memory from a year ago, so beers may have altered the facts...

I wonder what Oracle Corp did to get Unified Messaging to work with OiD? Perhaps 9iR2 is better than 9.0.1.

Rich

Rich Jesse                           System/Database Administrator
rjesse_at_qtiworld.com                  Quad/Tech Inc, Sussex, WI USA


> -----Original Message-----
> From: Stefan Jahnke [mailto:Stefan.Jahnke_at_bov.de]
> Sent: Monday, July 28, 2003 10:09 AM
> To: Multiple recipients of list ORACLE-L
> Subject: AW: Oracle and OpenLDAP server
>
>
> Thanks. So it looks like I either have to
>
> ... create an OID, export everything and change the stuff to
> be standard
> LDAP,
> ... or, maybe: Sniff the network traffic while having Oracle
> create the
> Schema (LDAP, not DB)
> on a win2k Active Directory (if that is standard LDAP stuff,
> let's see ;).
>
> Sounds fabulous. Why the h*&%ll doesn't Oracle just comply to
> the standard,
> since they're
> always all hyper about open standards and complain about Microsoft ?!
>
> Stefan
>
>
> -----Ursprüngliche Nachricht-----
> Von: Jesse, Rich [mailto:Rich.Jesse_at_qtiworld.com]
> Gesendet: Montag, 28. Juli 2003 16:59
> An: Multiple recipients of list ORACLE-L
> Betreff: RE: Oracle and OpenLDAP server
>
>
> Yes, but it isn't pretty. Actually, we chose SunOne, but the
> concept is the
> same. I can't take any credit for it though as the local LDAP expert
> employee-turned-consultant figured out how to create the
> Oracle schema (LDAP
> schema, not DB schema). I don't know the exact details, but
> I remember that
> most of the problem was that the OiD tools don't create LDIFs to RFC
> standards. This means that while you can export the entire
> Oracle schema
> from OiD using ldifwrite, you have to massage the resulting
> LDIF in order to
> make it standards-compliant. Once you have that LDIF, you
> can use it to
> recreate the schema in OpenLDAP.
>
> We only used (TRIED to use) OiD for Oracle network names
> resolution (i.e.
> instead of ONAMES) and not user authentication. And at least
> on 9.0.1 under
> Linux, we couldn't get the damn thing stable. So we dumped
> OiD in favor of
> SunOne for non-Oracle user authentication, and are still
> using ONAMES for
> name resolution.
>
> Rich
>
> Rich Jesse System/Database Administrator
> rjesse_at_qtiworld.com Quad/Tech Inc, Sussex, WI USA
>
>
> > -----Original Message-----
> > From: Stefan Jahnke [mailto:Stefan.Jahnke_at_bov.de]
> > Sent: Monday, July 28, 2003 4:04 AM
> > To: Multiple recipients of list ORACLE-L
> > Subject: Oracle and OpenLDAP server
> >
> >
> > Hi
> >
> > Is there a way to get Oracle to work with OpenLDAP instead of
> > OID, NDS or AD
> > ?
> > If so, does anybody know of a good How-To ?
> >
> > TIA,
> > Stefan

-- 
Please see the official ORACLE-L FAQ: http://www.orafaq.net
-- 
Author: Jesse, Rich
  INET: Rich.Jesse_at_qtiworld.com

Fat City Network Services    -- 858-538-5051 http://www.fatcity.com
San Diego, California        -- Mailing list and web hosting services
---------------------------------------------------------------------
To REMOVE yourself from this mailing list, send an E-Mail message
to: ListGuru_at_fatcity.com (note EXACT spelling of 'ListGuru') and in
the message BODY, include a line containing: UNSUB ORACLE-L
(or the name of mailing list you want to be removed from).  You may
also send the HELP command for other information (like subscribing).
Received on Mon Jul 28 2003 - 14:09:23 CDT

Original text of this message

HOME | ASK QUESTION | ADD INFO | SEARCH | E-MAIL US