Central Servers
LDAP Server
At the Institute, a LDAP (Lightweight Directory Access Protocol) Server is used and protected against failures by replication onto a second (Slave) Server; both Master and Slave Server are running onto a HA (High Availability) Cluster. The LDAP database is seperately backed up daily.
Single Sign On (SSO)
Within LDAP, the accounting information both for Unix / Linux (Posix) and Windows are stored; authentication as well as authorization on every networked service are processed via LDAP. Therewith, a user can use every service approved for him.
Unix: autofs
All Unix and Linux systems (older clients are integrated via a seperate NIS-LDAP-Gateway) can retrieve information about the Home Directories of the users as well as about the NFS Shares available to them from the LDAP Server.
Windows: LDAP-Samba-Domain
For connection and integration of the Windows client PC's, a Domain based on LDAP and Samba is at disposal. After logging on to a Domain Member PC, all users do not only have access to their personal data but are also able to use all the services the are authorized for as network users within the Institute.
Windows: AD (Active Directory)
For improving the service for Windows 7 as well as to connect a new generation of storage subsystems, the setup of an AD (Active Directory) Domain with exchange with the LDAP server is planned.