www.wikidata.uk-ua.nina.az
LDAP angl Lightweight Directory Access Protocol Polegshenij protokol dostupu do direktorij katalogiv merezhevij protokol prikladnogo rivnya dlya nadsilannya zapitiv ta modifikaciyi danih sluzhbi katalogiv cherez TCP IP LDAP ye vidkritim komercijno nejtralnim angl vendor neutral promislovim standartnim protokolom LDAP rozroblenij IETF yak polegshenij variant rozroblenogo ITU T protokolu DAP Sered poshirenih variantiv vikoristannya LDAP nadannya yedinogo shovisha dlya zberigannya imen koristuvachiv ta paroliv Ce dozvolyaye riznim sluzhbam ta zastosunkam nadsilati zapiti do LDAP servera dlya validaciyi koristuvachiv 1 Zmist 1 Korotkij opis 2 Struktura katalogiv 3 Istoriya viniknennya 4 Posilannya 4 1 RFC 5 PrimitkiKorotkij opis RedaguvatiLDAP vidnosno prostij protokol sho vikoristovuye TCP IP i dozvolyaye provoditi operaciyi autentifikaciyi bind poshuku search ta porivnyannya compare a takozh operaciyi dodavannya zmini abo vidalennya zapisiv Zazvichaj LDAP server prijmaye vhidni z yednannya na port 389 po protokolah TCP abo UDP Dlya LDAP seansiv inkapsulovanih v SSL zazvichaj vikoristovuyetsya port 636 Bud yakij zapis u katalozi LDAP skladayetsya z odnogo abo dekilkoh atributiv i volodiye unikalnim rozriznyalnim im yam DN angl Distinguished Name Unikalne im ya mozhe viglyadati napriklad nastupnim chinom cn Ivan Petrenko ou Spivrobitniki dc example dc com Unikalne im ya skladayetsya z odnogo abo dekilkoh vidnosnih unikalnih imen RDN angl Relative Distinguished Name rozdilenih komoyu Vidnosne unikalne im ya maye viglyad ImyaAtributa znachennya Na odnomu rivni katalogu ne mozhe isnuvati dvoh zapisiv z odnakovimi vidnosnimi unikalnimi imenami V silu ciyeyi strukturi unikalnogo imeni zapisi v katalozi LDAP mozhna legko uyaviti u viglyadi dereva Zapis mozhe skladatisya tilki z tih atributiv yaki viznacheni v opisi klasu zapisu object class yaki u svoyu chergu ob yednani v shemi schema U shemi viznacheno yaki atributi ye dlya danogo klasu obov yazkovimi a yaki neobov yazkovimi Takozh shema viznachaye tip i pravila porivnyannya atributiv Kozhen atribut zapisu mozhe zberigati kilka znachen Yak pravilo katalog LDAP realizuyetsya zgidno z modellyu X 500 vin skladayetsya iz dereva zapisiv 2 kozhne z yakih skladayetsya iz mnozhini imenovanih atributiv zi znachennyami Deyaki zi sluzhb pidtrimuyut skladnishu model lis ale bilshist mayut lishe odin pochatkovij zapis Zalezhno vid obranoyi modeli LDAP katalog chasto viddzerkalyuye riznomanitni politichni geografichni ta abo organizacijni regioni Vstanovleni LDAP sistemi shilyayutsya do vikoristannya domennih imen DNS dlya strukturuvannya najvishih rivniv iyerarhiyi Na nizhchih rivnyah v katalozi mozhut buti zapisi yaki vidpovidayut lyudyam organizacijnim pidrozdilam printeram dokumentam grupam lyudej abo bud chomu inshomu sho predstavlyaye danij zapis abo mnozhinu zapisiv v katalozi Ostannya versiya protokolu LDAPv3 Standart LDAPv3 viznacheno v nizci dokumentiv IETF yak opisano v RFC 4510 Struktura katalogiv RedaguvatiProtokol nadaye interfejs z katalogami yaki vidpovidayut standartu X 500 vidannya 1993 r Zapis skladayetsya z naboru atributiv Atribut maye im ya yake mozhe buti tipom atributa attribute type abo opisom faktichno skorochenoyu nazvoyu atributa attribute description i odne abo kilka znachen Atributi viznacheni v shemi Kozhen zapis maye unikalnij identifikator jogo rozriznyalne im ya Distinguished Name DN Vono skladayetsya z odnogo chi dekilkoh vidnosnih rozriznyalnih imen Relative Distinguished Name RDN utvorenih z odnogo chi dekilkoh atributiv v zapisu Mozhna uyaviti DN yak povnij shlyah do fajlu i RDN yak im ya fajlu v batkivskij papci napriklad yaksho foo bar myfile txt ye DN to myfile txt bude RDN Dobre DN i RDN poyasneno tut Arhivovano 8 listopada 2014 u Wayback Machine Pro opis atributa jdetsya v tretomu rozdili RFC 4514 Implementations MUST recognize AttributeType name strings descriptors listed in the following table but MAY recognize other name strings Realizaciyi POVINNI rozpiznavati ryadki nazv AttributeType deskriptoriv perelichenih v nastupnij tablici ale MOZhUT rozpiznavati j inshi nazvi ryadkiv String X 500 AttributeType CN commonName 2 5 4 3 L localityName 2 5 4 7 ST stateOrProvinceName 2 5 4 8 O organizationName 2 5 4 10 OU organizationalUnitName 2 5 4 11 C countryName 2 5 4 6 STREET streetAddress 2 5 4 9 DC domainComponent 0 9 2342 19200300 100 1 25 UID userId 0 9 2342 19200300 100 1 1 Podanu vishe tablicyu mozhna oformiti tak Skorochena nazva Atribut X 500 Identifikator ob yekta OID CN commonName 2 5 4 3L localityName 2 5 4 7ST stateOrProvinceName 2 5 4 8O organizationName 2 5 4 10OU organizationalUnitName 2 5 4 11C countryName 2 5 4 6STREET streetAddress 2 5 4 9DC domainComponent 0 9 2342 19200300 100 1 25UID userId 0 9 2342 19200300 100 1 1Nazvi imena atributiv u formi tip atributa i opis atributa navedeni ta opisani v RFC 4519 Istoriya viniknennya RedaguvatiTelekomunikacijni kompaniyi vprovadili koncepciyu sluzhbi katalogiv do informacijnih tehnologij ta komp yuternih merezh tak yak voni rozumili na pidstavi svogo 70 richnogo dosvidu roboti z telefonnimi katalogami Ce vililosya u specifikaciyi X 500 naboru protokoliv rozroblenogo ITU u 1980 rokah X 500 sluzhbi katalogiv buli dostupni cherez X 500 protokol dostupu do katalogiv angl Directory Access Protocol DAP yakij vikoristovuvav Open Systems Interconnection OSI stek protokoliv Rozrobka LDAP mala na meti polegshiti dostup do X 500 sluzhbi katalogiv cherez prostishij stek protokoliv TCP IP Posilannya RedaguvatiRFC Redaguvati LDAP opisano v nizci dokumentiv Request for Comments RFC 4510 LDAP Technical Specification Road Map LDAP Dorozhnya karta putivnik tehnichnih harakteristik Obsoletes zaminyuye zastarili RFC 2251 RFC 2252 RFC 2253 RFC 2254 RFC 2255 RFC 2256 RFC 2829 RFC 2830 RFC 3377 RFC 3771 RFC 4511 LDAP The Protocol Protokol Obsoletes RFC 2251 RFC 2830 amp RFC 3771 RFC 4512 LDAP Directory Information Models Modeli vmistu katalogu Obsoletes RFC 2251 RFC 2252 RFC 2256 amp RFC 3674 RFC 4513 LDAP Authentication Methods and Security Mechanisms Metodi avtentifikaciyi i mehanizmi bezpeki Obsoletes RFC 2251 RFC 2829 amp RFC 2830 RFC 4514 LDAP String Representation of Distinguished Names Ryadkove podannya rozriznyalnih imen Obsoletes RFC 2253 RFC 4515 LDAP String Representation of Search Filters Ryadkove podannya filtriv poshuku Obsoletes RFC 2254 RFC 4516 LDAP Uniform Resource Locator Universalnij lokator resursu Obsoletes RFC 2255 RFC 4517 LDAP Syntaxes and Matching Rules Sintaksis i pravila vidpovidnosti Obsoletes RFC 2252 amp RFC 2256 Updates onovlyuye RFC 3698 RFC 4518 LDAP Internationalized String Preparation Internacionalizovana pidgotovka ryadkiv RFC 4519 LDAP Schema for User Applications Shema dlya koristuvackih zastosunkiv dodatkiv Obsoletes RFC 2256 Updates RFC 2247 RFC 2798 amp RFC 2377 Nastupni RFCi detalno opisuyut LDAP specifichni najkrashi isnuyuchi praktiki tehnichni prijomi RFC 4520 also takozh BCP 64 Internet Assigned Numbers Authority IANA Considerations for the Lightweight Directory Access Protocol LDAP Administraciyi adresnogo prostoru Internet IANA rekomendaciyi mirkuvannya dlya polegshenogo protokolu sluzhbi katalogiv LDAP replaced zaminenij RFC 3383 RFC 4521 also BCP 118 Considerations for Lightweight Directory Access Protocol LDAP Extensions Rekomendaciyi shodo rozshiren polegshenogo protokolu sluzhbi katalogiv LDAP Nepovnij spisok RFCiv yaki viznachayut rozshirennya LDAPv3 RFC 2247 Use of DNS domains in distinguished names Vikoristannya DNS domeniv v rozriznyalnih imenah Updated by RFC 4519 amp RFC 4524 RFC 2307 Using LDAP as a Network Information Service en Vikoristannya LDAP yak Informacijnoyi sluzhbi merezhi RFC 2589 LDAPv3 Dynamic Directory Services Extensions Rozshirennya sluzhbi dinamichnogo katalogu RFC 2649 LDAPv3 Operational Signatures LDAPv3 Operacijni pidpisi RFC 2696 LDAP Simple Paged Result Control LDAP Prostij storinkovij kontrol rezultativ RFC 2798 inetOrgPerson LDAP Object Class inetOrgPerson klas ob yekta LDAP Updated by Onovlenij v RFC 3698 RFC 4519 amp RFC 4524 RFC 2830 LDAPv3 Extension for Transport Layer Security LDAPv3 Rozshirennya dlya bezpeki na transportnomu rivni RFC 2849 The LDAP Data Interchange Format LDIF Format obminu danimi LDAP LDIF RFC 2891 Server Side Sorting of Search Results Serverna chastina storona sortuvannya rezultativ poshuku RFC 3045 Storing Vendor Information in the LDAP root DSE Zberezhennya informaciyi pro virobnika v korenevih DSE LDAP RFC 3062 LDAP Password Modify Extended Operation Rozshirena operaciya zmini parolya v LDAP RFC 3296 Named Subordinate References in LDAP Directories Imenovani pidlegli posilannya v LDAP katalogah RFC 3671 Collective Attributes in LDAP Kolektivni spilni atributi v LDAP RFC 3672 Subentries in LDAP Pidzapisi v LDAP RFC 3673 LDAPv3 All Operational Attributes LDAPv3 Vsi operacijni atributi RFC 3687 LDAP Component Matching Rules LDAP Komponent pravil vidpovidnosti RFC 3698 LDAP Additional Matching Rules LDAP Dodatkovi pravila vidpovidnosti RFC 3829 LDAP Authorization Identity Request and Response Controls Avtorizaciya zapitiv identifikaciyi i vidpovidi upravlinnya RFC 3866 Language Tags and Ranges in LDAP Movni tegi i diapazoni v LDAP RFC 3909 LDAP Cancel Operation LDAP Operaciya skasuvannya RFC 3928 LDAP Client Update Protocol LCUP Kliyentskij protokol onovlen RFC 4370 LDAP Proxied Authorization Control Doruchenij kontrol avtorizaciyi RFC 4373 LDAP Bulk Update Replication Protocol LBURP Protokol masovogo onovlennya replikaciyi RFC 4403 LDAP Schema for Universal Description Discovery and Integration version 3 UDDIv3 LDAP Shema dlya opisu predstavlennya ta integraciyi versiyi 3 UDDIv3 RFC 4522 LDAP Binary Encoding Option Opciya dvijkovogo koduvannya RFC 4523 LDAP X 509 Certificate Schema Shema H 509 sertifikatu RFC 4524 LDAP COSINE Schema replaces RFC 1274 Shema COSINE Co operation and Open Systems Interconnection in Europe Kooperaciya i vzayemodiya vidkritih sistem v Yevropi RFC 4525 LDAP Modify Increment Extension Rozshirennya zmini zbilshennya znachennya atributiv RFC 4526 LDAP Absolute True and False Filters Absolyutni filtri istini i hibnosti RFC 4527 LDAP Read Entry Controls Upravlinnya chitannyam zapisiv RFC 4528 LDAP Assertion Control Upravlinnya pidtverdzhennyam RFC 4529 Requesting Attributes by Object Class in the Lightweight Directory Access Protocol LDAP Zapit atributiv za klasom ob yekta v LDAP RFC 4530 LDAP entryUUID Operational Attribute Operacijnij atribut entryUUID UUID zapisu RFC 4531 LDAP Turn Operation Operaciya zmini rolej kliyenta i servera RFC 4532 LDAP Who am I Operation Hto ya operaciya RFC 4533 LDAP Content Synchronization Operation Operaciya sinhronizaciyi kontentu RFC 4876 Configuration Profile Schema for LDAP Based Agents Konfiguraciya profilyu shemi dlya LDAP zasnovanih agentiv RFC 5020 LDAP entryDN Operational Attribute Operacijnij atribut entryDN zapis rozriznyalnogo imeni LDAPv2 bulo zaznacheno v nastupnih dokumentah RFC RFC 1777 Lightweight Directory Access Protocol replaced RFC 1487 RFC 1778 The String Representation of Standard Attribute Syntaxes Ryadkove podannya sintaksisiv standartnih atributiv replaced RFC 1488 RFC 1779 A String Representation of Distinguished Names Ryadkove podannya rozriznyalnih imen replaced RFC 1485 LDAPv2 buv nadanij istorichnij status za nastupnim RFC RFC 3494 Lightweight Directory Access Protocol version 2 LDAPv2 to Historic Status Polegshenij protokol dostupu do katalogiv versiyi 2 LDAPv2 v istorichnij status nbsp Istoriya RFCiv pov yazanih z LDAPPrimitki Redaguvati Introduction to OpenLDAP Directory Services OpenLDAP Procitovano 1 lyutogo 2016 ITU T Recommendation X 500 11 08 Information technology Open Systems Interconnection The Directory Overview of concepts models and services Arhivovano 17 grudnya 2014 u Wayback Machine zokrema Figure 2 Structure of the DIT and of entries nbsp Ce nezavershena stattya pro telekomunikaciyi Vi mozhete dopomogti proyektu vipravivshi abo dopisavshi yiyi Otrimano z https uk wikipedia org w index php title LDAP amp oldid 40641977