SLAPD-LDAP(5) SLAPD-LDAP(5) (NAME) slapd-ldap - LDAP slapd (SYNOPSIS) /etc/ldap/slapd.conf (DESCRIPTION) slapd-ldap LDAP LDAP . (referrals) slapd . back-ldap (Bind) LDAP . . DN . (connection pooling) . ldap (assert) . . idassert-* . authzTo slapd.conf(5) . slapd(8) (schema) (objectClasses) DN . . . : (looping back) slapd(8) (thread) slapd(8) threads . slapd-relay(5) . (CONFIGURATION) slapd.conf LDAP . "database ldap" "backend" "database" . slapd.conf(5) . : back-ldap lastmod off ldap meta . () . lastmod off . uri LDAP . URI ldapurl : uri "ldap://host/ ldap://backup-host/" URI . . acl-bind bindmethod=simple|sasl [binddn=] [credentials=] [saslmech=] [secprops=] [realm=] [authcId=] [authzId=] [starttls=no|yes|critical] [tls_cert=] [tls_key=] [tls_cacert=] [tls_cacertdir=] [tls_reqcert=never|allow|try|demand] [tls_reqsan=never|allow|try|demand] [tls_cipher_suite=] [tls_ecname=] [tls_protocol_min=[.]] [tls_crlcheck=none|peer|all] rootdn LDAP . ACL . . simple binddn credentials . idassert-bind . idassert-bind . - . . idassert-bind . TLS TLS slapd tls_reqcert "demand" tls_reqsan "allow" . cancel {ABANDON|ignore|exop[-discover]} . abandon . ignore idle-timeout conn-ttl . exop cancel ( RFC 3909) cancel . exop-discover cancel root DSE . chase-referrals {YES|no} / libldap rebind-as-user . . conn-pool-max . conn-ttl