トップ > 1月 30th, 2008

2008.01.30

nagiosのbasic認証をActiveDirectoryに対応させる

apacheのBasic認証にActiveDirectoryを使う設定

/etc/krb5.confの編集
# 大文字小文字に注意!

[libdefaults]
default_realm = AD.HOGE.COM
[realms]
AD.HOGE.COM = {
kdc = ad.hoge.com:88
admin_server = ad.hoge.com:749
default_domain = ad.hoge.com
[domain_realm]
.ad.hoge.com = AD.HOGE.COM
ad.hoge.com = AD.HOGE.COM


/etc/nagios.confの編集

<Directory "/usr/lib64/nagios/cgi">
Options ExecCGI
AllowOverride None
Order allow,deny
Allow from all
AuthName "ActiveDirectory Login"
AuthLDAPUrl "ldap://ad.hoge.com:389/dc=ad,dc=hoge,dc=com?sAMAccountName?sub?(objectClass=*)"
require user hoge1 hoge2 hoge3
</Directory>
<Directory "/usr/share/nagios">
Options None
AllowOverride None
Order allow,deny
Allow from all
AuthType Basic
AuthName "ActiveDirectory Login"
AuthLDAPUrl "ldap://ad.hoge.com:389/dc=ad,dc=hoge,dc=com?sAMAccountName?sub?(objectClass=*)"
require user hoge1 hoge2 hoge3
</Directory>