Storage for data needed by mac os x, Storage for data needed by mac os x 42 – Apple Mac OS X Server (version 10.2.3 or later) User Manual
Page 42

42
Chapter 2
The Open Directory architecture also includes Open Directory Password Server. A Password
Server can securely store and validate the passwords of users who want to log in to client
computers on your network or use other network resources that require authentication. A
Password Server can also enforce such policies as password expiration and minimum length.
Significantly, a Password Server is the best means of authenticating Windows computer users
for file service, print service, and other Windows services in Mac OS X Server.
Even if you don’t plan to offer Windows services or enforce password policies now, you
should set up a Password Server now. Having a Password Server already set up will simplify
deploying Windows services or enforcing password policies in the future. If you have more
than one Mac OS X Server, in most cases you need only set up a Password Server on one of
them—usually on the first one you set up. (Although you can set up a Password Server later,
doing so means resetting the passwords of all user accounts that have been created.
Resetting passwords can involve much time-consuming interaction with users.)
To understand the information in this chapter, you should be comfortable with Mac OS X.
You do not need advanced network administrator or UNIX experience to use directory
services provided by Mac OS X Servers. If you want to integrate LDAP directories from other
servers, you need to be familiar with LDAP. If you want to integrate Active Directory servers,
you need to be familiar with Active Directory and LDAP. You need to be comfortable with
UNIX if you want to integrate BSD configuration files.
Storage for Data Needed by Mac OS X
Directory services act as an intermediary between directory domains, which store
information about users and resources, and the application and system software processes
that want to use the information. A directory domain stores information in a specialized
database that is optimized to handle a great many requests for information and to find and
retrieve information quickly. Information may be stored in one directory domain or in
several related directory domains.
Printers
Groups
Servers
Users
Processes
Mounts
Directory
domains
Directory
services
LL0395.Book Page 42 Wednesday, November 20, 2002 11:44 AM