Changes

Jump to: navigation, search

stoney core: OpenLDAP directory data organisation

74 bytes added, 12:28, 30 January 2023
/* Services */
The sub tree '''ou=services,ou=administration,dc=stoney-cloud,dc=org''' contains all the service users. Each service and/or application has its own authentication user. The authentication user is used in the [[OpenLDAP Directory Access Control Lists]] (ACLs) to allow or restrict access to the data.
Naming Convention '''Notification Useruser''':
* <SERVICE>-notification
** backup-notification
** cloud-notification
** lbaas-notification
** mail-notification
** storage-notification
 
Naming Convention '''Service user''':
** cm-puppetboard ('''c'''onfiguration '''m'''anagement - Puppetboard Service)
** dms-alfresco ('''d'''ocument '''m'''anagement '''s'''ystem - Alfresco)
** lbaas-pam-ldap
** monitoring-zabbix
** phabricator
Naming Convention '''API user''':
* <SERVICE>-api
** lbaas-api
Naming Convention '''Provisioning user''':
** prov-cloud-openstack
** prov-configuration-management-puppet
** prov-lbaas-haproxy
** prov-mail-ox ('''O'''pen-'''X'''change)
** prov-monitoring-zabbix
3,368
edits