SlideShare a Scribd company logo
1 of 47
File Access and LUM Deployment with Novell ®   Open Enterprise Server 2 Martin Weiss , Senior Technical Specialist [email_address] Dr. Frieder Schmidt , Senior Technical Specialist [email_address]
Agenda ,[object Object]
File Access Protocols and Proxy User
NCP ™ , AFP, CIFS, (S)FTP, HTTP(S)
Deploying Multiple Methods for File Access
Troubleshooting
Question and Answer
Linux User Management (LUM)
Linux User Management ,[object Object]
Administration ,[object Object],[object Object]
Case sensitivity
POSIX attributes
ODBC / DSReport is your friend
Linux User Management ,[object Object]
Unix workstation objects ,[object Object],[object Object]
SSL certificates
“ convert-lower”
“ cache-only”
“ persistent-search”
Linux User Management ,[object Object]
Groups
Users
namconfig cache_refresh
Which users should be LUM enabled for which servers? ,[object Object],[object Object]
Certificates for alternate LDAP server (namconfig -k)
File Access Protocols and Proxy User
Novell ®  Open Enterprise Server 2 The best multi-protocol file server ,[object Object]
POSIX file systems: ext3, Reiser, XFS ,[object Object],[object Object]
CIFS/SMB – Novell CIFS, Samba
AFP – Novell AFP
HTTP – NetStorage, Apache
FTP – PureFTP with Novell changes
NFS – Linux NFS
Proxy Users ,[object Object]
For reading user passwords for non-cleartext authentication ,[object Object],[object Object]
Management of proxy user password expiry
Security issue of reading user passwords
Proxy Users  (continued) ,[object Object]
Default to a single OES common proxy for all services
Proxy user is made less powerful – no password read privileges ,[object Object],[object Object],[object Object],[object Object]
Novell ®  NetWare Core Protocol ™  (NCP ™ )
NCP ™  – High Level Features ,[object Object]
Trustee change synchronization with eDirectory ™  - Deletion and rename of trustees
Trustee information obtained from _NETWARE/.trustee_database.xml
Auditing support for NCP file events
Salvage support (deleter) for non-LUM users ,[object Object],[object Object]
Add the ability to disable logins per volume and automated “clear connection” ,[object Object],[object Object]

More Related Content

What's hot

Domain Services for Windows: Best Practices for Windows Interoperability
Domain Services for Windows: Best Practices for Windows InteroperabilityDomain Services for Windows: Best Practices for Windows Interoperability
Domain Services for Windows: Best Practices for Windows InteroperabilityNovell
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]sourav nanda
 
Distributed Filesystems Review
Distributed Filesystems ReviewDistributed Filesystems Review
Distributed Filesystems ReviewSchubert Zhang
 
Dfs (Distributed computing)
Dfs (Distributed computing)Dfs (Distributed computing)
Dfs (Distributed computing)Sri Prasanna
 
New File Server Features Of Windows Server 2008
New File Server Features Of Windows Server 2008New File Server Features Of Windows Server 2008
New File Server Features Of Windows Server 2008Microsoft TechNet
 
Distributed file system
Distributed file systemDistributed file system
Distributed file systemNaza hamed Jan
 
MCSA Installing & Configuring Windows Server 2012 70-410
MCSA Installing & Configuring Windows Server 2012 70-410MCSA Installing & Configuring Windows Server 2012 70-410
MCSA Installing & Configuring Windows Server 2012 70-410omardabbas
 
Server 2008 r2 ppt
Server 2008 r2 pptServer 2008 r2 ppt
Server 2008 r2 pptRaj Solanki
 
Introduction to failover clustering with sql server
Introduction to failover clustering with sql serverIntroduction to failover clustering with sql server
Introduction to failover clustering with sql serverEduardo Castro
 
Ctive directory interview question and answers
Ctive directory interview question and answersCtive directory interview question and answers
Ctive directory interview question and answerssankar palla
 
Distributed file systems
Distributed file systemsDistributed file systems
Distributed file systemsSri Prasanna
 
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and FutureGWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and FutureGWAVA
 
Preparing forfirstconnectionsinstall
Preparing forfirstconnectionsinstallPreparing forfirstconnectionsinstall
Preparing forfirstconnectionsinstallGabriella Davis
 
Lesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systemsLesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systemsJo Ko
 
11 distributed file_systems
11 distributed file_systems11 distributed file_systems
11 distributed file_systemslongly
 

What's hot (20)

Domain Services for Windows: Best Practices for Windows Interoperability
Domain Services for Windows: Best Practices for Windows InteroperabilityDomain Services for Windows: Best Practices for Windows Interoperability
Domain Services for Windows: Best Practices for Windows Interoperability
 
Server interview[1]
Server interview[1]Server interview[1]
Server interview[1]
 
Failover cluster
Failover clusterFailover cluster
Failover cluster
 
Distributed Filesystems Review
Distributed Filesystems ReviewDistributed Filesystems Review
Distributed Filesystems Review
 
Dfs (Distributed computing)
Dfs (Distributed computing)Dfs (Distributed computing)
Dfs (Distributed computing)
 
New File Server Features Of Windows Server 2008
New File Server Features Of Windows Server 2008New File Server Features Of Windows Server 2008
New File Server Features Of Windows Server 2008
 
Clustering and High Availability
Clustering and High Availability Clustering and High Availability
Clustering and High Availability
 
Mcse 2012
Mcse 2012Mcse 2012
Mcse 2012
 
Distributed file system
Distributed file systemDistributed file system
Distributed file system
 
MCSA Installing & Configuring Windows Server 2012 70-410
MCSA Installing & Configuring Windows Server 2012 70-410MCSA Installing & Configuring Windows Server 2012 70-410
MCSA Installing & Configuring Windows Server 2012 70-410
 
Server 2008 r2 ppt
Server 2008 r2 pptServer 2008 r2 ppt
Server 2008 r2 ppt
 
Introduction to failover clustering with sql server
Introduction to failover clustering with sql serverIntroduction to failover clustering with sql server
Introduction to failover clustering with sql server
 
Ctive directory interview question and answers
Ctive directory interview question and answersCtive directory interview question and answers
Ctive directory interview question and answers
 
Distributed file systems
Distributed file systemsDistributed file systems
Distributed file systems
 
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and FutureGWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
GWAVACon 2013: Novell Open Enterprise Server - Roadmap and Future
 
Preparing forfirstconnectionsinstall
Preparing forfirstconnectionsinstallPreparing forfirstconnectionsinstall
Preparing forfirstconnectionsinstall
 
Lesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systemsLesson 4 intro to advanced o perating systems
Lesson 4 intro to advanced o perating systems
 
11 distributed file_systems
11 distributed file_systems11 distributed file_systems
11 distributed file_systems
 
11. dfs
11. dfs11. dfs
11. dfs
 
Curriculum vitae
Curriculum vitaeCurriculum vitae
Curriculum vitae
 

Similar to Cl116

File Access in Novell Open Enterprise Server 2 SP2
File Access in Novell Open Enterprise Server 2 SP2File Access in Novell Open Enterprise Server 2 SP2
File Access in Novell Open Enterprise Server 2 SP2Novell
 
RHCE (RED HAT CERTIFIED ENGINEERING)
RHCE (RED HAT CERTIFIED ENGINEERING)RHCE (RED HAT CERTIFIED ENGINEERING)
RHCE (RED HAT CERTIFIED ENGINEERING)Sumant Garg
 
Integrating Apple Macs Using Novell Technologies
Integrating Apple Macs Using Novell TechnologiesIntegrating Apple Macs Using Novell Technologies
Integrating Apple Macs Using Novell TechnologiesNovell
 
2008-09-09 IBM Interaction Conference, Red Hat Update for System z
2008-09-09 IBM Interaction Conference, Red Hat Update for System z2008-09-09 IBM Interaction Conference, Red Hat Update for System z
2008-09-09 IBM Interaction Conference, Red Hat Update for System zShawn Wells
 
pradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXP
pradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXPpradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXP
pradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXPPradip Mote
 
2013 linux days final
2013 linux days final2013 linux days final
2013 linux days finalRandomShare
 
LOAD BALANCING OF APPLICATIONS USING XEN HYPERVISOR
LOAD BALANCING OF APPLICATIONS  USING XEN HYPERVISORLOAD BALANCING OF APPLICATIONS  USING XEN HYPERVISOR
LOAD BALANCING OF APPLICATIONS USING XEN HYPERVISORVanika Kapoor
 
[발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community)
[발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community) [발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community)
[발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community) 동현 김
 
Hardening Linux and introducing Securix Linux
Hardening Linux and introducing Securix LinuxHardening Linux and introducing Securix Linux
Hardening Linux and introducing Securix LinuxSecurity Session
 
IBM Spectrum Scale Security
IBM Spectrum Scale Security IBM Spectrum Scale Security
IBM Spectrum Scale Security Sandeep Patil
 
Hardening Linux, introducing Securix GNU/Linux
Hardening Linux, introducing Securix GNU/LinuxHardening Linux, introducing Securix GNU/Linux
Hardening Linux, introducing Securix GNU/LinuxMartin Holovský
 

Similar to Cl116 (20)

File Access in Novell Open Enterprise Server 2 SP2
File Access in Novell Open Enterprise Server 2 SP2File Access in Novell Open Enterprise Server 2 SP2
File Access in Novell Open Enterprise Server 2 SP2
 
Ram
RamRam
Ram
 
Resume
ResumeResume
Resume
 
BSDCan2006.pdf
BSDCan2006.pdfBSDCan2006.pdf
BSDCan2006.pdf
 
Cl306
Cl306Cl306
Cl306
 
Kamailio - Secure Communication
Kamailio - Secure CommunicationKamailio - Secure Communication
Kamailio - Secure Communication
 
RHCE (RED HAT CERTIFIED ENGINEERING)
RHCE (RED HAT CERTIFIED ENGINEERING)RHCE (RED HAT CERTIFIED ENGINEERING)
RHCE (RED HAT CERTIFIED ENGINEERING)
 
Integrating Apple Macs Using Novell Technologies
Integrating Apple Macs Using Novell TechnologiesIntegrating Apple Macs Using Novell Technologies
Integrating Apple Macs Using Novell Technologies
 
2008-09-09 IBM Interaction Conference, Red Hat Update for System z
2008-09-09 IBM Interaction Conference, Red Hat Update for System z2008-09-09 IBM Interaction Conference, Red Hat Update for System z
2008-09-09 IBM Interaction Conference, Red Hat Update for System z
 
pradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXP
pradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXPpradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXP
pradip_mote_MCA_AIX-TSM_L2_Admin_4.8+Years_EXP
 
2013 linux days final
2013 linux days final2013 linux days final
2013 linux days final
 
Next Generation Security Solution
Next Generation Security SolutionNext Generation Security Solution
Next Generation Security Solution
 
LOAD BALANCING OF APPLICATIONS USING XEN HYPERVISOR
LOAD BALANCING OF APPLICATIONS  USING XEN HYPERVISORLOAD BALANCING OF APPLICATIONS  USING XEN HYPERVISOR
LOAD BALANCING OF APPLICATIONS USING XEN HYPERVISOR
 
[발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community)
[발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community) [발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community)
[발표자료] 오픈소스 Pacemaker 활용한 zabbix 이중화 방안(w/ Zabbix Korea Community)
 
Cl212
Cl212Cl212
Cl212
 
Linux SME 5+ Years
Linux SME 5+ YearsLinux SME 5+ Years
Linux SME 5+ Years
 
Resume
ResumeResume
Resume
 
Hardening Linux and introducing Securix Linux
Hardening Linux and introducing Securix LinuxHardening Linux and introducing Securix Linux
Hardening Linux and introducing Securix Linux
 
IBM Spectrum Scale Security
IBM Spectrum Scale Security IBM Spectrum Scale Security
IBM Spectrum Scale Security
 
Hardening Linux, introducing Securix GNU/Linux
Hardening Linux, introducing Securix GNU/LinuxHardening Linux, introducing Securix GNU/Linux
Hardening Linux, introducing Securix GNU/Linux
 

More from Juliette Ponnet (6)

Cl210
Cl210Cl210
Cl210
 
Cl210 lab
Cl210 labCl210 lab
Cl210 lab
 
Cl302
Cl302Cl302
Cl302
 
Cl105
Cl105Cl105
Cl105
 
Cl117
Cl117Cl117
Cl117
 
Cl104
Cl104Cl104
Cl104
 

Cl116

Editor's Notes

  1. f
  2. f
  3. f
  4. f
  5. f
  6. f
  7. f
  8. f
  9. f
  10. f
  11. f
  12. CIFS can be configured using iManager, and uses the _admin interface to pass on the configuration to the CIFS server. The CIFS server uses a NW Rights model and cache similar to the NCP server. It stores its secrets (the secrets required for the CIFS server to authenicate) in CASA, and also provides a file-based alternative. The CIFS server uses the same trustee file that is created by NCP server, but does not write to the trustee file.
  13. CIFS can be configured using iManager, and uses the _admin interface to pass on the configuration to the CIFS server. The CIFS server uses a NW Rights model and cache similar to the NCP server. It stores its secrets (the secrets required for the CIFS server to authenicate) in CASA, and also provides a file-based alternative. The CIFS server uses the same trustee file that is created by NCP server, but does not write to the trustee file.
  14. -The AFP configuration is done using iManager. The iManager plugins are written to CIM, and the CIM provider at the backend writes the configuration data into an AFP configuration file. The AFP server takes its configuration from the configuration file. The secrets required for the AFP server to startup are stored in CASA and secret store there is also an option to store secrets without CASA being installed. AFP server uses zAPI to talk to NSS file-system. The AFP server supports cross-protocol locking by having lock arbitration done by the NCP server.