| 1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980 |
- .\" Hey, EMACS: -*- nroff -*-
- .\" First parameter, NAME, should be all caps
- .\" Second parameter, SECTION, should be 1-8, maybe w/ subsection
- .\" other parameters are allowed: see man(7), man(1)
- .TH FIXUP-MEMBEROF.PL 8 "Mar 5, 2013"
- .\" Please adjust this date whenever revising the manpage.
- .\"
- .\" Some roff macros, for reference:
- .\" .nh disable hyphenation
- .\" .hy enable hyphenation
- .\" .ad l left justify
- .\" .ad b justify to both left and right margins
- .\" .nf disable filling
- .\" .fi enable filling
- .\" .br insert line break
- .\" .sp <n> insert n+1 empty lines
- .\" for manpage-specific macros, see man(7)
- .SH NAME
- fixup-memberof.pl - Directory Server perl script for memberOf attributes.
- .SH SYNOPSIS
- fixup-memberof.pl [\-Z serverID] [\-D rootdn] { \-w password | \-w \- | \-j filename } \-b baseDN [\-f filter] [\-P protocol] [\-v] [\-h]
- .SH DESCRIPTION
- Regenerates and updates memberOf on user entries to coordinate changes in group membership.
- .SH OPTIONS
- A summary of options is included below:
- .TP
- .B \fB\-Z\fR \fIServer Identifier\fR
- The server ID of the Directory Server instance. If there is only
- one instance on the system, this option can be skipped.
- .TP
- .B \fB\-D\fR \fIRoot DN\fR
- The Directory Manager DN, or root DN. If not specified, the script will
- search the server instance configuration for the value.
- .TP
- .B \fB\-w\fR \fIpassword\fR
- The rootdn password.
- .TP
- .B \fB\-w -\fR
- .br
- Prompt for the rootdn password.
- .TP
- .B \fB\-j\fR \fIpassword filename\fR
- The name of the file that contains the root DN password.
- .TP
- .B \fB\-b\fR \fIbaseDN\fR
- The DN of the subtree containing the entries to update.
- .TP
- .B \fB\-f\fR \fIfilter\fR
- An LDAP query filter to use to select the entries within the subtree to update. If there is no filter set, then
- the memberOf attribute is regenerated for every entry in the subtree that has the objectclass inetuser/inetadmin.
- .TP
- .B \fB\-P\fR \fIprotocol\fR
- The connection protocol to connect to the Directory Server. Protocols are STARTTLS, LDAPS, LDAPI, and LDAP.
- If this option is skipped, the most secure protocol that is available is used. For LDAPI, AUTOBIND is also
- available for the root user.
- .TP
- .B \fB\-v\fR
- .br
- Display verbose output
- .TP
- .B \fB\-h\fR
- .br
- Display usage
- .SH EXAMPLE
- .TP
- fixup-memberof.pl \-Z instance1 \-D 'cn=directory manager' \-w password \-b 'dc=example,dc=com' \-P STARTTLS
- Note: security must be enabled to use protocol STARTTLS. If STARTTLS is not available it will default to next strongest/available protocol automatically.
- .TP
- fixup-memberof.pl \-w password \-b 'dc=example,dc=com' \-f 'uid=*'
- .SH DIAGNOSTICS
- Exit status is zero if no errors occur. Errors result in a
- non-zero exit status and a diagnostic message being written
- to standard error.
- .SH AUTHOR
- fixup-memberof.pl was written by the 389 Project.
- .SH "REPORTING BUGS"
- Report bugs to https://fedorahosted.org/389/newticket.
- .SH COPYRIGHT
- Copyright \(co 2013 Red Hat, Inc.
|