Installs OpenLDAP

EvenUp Inc



9,505 latest version

3.5 quality score

Version information

  • 0.2.0 (latest)
released Aug 12th 2013

Start using this module

Tags: openldap


evenup/openldap — version 0.2.0 Aug 12th 2013

What is it?

A puppet module that installs OpenLDAP and manages the service. It uses an RPM based on the LDAP Toolbox project's RPM (included in the support directory) which has been modified to install files in the typical RHEL paths. This module does not configure the directory itself (an exercise left to the user), but instead focuses installing required files including certificates for SSL/TLS that is left as an exercise to the user.

An additional class (openldap::pwd_expire) is available that installs a nightly cron entry to check for users who's passwords are about to expire and emails them a warning message. This script requires using the ppolicy overlay for password aging.


Generic OpenLDAP install

To use the check-password ppolicy module:

You will then need to modify your password policy entry by adding the the objectClass pwdPolicyChecker and the attribute pwdCheckModule with a value of

Setting up password expiration warning emails:

Known Issues:

Only tested on CentOS 6


Released under the Apache 2.0 licence


  • Fork it
  • Create a topic branch
  • Improve/fix (with spec tests)
  • Push new topic branch
  • Submit a PR