Most of the configuration of the ldap server has to do with getting correct
access controls to keep the data safe. Here is a sample:
+
+# only allow plain text auth when we do crypto
+security simple_bind=128
+
+# and the database definition
+database bdb
+
# Turn on automatic last modification time
lastmod on
moduleload /usr/lib/ldap/unique.so
overlay unique
-unique_base ou=users,dc=debian,dc=org
-unique_attributes uid keyFingerPrint
+unique_uri ldap:///ou=users,dc=debian,dc=org?uidNumber,uid,keyFingerPrint?sub
+unique_uri ldap:///ou=groups,dc=debian,dc=org?gidNumber,cn?sub
# End----------