Configuring A Secure Socket Layer For A Policy Server; Loading Policies From An Ldap Server; Removing Ldap Policies From The Switch - Alcatel-Lucent OmniSwitch 6850-48 Network Configuration Manual

Software release 6
Hide thumbs Also See for OmniSwitch 6850-48:
Table of Contents

Advertisement

Modifying Policy Servers

Configuring a Secure Socket Layer for a Policy Server

A Secure Socket Layer (SSL) may be configured between the policy server and the switch. If SSL is
enabled, the PolicyView application can no longer write policies to the LDAP directory server.
By default, SSL is disabled. To enable SSL, use the policy server command with the ssl option. For exam-
ple:
-> policy server 10.10.2.3 ssl
SSL is now enabled between the specified server and the switch. The port number in the switch configura-
tion will be automatically set to 636, which is the port number typically used for SSL; however, the port
number should be configured with whatever port number is set on the server. For information about
configuring the port number, see
To disable SSL, use no ssl with the command:
-> policy server 10.10.2.3 no ssl
SSL is disabled for the 10.10.2.3 policy server. No additional policies may be saved to the directory server
from the PolicyView application.

Loading Policies From an LDAP Server

To download policies (or rules) from an LDAP server to the switch, use the
Before a server can download policies, it must also be set up and operational (able to bind).
To download policies from the server, enter the following:
-> policy server load
Use the
show policy server long
-> show policy server long
LDAP server 0
IP address
TCP port
Enabled
Operational Status
Preference
Authentication
SSL
login DN
searchbase
Last load time

Removing LDAP Policies From the Switch

To flush LDAP policies from the switch, use the
configured directly on the switch through the CLI are not affected by this command.
-> policy server flush
page 38-6
"Modifying the Port Number" on page
command to display the last load time. For example:
: 10.10.2.3,
: 16652,
: Yes,
: Down,
: 99,
: password,
: Disabled,
: cn=DirMgr
: o=company
: 02/14/02 16:38:18
policy server flush
OmniSwitch AOS Release 6 Network Configuration Guide
Managing Policy Servers
38-5.
policy server load
command. Note that any policies
September 2009
command.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents