Selecting A Specific Version Of Ssl; Security Policies - Novell DATA SYNCHRONIZER - ADMINISTRATION GUIDE 07-2010 Administration Manual

Hide thumbs Also See for DATA SYNCHRONIZER - ADMINISTRATION GUIDE 07-2010:
Table of Contents

Advertisement

6c Copy the certificate file received the certificate authority to
webadmin
6d Rename it to
6e Restart the WebAdmin service.
The other self-signed certificates that are created during installation are used for internal
communication between Synchronizer services. You can replace these self-signed certificate files
with the commercially signed certificate, but you do not see any difference in Synchronizer
functionality.
IMPORTANT: If you uninstall the Synchronizer software, the certificate files associated with your
Synchronizer system are also deleted. Back up commercially signed certificates in a location outside
of
/var/lib/datasync
Enabling and Disabling SSL for Device Connections
You can enable and disable SSL for device connections on the Mobility Connector Configuration
page in Synchronizer Web Admin.

5.1.4 Selecting a Specific Version of SSL

You can enable and disable different versions of SSL protocols and also specify the cipher to use
with the desired protocol.
1 In
Synchronizer Web
Configuration page, then click Edit XML Source to display the Connector XML Source
window.
2 Add the following tags between the
<sslMethod> value </sslmethod>
<sslCiphers> list </sslCiphers>
3 Replace
SSLv2 = 1
SSLv3 = 2
TLSv1 = 4
All of the above = 3
4 In a terminal window, use the following command to determine the ciphers that are available on
your system:
openssl ciphers -ssl3
5 In the Connector XML Source window, replace
openssl
6 Click Save XML to save your changes, then click Home to return to the main Synchronizer Web
Admin page.
7 Restart the Mobility Connector to put the desired SSL protocols into effect.

5.2 Security Policies

Section 5.2.1, "Securing Your Synchronizer Data," on page 47
Section 5.2.2, "Securing Your Synchronizer System," on page 47
46
Novell Data Synchronizer Administration Guide
.
.
server.pem
if you need to uninstall the Synchronizer software.
Admin, click the Mobility Connector to display the Mobility Connector
with any of the following:
value
command.
and
<custom>
</custom>
with the desired values as provided by the
list
/var/lib/datasync/
tags:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Data synchronizer

Table of Contents