<obj-component id="EventAggregationService">
<class>esecurity.ccs.comp.event.transformer.EventAggregationService</
class>
<property name="directory">c:\test\Aggregation\done</property>
<property name="reporterChannel">event_aggregation_status</property>
<property name="updateBatchSize">200</property>
<property name="updateDB">enabled</property>
<property name="nullHashValid">false</property>
<property name="maxNumberEntries">30000</property>
<property name="maxEntrySize">50</property>
<property name="startOffsetInDays">7</property>
<property name="deleteProcessedFiles">true</property>
<obj-component-ref>
</obj-component-ref>
</obj-component>
8 Save the
9 Restart the Sentinel server for the changes to take effect.
3.10 LDAP Authentication
You can enable users to login to Sentinel using their Novell eDirectory™ or Microsoft Active
Directory credentials by configuring a Sentinel 6.1 server for LDAP authentication.
Section 3.10.1, "Configuring the Sentinel 6.1 Server for LDAP Authentication," on page 62
Section 3.10.2, "Configuring Multiple LDAP Servers for Failover," on page 66
Section 3.10.3, "Migrating LDAP User Accounts from Sentinel 6.1 SP1 Hotfix 2 to Sentinel
6.1 SP2," on page 68
3.10.1 Configuring the Sentinel 6.1 Server for LDAP
Authentication
1 Export the self-signed certificate of the Certificate Authority (CA) for the eDirectory/Active
Directory server to a Base64-encoded file.
eDirectory: For more information on exporting an eDirectory CA certificate, see
Organizational CA's Self-Signed Certificate (http://www.novell.com/documentation/edir88/
edir88/?page=/documentation/edir88/edir88/data/a7elxuq.html).
To export an eDirectory CA certificate to iManager, the Novell Certificate Server
for iManager must be installed. For more information on installing an iManager plug-in, see
Downloading and Installing Plug-in Modules (http://www.novell.com/documentation/
imanager27/imanager_admin_273/?page=/documentation/imanager27/imanager_admin_273/
data/hk42s9ot.html).
Active Directory: For more information on exporting an Active Directory CA certificate, see
How to enable LDAP over SSL with a third-party certification authority (http://
support.microsoft.com/kb/321051).
2 Log in to the Sentinel 6.1 server as
3 Copy the certificate file to the following directory on the Sentinel 6.1 server:
Windows:
62
Sentinel 6.1 Installation Guide
<name>Publisher</name>
<ref-id>DispatchManager</ref-id>
das_aggregation.xml
%ESEC_HOME%\config
file and exit.
user.
root
Exporting an
plug-ins
TM