Red Hat DIRECTORY SERVER 7.1 Configuration page 249

Configuration, command, and file reference
Hide thumbs Also See for DIRECTORY SERVER 7.1:
Table of Contents

Advertisement

Option
Description
Specifies the path, including the filename, of the private key database of the
-K
client. You may specify the absolute or relative (to the server root) path.
You must specify the -K option when the key database has a different name
than key3.db or when the key database is not under the same directory as
the certificate database, the cert8.db file (the path for which is specified with
the -P option).
Specifies the certificate name to use for certificate-based client authentication.
-N
For example, -N Server-Cert. If this option is specified, then the -Z and -W
options are required. Also, if this option is specified, then the -D and -w
options must not be specified, or certificate-based authentication will not
occur, and the bind operation will use the authentication credentials specified
on -D and -w.
Specifies the path, including the filename, of the certificate database of the
-P
client. You may specify the absolute or relative (to the server root) path. This
option is used only with the -Z option.
When used on a machine where an SSL-enabled web browser is configured,
the path specified on this option can point to the certificate database for the
web browser. For example:
-P /security/cert.db
The client security files can also be stored on the Directory Server in the
serverRoot/alias directory. In this case, the -P option calls out a path and
filename similar to the following:
-P /redhat/servers/alias/client-cert.db
Specifies the password for the certificate database identified on the -P option.
-W
For example, -W serverpassword.
Specifies that SSL is to be used for the delete request.
-Z
Specifies the Start TLS request. Use this option if you want to make a cleartext
-ZZ
connection into a secure one. If the server does not support Start TLS, you do
not need to abort the command; it will continue in cleartext.
Enforces the Start TLS request. The server must respond that the request was
-ZZZ
successful. If the server does not support Start TLS (such as Start TLS is not
enabled or the certificate information is incorrect), the command is aborted
immediately.
Chapter 7
Command-Line Utilities
ldapdelete
249

Advertisement

Table of Contents
loading

Table of Contents