Red Hat DIRECTORY SERVER 8.0 Command Reference Manual page 36

Hide thumbs Also See for DIRECTORY SERVER 8.0:
Table of Contents

Advertisement

Chapter 2. Core Server Configuration Reference
• 7 - Read, write, and execute
In the 3-digit number, the first digit represents the owner's permissions, the second digit represents the
group's permissions, and the third digit represents everyone's permissions. When changing the default
value, remember that 000 does not allow access to the logs and that allowing write permissions to
everyone can result in the logs being overwritten or deleted by anyone.
The newly configured access mode only affects new logs that are created; the mode is set when the
log rotates to a new file.
Parameter
Entry DN
Valid Range
Default Value
Syntax
Example
2.3.1.34. nsslapd-certdir (Certificate and Key Database Directory)
This is the full path to the directory holding the certificate and key databases for a Directory Server
instance. This directory must contain only the certificate and key databases for this instance and no
other instances. This directory must be owned and allow read-write access for the server user ID. No
other user should have read-right access to this directory. The default location is the configuration file
directory, /etc/dirsrv/slapd-instance_name.
Changes to this value will not take effect until the server is restarted.
Parameter
Entry DN
Valid Values
Default Value
Syntax
Example
2.3.1.35. nsslapd-certmap-basedn (Certificate Map Search Base)
This attribute can be used when client authentication is performed using SSL certificates in order to
avoid limitations of the security subsystem certificate mapping, configured in the certmap.conf
file. Depending on the certmap.conf configuration, the certificate mapping may be done using
a directory subtree search based at the root DN. If the search is based at the root DN, then the
nsslapd-certmap-basedn attribute may force the search to be based at some entry other than the
root. The valid value for this attribute is the DN of the suffix or subtree to use for certificate mapping.
For further information on configuring for SSL, see the "Managing SSL" chapter in the Directory Server
Administrator's Guide.
2.3.1.36. nsslapd-config
This read-only attribute is the config DN.
26
Description
cn=config
000 through 777
600
Integer
nsslapd-auditlog-mode: 600
Description
cn=config
Absolute path to any directory which is owned by
the server user ID and only allows read and write
access to the server user ID
/etc/dirsrv/slapd-instance_name
DirectoryString
/etc/dirsrv/slapd-phonebook

Advertisement

Table of Contents
loading

Table of Contents