Figure 3-3
Encrypted Attributes under the cn=config Node
For example, the database encryption file for the
would appear in the Directory Server as follows:
o=UserRoot
dn:cn=userPassword,cn=encrypted attributes,o=UserRoot,cn=ldbm
database,cn=plugins,cn=config
objectclass:top
objectclass:nsAttributeEncryption
cn=userPassword
nsEncryptionAlgorithm:AES
To configure database encryption, see "Database Encryption," in chapter 3,
"Configuring Directory Databases," in the Netscape Directory Server Administrator's
Guide. For more information about indexes, see in chapter 10, "Managing Indexes,"
in the Netscape Directory Server Administrator's Guide.
nsEncryptionAlgorithm
nsEncryptionAlgorithm
algorithm can be set per encrypted attribute.
Entry DN:
cn=attributeName,cn=encrypted attributes,
cn=databaseName,cn=ldbm database,cn=plugins,cn=config
Valid Values:
The following are supported ciphers:
•
Adavanced Encryption Standard Block Cipher
•
Triple Data Encryption Standard Block Cipher
selects the cipher used by
Chapter 3
Plug-in Implemented Server Functionality Reference
Database Plug-in Attributes
attribute under
userPassword
nsAttributeEncryption
—
AES
—
3DES
. The
179
Need help?
Do you have a question about the NETSCAPE DIRECTORY SERVER 7.0 and is the answer not in the manual?
Questions and answers