Using Access Control Files - Netscape ENTREPRISE SERVER 6.0 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

What Is Access Control?
Since more than one person may use a particular computer, Host-IP authentication
is more effective when combined with User-Group authentication. If both methods
of authentication are used, a username and password will be required for access.
Host-IP authentication does not require DNS to be configured on your server. If
you choose to use Host-IP authentication, you must have DNS running in your
network and your server must be configured to use it. You can enable DNS on your
server through the Performance Tuning page in the Preferences tab on your Server
Manager.
Enabling DNS degrades the performance of Enterprise Server since the server is
forced to do DNS look-ups. To reduce the effects of DNS look-ups on your server's
performance, resolve IP addresses only for access control and CGI instead of
resolving the IP address for every request. To do this,
to
iponly=1
AddLog
in your
file:
fn="flex-log" name="access"
obj.conf
AddLog fn="flex-log" name="access" iponly=1

Using Access Control Files

When you use access control on the Administration Server or the files or directories
on your web site, the settings are stored in a file with the extension
. Access
.acl
control files are stored in the directory server_install
with server_install
/httpacl
being the location where the server is installed. For example, if you installed the
server in
, the ACL files for both the Administration
/usr/netscape/Servers
Server and each server instance configured on your server would be located in
.
/usr/netscape/Servers/httpacl/
The main ACL file name is
server-id
; the temporary
generated-https-
.acl
working file is called
server-id.
. If you use Netscape
genwork-https-
acl
Administration Server to configure access, you'll have these two files. However, if
you want more complex restrictions, you can create multiple files, and reference
them from the
file. There are also a few features available only by
server.xml
editing the files such as restricting access to the server based on the time of day or
day of the week.
You can also manually create and edit
files to customize access control using
.acl
APIs. For more information on using access control APIs, see the Netscape Enterprise
Server Programmer's Guide.
For more information on access control files and their syntax, see Appendix C,
"ACL File Syntax".
Chapter 8
Controlling Access to Your Server
167

Advertisement

Table of Contents
loading

This manual is also suitable for:

Netscape management system 6.0

Table of Contents