Setting Up Nis Based Enrollment - Netscape MANAGEMENT SYSTEM 6.1 - ADMINISTRATOR Administrator's Manual

Table of Contents

Advertisement

Entering values for this parameter is optional.
ldap.ldapconn.host. Specifies the fully-qualified DNS host name of the
authentication directory.
ldap.ldapconn.port. Specifies the TCP/IP port on which the authentication
directory listens to requests from CMS.
ldap.ldapconn.secureConn. Specifies the type—SSL or non-SSL—of the port
on which the authentication directory listens to requests from CMS. Select if
this is an SSL port, deselect if this is a non-SSL port.
ldap.ldapconn.version. Specifies the LDAP protocol version.
version 2. If your authentication directory is based on Netscape Directory
Server 1.x, choose
3.x and later, choose
ldap.basedn. Specifies the base DN for searching the authentication
directory—the server uses the value of the
(what a user enters in the enrollment from) and the base DN to construct an
LDAP search filter.
ldap.minConns. Specifies the minimum number of connections permitted to
the authentication directory. Permissible values:
ldap.maxConns. Specifies the maximum number of connections permitted to
the authentication directory. Permissible values:
Click OK. The authentication instance is now set up and enabled.
7.

Setting Up NIS Based Enrollment

The
module implements the NIS server-based authentication. You can
NISAuth
use the module for authenticating end users in the NIS domain during certificate
enrollment.
Optionally, you can configure the authentication module to do an LDAP
correlation—that is, use the NIS directory to authenticate users based on the user
ID and password they enter in the enrollment form, but compose certificate subject
names from an LDAP-compliant directory, such as Netscape Directory Server.
When using an LDAP directory to compose subject names, you can configure the
module to search for and retrieve specific LDAP attribute values from the
directory. The ability of the module to use an LDAP directory to form certificate
subject names is useful in cases where the NIS server only stores user IDs and
passwords and you don't want to formulate subject names using just common
names and user IDs.
.
specifies LDAP version 3. For Directory Server versions
2
3
(default).
3
Automated Enrollment
specifies LDAP
2
field from the HTTP input
uid
to
.
1
3
to
.
3
10
Chapter 9
Authentication
391

Advertisement

Table of Contents
loading

This manual is also suitable for:

Certificate management system 6.1

Table of Contents