Novell OPEN ENTERPRISE SERVER 2 SP2 Installation Manual page 67

Hide thumbs Also See for OPEN ENTERPRISE SERVER 2 SP2:
Table of Contents

Advertisement

By default, the Use eDirectory Certificates for HTTPS Services check box is selected. This
means that the existing YaST server certificate and key files will be replaced with eDirectory
server certificate and key files.
The default YaST server certificate and key files are:
Key file:
/etc/ssl/servercerts/serverkey.pem
Certificate file:
The eDirectory server certificate and key files are:
Key file:
/etc/ssl/servercerts/eDirkey.pem
Certificate file:
For more information on certificate management, see
SP2: Planning and Implementation
3 In the following fields on the eDirectory Configuration - New Tree Information page, specify
the required information:
The fully distinguished name and context for the user Admin on the existing server
The password for user Admin on the existing server.
4 Click Next.
5 On the eDirectory Configuration - Local Server Configuration page, specify the following
information:
The context for the server object in the eDirectory tree.
A location for the eDirectory database.
The default path is
option to change the location if you expect to have a large number of objects in your tree
and if the current file system does not have sufficient space.
The ports to use for servicing LDAP requests.
The default ports are 389 (non-secure) and 636 (secure).
The ports to use for providing access to the iMonitor application.
The default ports are 8028 (non-secure) and 8030 (secure).
6 Click Next and continue with
Installing the Server into an Existing eDirectory Tree
1 On the eDirectory Configuration - New or Existing Tree page, select Existing Tree.
2 In the eDirectory Tree Name field, specify a name for the eDirectory tree you want to join.
On OES servers, services that provide HTTPS connectivity are configured to use either
An eDirectory certificate issued by the Novell International Cryptographic Infrastructure
(NICI)
or
The YaST self-signed common server certificate created in
Self-signed certificates provide minimal security and limited trust, we recommend that
you use the eDirectory certificates instead.
/etc/ssl/servercerts/servercert.pem
/etc/ssl/servercerts/eDircert.pem
Guide.
/var/opt/novell/eDirectory/data/dib
"Specifying Synchronizing Server Time Options" on page
"Certificate
Management" in the
, but you can use this
Step 1 on page
OES 2
68.
63.
Installing OES 2 SP2
67

Advertisement

Table of Contents
loading

Table of Contents