Novell OPEN ENTERPRISE SERVER 2 SP2 Installation Manual page 68

Hide thumbs Also See for OPEN ENTERPRISE SERVER 2 SP2:
Table of Contents

Advertisement

By default, the Use eDirectory Certificates for HTTPS Services check box is selected. This
means that the existing YaST server certificate and key files will be replaced with eDirectory
server certificate and key files.
The default YaST server certificate and key files are:
Key file:
Certificate file:
The eDirectory server certificate and key files are:
Key file:
Certificate file:
For more information on certificate management, see
SP2: Planning and Implementation
3 In the following fields on the eDirectory Configuration - Existing Tree Information page,
specify the required information:
The IP address of an existing eDirectory server with a replica
The NCP port on the existing server
The LDAP and secure LDAP port on the existing server.
The fully distinguished name and context for the user Admin on the existing server
The password for user Admin on the existing server.
4 Click Next.
5 On the eDirectory Configuration - Local Server Configuration page, specify the following
information:
The context for the server object in the eDirectory tree.
A location for the eDirectory database.
The default path is
option to change the location if you expect to have a large number of objects in your tree
and if the current file system does not have sufficient space.
The ports to use for servicing LDAP requests.
The default ports are 389 (non-secure) and 636 (secure).
The ports to use for providing access to the iMonitor application.
The default ports are 8028 (non-secure) and 8030 (secure).
6 Click Next and continue with
Specifying Synchronizing Server Time Options
eDirectory requires that all OES servers, both NetWare and Linux, are time-synchronized.
1 In the eDirectory Configuration - NTP & SLP page, use the Network Time Protocol (NTP)
Server field to specify the time source that you want all the servers in the tree to use.
2 Specify the IP address or DNS hostname of an NTP server.
For the first server in a tree, we recommend specifying a reliable external time source.
When you install multiple servers into the same eDirectory tree, make sure that all servers point
to the same time source and not to server holding the master replica. For example,
time.novell.com or some other time source.
68
OES 2 SP2: Installation Guide
/etc/ssl/servercerts/serverkey.pem
/etc/ssl/servercerts/servercert.pem
/etc/ssl/servercerts/eDirkey.pem
/etc/ssl/servercerts/eDircert.pem
Guide.
/var/opt/novell/eDirectory/data/dib
"Specifying Synchronizing Server Time Options" on page
"Certificate
Management" in the
, but you can use this
OES 2
68.

Advertisement

Table of Contents
loading

Table of Contents