Oracle Database B10772-01 Administrator's Manual page 331

Database
Table of Contents

Advertisement

To configure Enterprise User Security for Kerberos authentication, perform the
following tasks:
Task 1: Configure the Enterprise Security Manager Console to display the Kerberos principal
name attribute
Use Oracle Internet Directory Self-Service Console to configure the Enterprise
Security Manager Console to display the Kerberos principal name attribute. For
more information about this task, see
Console for Kerberos-Authenticated Enterprise Users"
Task 2: (Optional) Configure the Kerberos Principal Name Directory Attribute for the Identity
Management Realm
Use Enterprise Security Manager Console to enter the directory attribute used to
store the Kerberos principal name for the identity management realm you are using
in the directory. By default Kerberos principal names are stored in the
krbPrincipalName attribute, but can be changed to correspond to your directory
configuration by changing orclCommonKrbPrincipalAttribute in the identity
management realm. For more information about this task, see
You have prepared your directory by completing the tasks described in
"Preparing the Directory for Enterprise User Security"
You have configured your Enterprise User Security objects in the database and
the directory by completing the tasks described in
Security Objects in the Database and the Directory"
You have configured an SSL instance with no authentication for Oracle Internet
Directory as described in Oracle Internet Directory Administrator's Guide. If you
are using an ldap.ora, also ensure that the port number for this SSL with no
authentication instance is listed there as your directory SSL port.
Task 1: Configure the Enterprise Security Manager Console to display the
Kerberos principal name attribute
Task 2: (Optional) Configure the Kerberos Principal Name Directory Attribute
for the Identity Management Realm
Task 3: Specify the Enterprise User's Kerberos Principal Name in the
krbPrincipalName Attribute
Task 4: (Optional) Enable the Enterprise Domain to Accept Kerberos
Authentication
Task 5: Connect as a Kerberos-Authenticated Enterprise User
Enterprise User Security Configuration Tasks and Troubleshooting 12-19
Configuring Enterprise User Security for Kerberos Authentication
"Configuring Enterprise Security Manager
on page 12-5.
"Configuring Enterprise User
on page 12-11.
on page 2-24.
"Setting Login Name,

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the Oracle Database B10772-01 and is the answer not in the manual?

Questions and answers

This manual is also suitable for:

Database advanced security 10g release 1

Table of Contents