Configuring Enterprise User Security for SSL Authentication
4.
You have completed SSL-authenticated Enterprise User Security configuration.
Viewing the Database DN in the Wallet and in the Directory
For SSL-authenticated Enterprise User Security to work, the database DNs in the
database wallet, the database directory entry, and the database certificate must be
identical. When you use Database Configuration Assistant to register your database
in the directory, this tool automatically creates identical DNs for the database wallet
and the database directory entry. To request a database certificate with the proper
DN, you must view either the directory entry DN or the wallet DN.
12-24 Oracle Database Advanced Security Administrator's Guide
client cannot have a wallet location specified there, the server and client cannot
share sqlnet.ora files.)
If you have a separate client Oracle home, then you do not need to set the TNS_
ADMIN environment variable.
Launch SQL*Plus and enter the following at the command line:
SQL> /@connect_identifier
where connect_identifer is the Oracle Net service name you set up when
you configured SSL for the database client.
If your connection succeeds, then the system responds Connected to:....
This is the confirmation message of a successful connect and setup. If an error
message displays, then see
Users"
on page 12-32.
If you do connect successfully, then check that the appropriate global roles were
retrieved from the directory by entering the following at the SQL*Plus prompt:
select * from session_roles
If the global roles were not retrieved from the directory, then see
"NO-GLOBAL-ROLES Checklist"
For security purposes, ensure that you disable auto login for
Note:
the user wallet after logging out from the enterprise user session
with the database. This is especially important if the client machine
is shared by more than one user. See
page 8-19 for information about disabling this Oracle Wallet
feature.
"ORA-# Errors for SSL-Authenticated Enterprise
on page 12-33.
"Disabling Auto Login"
on
Need help?
Do you have a question about the Oracle Database B10772-01 and is the answer not in the manual?
Questions and answers