![Netscape NETSCAPE DIRECTORY SERVER 6.1 - ADMINISTRATOR Administrator'S Manual Download Page 393](http://html1.mh-extra.com/html/netscape/netscape-directory-server-6-1-administrator/netscape-directory-server-6-1-administrator_administrators-manual_1674675393.webp)
Configuring LDAP Clients to Use SSL
Chapter
11
Managing SSL
393
Configuring LDAP Clients to Use SSL
If you want all the users of your Directory Server to use SSL or certificate-based
authentication when they connect using LDAP client applications, you must make
sure they perform the following tasks:
•
Create a certificate database.
•
Trust the Certificate Authority (CA) that issues the server certificate.
These operations are sufficient if you want to ensure that LDAP clients recognize
the server’s certificate. However, if you also want LDAP clients to use their own
certificate to authenticate to the directory, make sure that all your directory users
obtain and install a personal certificate.
The following procedure describes how to use Netscape Communicator 4.7 to
perform these tasks.
1.
To create a certificate, it is sufficient to start Netscape Communicator 4.7.
If it does not already exist, the certificate database will be created.
2.
Use Communicator to connect to your Certificate Authority.
If you are using an internally deployed Netscape Certificate Management
System, you will go to a URL of the form:
https://
hostname
:
port
Some Certificate Authorities provide a link that allows you to download the
CA’s certificate.
3.
Trust the Certificate Authority.
This task differs depending on the CA. In some cases, such as if you are
connecting to a Netscape Certificate Management System, Communicator will
automatically prompt you to see if you want to trust the CA.
These steps are sufficient to ensure that your client applications will accept
connections to take place with the Directory Server, because the clients recognize
that the Directory Server’s certificate has been issued by a trusted CA.
However, if you also want the Directory Server to authenticate clients using the
clients’ certificate, you must perform the following additional steps:
NOTE
Some client applications do not verify that the server has a trusted
certificate.
Summary of Contents for NETSCAPE DIRECTORY SERVER 6.1 - ADMINISTRATOR
Page 1: ...Administrator s Guide Netscape Directory Server Version6 1 August 2002...
Page 20: ...20 Netscape Directory Server Administrator s Guide August 2002...
Page 24: ...24 Netscape Directory Server Administrator s Guide August 2002...
Page 142: ...Using Referrals 142 Netscape Directory Server Administrator s Guide August 2002...
Page 440: ...Miscellaneous Tuning Tips 440 Netscape Directory Server Administrator s Guide August 2002...
Page 442: ...442 Netscape Directory Server Administrator s Guide August 2002...
Page 478: ...PTA Plug In Syntax Examples 478 Netscape Directory Server Administrator s Guide August 2002...
Page 498: ...498 Netscape Directory Server Administrator s Guide August 2002...
Page 538: ...Examples of LDAP URLs 538 Netscape Directory Server Administrator s Guide August 2002...