Configuring an Identity Server
51
n
ov
do
cx (e
n)
16
Ap
ril 20
10
Windows Server 2003:
\Program Files\Novell\devman\jcc\certs\idp
Windows Server 2008:
\Program Files (x86)\Novell\devman\jcc\certs\idp
The keystore is found on the netHSM client in the directory specified by the
-keystore
parameter when you created the keystore. See
Step 4
.
12
Synchronize the Identity Server with the remote file system server.
Linux:
Enter the following commands:
/opt/nfast/bin/rfs-sync –-update
/opt/nfast/bin/rfs-sync –-commit
Windows:
Enter the following commands:
C:\nfast\bin>rfs-sync --update
C:\nfast\bin>rfs-sync --commit
13
(Conditional) If the cluster configuration contains more than one Identity Server, complete the
following steps for each cluster member:
13a
Copy the keystore to the cluster member. Copy it to the following directory:
Linux:
/opt/novell/devman/jcc/certs/idp
Windows Server 2003:
\Program Files\Novell\devman\jcc\certs\idp
Windows Server 2008:
\Program Files (x86)\Novell\devman\jcc\certs\idp
13b
Make sure the
novlwww
user has at least read rights.
13c
Use the netHSM client to synchronize the cluster member with the remote file system
server.
Linux:
Enter the following commands:
/opt/nfast/bin/rfs-sync –-update
/opt/nfast/bin/rfs-sync –-commit
Windows:
Enter the following commands:
C:\nfast\bin>rfs-sync --update
C:\nfast\bin>rfs-sync --commit
14
Continue with
“Configuring the Identity Server to Use the netHSM Certificate” on page 51
.
Configuring the Identity Server to Use the netHSM Certificate
The procedure to modify the classpath names depends upon whether you have a Linux or a
Windows Identity Server:
“Configuring a Linux Identity Server for the Certificate” on page 51
“Configuring a Windows Identity Server for the Certificate” on page 53
Configuring a Linux Identity Server for the Certificate
1
At the Identity Server, log in as
root
.
2
Add the nfast jar files to the classpath.
Because the Identity Server runs as a Tomcat service, the following steps explain how to
modify the classpath for Tomcat.
2a
In an editor, open the
/opt/novell/tomcat5/bin/dtomcat5
file.
Summary of Contents for ACCESS MANAGER 3.1 SP2 - README 2010
Page 4: ...4 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 12: ...12 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 158: ...158 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 172: ...172 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 182: ...182 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 290: ...290 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 362: ...362 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...
Page 374: ...374 Novell Access Manager 3 1 SP2 Identity Server Guide novdocx en 16 April 2010...