Encrypting Data In eDirectory
233
no
vd
ocx (
E
NU)
01
F
ebr
ua
ry
200
6
By default, the encrypted attributes can be accessed only through a secure channel.
However, if you want the clients to be able to access the encrypted attributes over clear text, then
disable the Always Require Secure Channel option. For more information, refer to
“Enabling and
Disabling Access to Encrypted Attributes Over Clear Text Channels” on page 233
.
Enabling and Disabling Access to Encrypted Attributes Over Clear Text Channels
You can enable or disable the access to encrypted attributes over clear text channels by enabling or
disabling Always Require Secure Channel option (that is, the attrEncryptionRequireSecure
attribute) using either iManager or LDAP.
This section contains the following information:
•
“Enabling and Disabling Access to Encrypted Attributes Over Clear Text Channels Using
iManager” on page 233
•
“Enabling and Disabling Access to Encrypted Attributes Over Clear Text Channels Using
LDAP” on page 233
Enabling and Disabling Access to Encrypted Attributes Over Clear Text Channels Using
iManager
To enable or disable the access to encrypted attributes over clear text channels using iManager,
enable or disable Always Require Secure Channel in the Encrypted Attributes Policies Management
Wizard while
•
Creating and defining encrypted attributes policies
.
•
Editing encrypted attributes policies
.
Enabling and Disabling Access to Encrypted Attributes Over Clear Text Channels Using
LDAP
To enable or disable access to encrypted attributes over clear text channels using LDAP, add the
following attribute to the encrypted attributes policy:
attrEncryptionRequiresSecure
Setting this attribute to 0 makes a secure channel not always necessary, that is, you can access the
encrypted attributes over a clear text channel. Setting it to 1 makes a secure channel always
necessary, that is, you can access the encrypted attributes over a secure channel only.
Refer to
Step 3 on page 231
for more information.
9.1.4 Viewing the Encrypted Attributes
Viewing the attributes that are encrypted depends on whether you have enabled or disabled the
Always Require Secure Channel option. This means whether you have specified that the encrypted
attributes need a secure channel to access them or not.
•
“Viewing Encrypted Attributes Using iManager” on page 234
•
“Viewing Encrypted Attributes Using DSBrowse” on page 234
•
“SNMP Traps” on page 234
Summary of Contents for EDIRECTORY 8.8 - GUIDE
Page 4: ...novdocx ENU 01 February 2006...
Page 16: ...16 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 68: ...68 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 90: ...90 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 116: ...116 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 128: ...128 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 184: ...184 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 249: ...250 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 307: ...308 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 333: ...334 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 371: ...372 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 439: ...440 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 519: ...520 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 529: ...530 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...
Page 555: ...556 Novell eDirectory 8 8 Administration Guide novdocx ENU 01 February 2006...