28
OES 2 SP1: Novell iFolder 3.7 Administration Guide
no
vd
ocx
(e
n)
13
Ma
y 20
09
If you assign the iFolder Admin right to other users, those users are governed by the roster and
LDAP Search DN relationship. The user is removed from the roster and stripped of the iFolder
Admin right if you delete the user, remove the user’s DN from the list of LDAP Search contexts, or
move the user to a context that is not in the LDAP Search contexts.
2.4.2 iFolder Proxy User
The iFolder Proxy user is the identity used to access the LDAP server to retrieve lists of users in the
specified containers, groups, or users that are defined in the iFolder LDAP settings. This identity
must have the Read right to the LDAP directory container configured during iFolder enterprise
server setup. The iFolder Proxy user is created during the iFolder install and appropriate access
rights are provided. You probably never need to modify this value. You can modify the Proxy user
using the Web Admin console. For more information, see
Step 7b on page 134
in the
“Accessing and
Viewing the Server Details Page” on page 132
.
IMPORTANT:
If you do modify the iFolder Proxy user, make sure that the identity you specify is
different than the iFolder Admin user or other system users because the iFolder Proxy user password
is stored in reversible encrypted form in the Simias database on the iFolder server. After you change
the iFolder Proxy user, ensure that you restart Apache.
When you initially configure the iFolder enterprise server in YaST, iFolder autogenerates a
password for the iFolder proxy user.
Table 2-2
Encryption Method for the iFolder Proxy User Password
Initially, the password for the iFolder Proxy user is stored in clear text in the
/
datapath
/simias/
.local.ppf
file. At the end of the configuration process, the system reboots Apache 2 and starts
iFolder. When iFolder runs this for the first time after configuration, the iFolder process encrypts the
password and stores it in the Simias database and remove the entry from the
.local.ppf
file.
IMPORTANT:
Currently, the Proxy user password cannot be changed in the iFolder system.
Ensure that you don’t change the password in the LDAP directory as well. Changing the password in
the LDAP directory makes iFolder non-functional.
iFolder Version
Encryption Method
iFolder Proxy User Password
iFolder 3.7
YaST encryption method
Generates an alphanumeric, 21-digit mixed-
case password.
iFolder 3.6
YaST encryption method
Generates an alphanumeric, 21-digit mixed-
case password.
iFolder 3.2
YaST encryption method
Generates an alphanumeric, 13-digit,
mixed-case password.
iFolder 3.0 and 3.1
BASH random number generator Generates a number between
0
and
10,000
and appends it to iFolderProxy. For
example,
iFolderProxy1234
.
Summary of Contents for IFOLDER 3.7 - SECURITY ADMINISTRATION
Page 12: ...12 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 24: ...24 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 38: ...38 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 98: ...98 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 100: ...100 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 102: ...102 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 162: ...162 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 168: ...168 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 172: ...172 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 182: ...182 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 184: ...184 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 196: ...196 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 202: ...202 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...
Page 216: ...216 OES 2 SP1 Novell iFolder 3 7 Administration Guide novdocx en 13 May 2009...