Configuring Enterprise User Security for SSL Authentication
12-22
Oracle Database Advanced Security Administrator's Guide
–
Database certificate DN (stored in the database wallet)
–
Database directory entry DN
–
Database wallet DN (not the certificate)
See
"Viewing the Database DN in the Wallet and in the Directory"
on
page 12-24. Note that Database Configuration Assistant sets the database
directory entry DN and the database wallet DN to be identical when registering
the database in the directory.
■
You have enabled SSL for your client-database Oracle Net connections as
described in
"Enabling SSL"
on page 7-15. Ensure you included the following
steps when you enabled SSL:
–
Enabled SSL for your database listener on
TCPS
and provided a
corresponding TNS name.
–
Stored your database PKI credentials in the database wallet that Database
Configuration Assistant automatically created during database registration.
■
You have configured an SSL instance with two-way authentication for Oracle
Internet Directory as described in Oracle Internet Directory Administrator's Guide.
■
You have prepared your directory by completing the tasks described in
"Preparing the Directory for Enterprise User Security"
on page 12-5.
■
You have configured your Enterprise User Security objects in the database and
the directory by completing the tasks described in
"Configuring Enterprise User
Security Objects in the Database and the Directory"
on page 12-11.
To configure Enterprise User Security for SSL authentication, perform the following
tasks:
■
Task 1: Enable the Enterprise Domain to Accept SSL Authentication
■
Task 2: Set the LDAP_DIRECTORY_ACCESS Initialization Parameter to SSL
■
Task 3: Connect as an SSL-Authenticated Enterprise User
Task 1: Enable the Enterprise Domain to Accept SSL Authentication
Use Enterprise Security Manager to enable SSL authentication for the
enterprise
domain
(OracleDefaultDomain) by using the following steps:
1.
Select the enterprise domain in the navigator pane.
2.
Choose the Databases tabbed window and select Oracle Wallet (SSL) or All
Types
from the User Authentication methods listed.
Summary of Contents for Database Advanced Security 10g Release 1
Page 17: ...xvii ...
Page 20: ...xx ...
Page 24: ...xxiv ...
Page 42: ...xlii ...
Page 44: ......
Page 102: ......
Page 124: ......
Page 246: ...Managing Certificates 8 28 Oracle Database Advanced Security Administrator s Guide ...
Page 284: ......
Page 384: ......
Page 414: ...Physical Security D 6 Oracle Database Advanced Security Administrator s Guide ...
Page 518: ...Index 10 ...