
Setting Security Preferences
Chapter 11
Managing SSL and SASL
433
When you restart the Console, be certain that the address reads
https
; otherwise,
the operation will time out, unable to find the Admin Server since it is running on a
secure connection. When you successfully connect, a dialog box will appear, asking
you to accept the certificate. Click OK to accept the certificate (you may choose
whether to accept it only for that session or for always).
Creating a Password File
You can create a password file to store your certificate password. By placing your
certificate database password in a file, you can start your server from the Console
and also allow your server to restart automatically when running unattended.
The password file must be placed in the following location:
serverRoot
/alias/slapd-
serverID
-pin.txt
where
serverID
is the identifier you specified for the server when you installed it.
You need to include the token password in the file:
mypassword
When the server restarts, it will use this value as the token PIN.
Setting Security Preferences
You can choose the type of ciphers you want to use for SSL communications. A
cipher
is the algorithm used in encryption. Some ciphers are more secure, or
stronger,
than others. Generally speaking, the more bits a cipher uses during
encryption, the more difficult it is to decrypt the key. For a more complete
discussion of algorithms and their strength, see
Managing Servers with Red Hat
Console
.
CAUTION
This password is stored in cleartext within the password file, so its
usage represents a significant security risk. Do not use a password
file if your server is running in an unsecured environment.
Summary of Contents for DIRECTORY SERVER 7.1
Page 1: ...Administrator s Guide Red Hat Directory Server Version7 1 May 2005 Updated February 2009 ...
Page 20: ...20 Red Hat Directory Server Administrator s Guide May 2005 Glossary 619 Index 635 ...
Page 22: ...22 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 26: ...26 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 78: ...Maintaining Referential Integrity 78 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 200: ...Assigning Class of Service 200 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 488: ...488 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 528: ...PTA Plug in Syntax Examples 528 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 572: ...572 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 612: ...Examples of LDAP URLs 612 Red Hat Directory Server Administrator s Guide May 2005 ...
Page 634: ...634 Red Hat Directory Server Administrator s Guide May 2005 ...