
Configuring LDAP Services for Novell eDirectory
361
n
ov
do
cx (e
n)
11
Ju
ly 20
08
ldap refresh [=] [
date
][
time
][
interval
]
The format for the date variable is mm:dd:yyyy. If you enter zeros for all date fields, the
current date is used.
The format for the time variable is hh:mm:ss. If you enter zeros for all time fields, the
current time is used.
The format for the interval variable is 0 or between 1 and 2147483647 minutes. If you
enter zero, the default of 30 minutes is used.
You can add this command to the
autoexec.ncf
file in the
sys:\system
directory. Place
the command after the line that loads
nldap.nlm
.
14.6 Authentication and Security
This section contains information on the following:
“Requiring TLS for Simple Binds with Passwords” on page 361
“Starting and Stopping TLS” on page 362
“Configuring the Server for TLS” on page 362
“Configuring the Client for TLS” on page 364
“Exporting the Trusted Root” on page 364
“Authenticating with a Client Certificate” on page 365
“Using Certificate Authorities from Third-Party Providers” on page 365
“Using SASL” on page 366
14.6.1 Requiring TLS for Simple Binds with Passwords
Secure Socket Layer (SSL) 3.1 was released through Netscape. IETF took ownership for that
standard by implementing Transport Layer Security (TLS) 1.0. TLS 1.0 has backward compatibility
with SSLv2 and v3.
TLS allows for connections to be encrypted in the Session layer. The encrypted port doesn't have to
be used to get a TLS connection. There's another way: port 636 is the implied TLS port and the
LDAP server automatically starts a TLS session when a client connects to the secure port.
A client can also connect to the clear-text port and later use TLS to upgrade the connection to an
encrypted connection.
To require TLS for simple binds with passwords:
1
In Novell iManager, click the
Roles and Tasks
button
Description: Roles and Tasks button
.
2
Click
LDAP
>
LDAP Overview
>
View LDAP Groups
.
3
Click the LDAP Group object, then click
Information
on the
General
tab.
4
Check the
Require TLS for Simple Binds with Passwords
check box.
Содержание EDIRECTORY 8.8 SP3
Страница 4: ...novdocx en 11 July 2008...
Страница 72: ...72 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 120: ...120 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 132: ...132 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 190: ...190 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 238: ...238 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 262: ...262 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 288: ...288 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 320: ...320 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 348: ...348 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 388: ...388 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 492: ...492 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 586: ...586 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 599: ...The eDirectory Management Toolbox 599 novdocx en 11 July 2008 Click Help for details...
Страница 600: ...600 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...
Страница 614: ...614 Novell eDirectory 8 8 Administration Guide novdocx en 11 July 2008...