Configuring Enterprise User Security for SSL Authentication
Enterprise User Security Configuration Tasks and Troubleshooting
12-23
3.
Click Apply.
For more information about this task, see
"Managing Database Security Options for
an Enterprise Domain"
on page 13-19.
Task 2: Set the LDAP_DIRECTORY_ACCESS Initialization Parameter to SSL
You can change this initialization parameter either by editing your database
initialization parameter file, or by issuing an
ALTER SYSTEM
SQL command with
the
SET
clause.
For example, the following
ALTER SYSTEM
command changes the
LDAP_
DIRECTORY_ACCESS
parameter value to
SSL
in the server parameter file:
ALTER SYSTEM SET LDAP_DIRECTORY_ACCESS=SSL SCOPE=SPFILE
Task 3: Connect as an SSL-Authenticated Enterprise User
Connecting as an SSL-authenticated enterprise user involves ensuring that you have
the appropriate Oracle wallet features configured, and that you do not have a wallet
location specified in the client
sqlnet.ora
file. If the client
sqlnet.ora
file
contains a wallet location, then multiple users cannot share that file. Only the server
sqlnet.ora
file must have a value for the wallet location parameter.
To connect as an SSL-authentication enterprise user, perform the following steps:
1.
Use Oracle Wallet Manager to download a user wallet from the directory. See
"Downloading a Wallet from an LDAP Directory"
on page 8-16.
2.
Use Oracle Wallet Manager to enable auto login for the user wallet. Enabling
auto login generates a single sign-on (
.sso
) file and enables authentication to
the SSL adapter. See
"Using Auto Login"
on page 8-19.
3.
Set the
TNS_ADMIN
environment variable (to point to the client's
sqlnet.ora
file) for the client if the client Oracle home points to a server Oracle home.
(Because a server must have a wallet location set in its
sqlnet.ora
file and a
See Also:
■
Oracle Database Administrator's Guide for information about
editing initialization parameters.
■
Oracle Database Reference for information about the
LDAP_
DIRECTORY_ACCESS
initialization parameter.
■
Oracle Database SQL Reference for information about using the
ALTER SYSTEM
command with the
SET
clause.
Содержание Database Advanced Security 10g Release 1
Страница 17: ...xvii ...
Страница 20: ...xx ...
Страница 24: ...xxiv ...
Страница 42: ...xlii ...
Страница 44: ......
Страница 62: ...Oracle Advanced Security Restrictions 1 18 Oracle Database Advanced Security Administrator s Guide ...
Страница 100: ...Duties of an Enterprise User Security Administrator DBA 2 38 Oracle Database Advanced Security Administrator s Guide ...
Страница 102: ......
Страница 116: ...How To Configure Data Encryption and Integrity 3 14 Oracle Database Advanced Security Administrator s Guide ...
Страница 124: ......
Страница 148: ...RSA ACE Server Configuration Checklist 5 24 Oracle Database Advanced Security Administrator s Guide ...
Страница 246: ...Managing Certificates 8 28 Oracle Database Advanced Security Administrator s Guide ...
Страница 254: ...Configuring Oracle Database for External Authentication 9 8 Oracle Database Advanced Security Administrator s Guide ...
Страница 284: ......
Страница 350: ...Troubleshooting Enterprise User Security 12 38 Oracle Database Advanced Security Administrator s Guide ...
Страница 384: ......
Страница 394: ...Data Encryption and Integrity Parameters A 10 Oracle Database Advanced Security Administrator s Guide ...
Страница 414: ...Physical Security D 6 Oracle Database Advanced Security Administrator s Guide ...
Страница 518: ...Index 10 ...