18.07.2014 Views

Novell eDirectory 8.8 Installation Guide - NetIQ

Novell eDirectory 8.8 Installation Guide - NetIQ

Novell eDirectory 8.8 Installation Guide - NetIQ

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

The NDS NMAS method is mandatory and will be installed automatically if no NMAS methods list<br />

is provided. However, if you are creating an explicit list, do not remove this method from the list.<br />

If the NMAS methods are configured using this methodology in the response file, <strong>eDirectory</strong> shows<br />

the following status while installing, without prompting for user input.<br />

Figure 2-6 NMAS Login Method Creation<br />

novdocx (en) 11 July 2008<br />

The following is sample text in the response file for choosing the NMAS methods:<br />

[NWI:NMAS]<br />

Choices=12<br />

Methods=X509 Advanced Certificate,CertMutual,Challenge Response,DIGEST-<br />

MD5,Enhanced Password,Entrust,GSSAPI,NDS,NDS Change Password,Simple<br />

Password,Universal Smart Card,X509 Certificate<br />

HTTP Ports<br />

<strong>eDirectory</strong> listens on preconfigured HTTP ports for access through the Web. For example, iMonitor<br />

accesses <strong>eDirectory</strong> through Web interfaces. They need to specify certain in order to access the<br />

appropriate applications. There are two keys that can be set prior to installation to configure<br />

<strong>eDirectory</strong> on specific ports:<br />

• Clear Text HTTP Port: The port number for the HTTP operations in clear text.<br />

• SSL HTTP Port: HTTP port number for operations on the secure socket layer.<br />

The following is sample text in the response file for configuring HTTP port numbers:<br />

[eDir:HTTP]<br />

Clear Text HTTP Port=8028<br />

SSL HTTP Port=8030<br />

LDAP Configuration<br />

<strong>eDirectory</strong> supports LDAP operations. It listens for LDAP requests in clear text and SSL, on two<br />

different ports. These ports can be configured in the response file prior to installation so that when<br />

<strong>eDirectory</strong> is started, it listens on these configured ports.<br />

There are three keys in the [NWI:NDS] tag that configure the LDAP ports:<br />

• LDAP TLS Port: The port on which <strong>eDirectory</strong> should listen for LDAP requests in clear text.<br />

• LDAP SSL Port: The port on which <strong>eDirectory</strong> should listen for LDAP requests in SSL. You<br />

can also use a key to configure whether <strong>eDirectory</strong> should mandate secure connections when<br />

bind requests send the password in clear text.<br />

• Require TLS: Whether <strong>eDirectory</strong> should mandate TLS when receiving LDAP requests in<br />

clear text.<br />

38 <strong>Novell</strong> <strong>eDirectory</strong> <strong>8.8</strong> <strong>Installation</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!