Previous Topic: CA LDAP Server r15 for z/OS (RACF) Backend Security Option

Next Topic: Configure a Connection from the Policy Server to CA LDAP Server for z/OS (RACF)

Configure Policy Server Registry Entries for RACF

The CA LDAP Server r15 for z/OS (RACF) contains a different set of objectclasses as compared to other LDAP servers. Before configuring a user directory connection from the Policy Server to the CA LDAP Server, add the RACF objectclasses to the following Policy Server registry entries in the LDAP namespace by substituting the replacement values for the default values below:

registry_entry_home

Specifies the following registry entry location:

HKEY_LOCAL_MACHINE\SOFTWARE\Netegrity\SiteMinder\CurrentVersion\Ds.

default_value

Specifies the registry entry's default value.

replacement_value

Specifies a new value containing the RACF objectclasses for the registry entry.

RACF Objectclass

Registry Key Type

Data

eTRACUserid

REG_DWORD

0x00000001(1)

eTRACAdminGrp

REG_DWORD

0x00000002(2)

RACF Objectclass

Registry Key Type

Data

LDAPPingTimeout=

REG_DWORD

300;

Note: The value of this registry key can be changed based on the response time of the CA LDAP Server r15 for z/OS (RACF).