The CA LDAP Server r15 for z/OS (RACF) contains a different set of objectclasses as compared to other LDAP servers. Before configuring a user directory connection from the Policy Server to the CA LDAP Server, add the RACF objectclasses to the following Policy Server registry entries in the LDAP namespace by substituting the replacement values for the default values below:
Specifies the following registry entry location:
HKEY_LOCAL_MACHINE\SOFTWARE\Netegrity\SiteMinder\CurrentVersion\Ds.
Specifies the registry entry's default value.
Specifies a new value containing the RACF objectclasses for the registry entry.
organization,organizationalUnit,groupOfNames,groupOfUniqueNames,group
class_filters_default_value,*
groupOfNames,groupOfUniqueNames,group
group_class_filters_default_value,*
organizationalPerson,inetOrgPerson,organization,organizationalUnit,groupOfNames,groupOfUniqueNames,group
policy_class_filters_default_value,*
Add the following RACF objectclasses to this registry entry:
|
RACF Objectclass |
Registry Key Type |
Data |
|---|---|---|
|
eTRACUserid |
REG_DWORD |
0x00000001(1) |
|
eTRACAdminGrp |
REG_DWORD |
0x00000002(2) |
In UNIX, add the following RACF objectclass to this registry entry:
|
RACF Objectclass |
Registry Key Type |
Data |
|---|---|---|
|
LDAPPingTimeout= |
REG_DWORD |
300; |
Note: The value of this registry key can be changed based on the response time of the CA LDAP Server r15 for z/OS (RACF).
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |