The CA LDAP Server r15 for z/OS (ACF2) contains a different set of objectclasses as compared to other LDAP servers. Before configuring a user directory connection from the Policy Server to the CA LDAP Server, add the ACF2 objectclasses to the following Policy Server registry entries in the LDAP namespace by substituting the replacement values for the default values below:
Specifies the following registry entry location:
HKEY_LOCAL_MACHINE\SOFTWARE\Netegrity\SiteMinder\CurrentVersion\Ds.
Specifies the registry entry's default value.
Specifies a new value containing the ACF2 objectclasses for the registry entry.
organization,organizationalUnit,groupOfNames,groupOfUniqueNames,group
class_filters_default_value,*
groupOfNames,groupOfUniqueNames,group
group_class_filters_default_value,*
organizationalPerson,inetOrgPerson,organization,organizationalUnit,groupOfNames,groupOfUniqueNames,group
policy_class_filters_default_value,*
Add the following ACF2 objectclasses to this registry entry:
|
RACF Objectclass |
Registry Key Type |
Data |
|---|---|---|
|
acf2lid |
REG_DWORD |
0x00000001(1) |
|
acf2admingrp |
REG_DWORD |
0x00000002(2) |
In UNIX, add the following ACF2 objectclass to this registry entry:
|
RACF Objectclass |
Registry Key Type |
Data |
|---|---|---|
|
LDAPPingTimeout= |
REG_DWORD |
300; |
Note: The value of this registry key can be changed based on the response time of the CA LDAP Server r15 for z/OS (ACF2).
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |