Previous Topic: Ping the User Store System

Next Topic: How to Configure a IBM Directory Server User Directory Connection

Configure Sun Java System User Directory Connections

You can configure a user directory connection that lets the Policy Server communicate with a Sun Java System user store.

Sun Microsystems recommends using an administrator account other than cn=Directory Manager. Using cn=Directory Manager may cause performance issues due to security policies applied to this account. Instead, create a new user with sufficient privileges to manage the directory and specify that user in the Username field.

To configure the user directory connection

  1. Click Infrastructure, Directory.
  2. Click User Directory, Create User Directory.

    The Create User Directory pane opens.

    Note: Click Help for descriptions of settings and controls, including their respective requirements and limits.

  3. Select LDAP from the Namespace list.

    LDAP settings open.

  4. Complete the remaining required connection information on the General and Directory Setup group boxes.

    Note: If the Policy Server is operating in FIPS mode and the directory connection is to use a secure SSL connection when communicating with the Policy Server, the certificates used by the Policy Server and the directory store must be FIPS compliant.

  5. Type the LDAP Search and LDAP User DN Lookup settings in the fields on the LDAP Settings group box.
  6. (Optional) Select Require Credentials on the Administrator Credentials group box, and type the user name and password of an administrator's account on the user directory in the fields on the group box.
  7. (Optional) Specify the user directory profile attributes that are reserved for SiteMinder's use in the fields on the User Attributes group box.
  8. (Optional) Click Create on the Attribute Mapping List group box.

    The Create Attribute Mapping pane opens.

  9. Click Submit.

    The Create User Directory task is submitted for processing.

More information:

LDAP Load Balancing and Failover

Define an Attribute Mapping

How to Configure an LDAP User Directory Connection over SSL


Copyright © 2010 CA. All rights reserved. Email CA about this topic