Previous Topic: Extend the ADAM Policy Store Schema

Next Topic: Extend the Sun Java System Directory Server Policy Store Schema

Extend the CA Directory Policy Store Schema

You extend the policy store schema to store objects introduced by r12.0 SP2. The existing r6.x policy store schema has not changed.

To extend the CA Directory policy store schema

  1. Copy the following file into the CA Directory DXHOME\config\schema directory:

    etrust.dxc

    Note: The etrust.dxc file is installed with the Policy Server in policy_server_home\xps\db.

  2. Copy the following files into the CA Directory DXHOME\bin directory.

    Note: The etrust_schema.txt file is installed with the Policy Server in policy_server_home\xps\db. The schema.txt file is installed with the Policy Server in policy_server_home\eTrust.

  3. Open the SiteMinder schema file (.dxg), and add the following lines to the bottom of the file:
    #CA Schema
    source "netegrity.dxc"
    source "etrust.dxc"
    
  4. Edit the DXI file for the DSA by adding the following lines to the bottom of the file:
    # cache configuration
    set max-cache-size = 100;
    set cache-index = all-attributes;
    set cache-attrs = all-attributes;
    set cache-load-all = true;
    set lookup-cache = true;
    
    set ignore-name-bindings=true;
    

    Note: The DXI file is located in DXHOME\config\servers. The max-cache-size entry is the total cache size in MB. Adjust this value based on the total memory available on the CA Directory server and overall size of the policy store.

  5. Open the default DXC file (default.dxc) for the DSA and locate the following:
    # size limits
    set max-users = 255;
    set credits = 5;
    set max-local-ops = 100;
    set max-dsp-ops = 100;
    set max-op-size = 200;
    set multi-write-queue = 20000;
    

    Note: The default DXC file is located in DXHOME\dxserver\config\limits.

  6. Edit the settings to match the following and save the DXC file:
    # size limits
    set max-users = 1000;
    set credits = 5;
    set max-local-ops = 1000;
    set max-dsp-ops = 1000;
    set max-op-size = 1000;
    set multi-write-queue = 20000;
    

    Note: Editing the size limits settings prevents cache size errors from appearing in your CA Directory log files.

  7. As the DSA user, stop and restart the DSA using the following commands:
    dxserver stop DSA_Name
    
    dxserver start DSA_Name
    

    The policy store schema is extended to store objects introduced by r12.0 SP2.


Copyright © 2010 CA. All rights reserved. Email CA about this topic