Policy Server Guides › Policy Design Guide › User Directories › Configure User Directory Connections › Configure Oracle Internet Directory Connections
Configure Oracle Internet Directory Connections
After meeting the prerequisites, you can configure the Policy Server.
Note: When you create or modify a Policy Server object in the Policy Server User Interface, use ASCII characters. Object creation or modification with non-ASCII characters is not supported.
To configure the Policy Server to use an OID user directory
- In OID:
- Create another organizational unit (for example, OracleSchemaVersion) under a domain and follow the similar instructions from step 4 in the “Configuring the Policy Server to Use Oracle Internet Directory as a Policy Store” section in the “Configuring LDAP Directory Servers as a Policy Store” chapter of the Policy Server Installation Guide.
- Enter a Distinguished Name. For example, ou=people,cn=OracleSchemaVersion.
- To add users to the organizational unit under the same domain as mentioned in step 4 of the “Configuring the Policy Server to Use Oracle Internet Directory as a Policy Store” section in the “Configuring LDAP Directory Servers as a Policy Store” chapter of the Policy Server Installation Guide:
- Repeat steps 1 and 2 from that section.
- Instead of adding a domain, click Add and chose inetOrgPerson.
- In the dialog box enter:
- cn=user1
- sn =user1
- uid=user1
- userpassword=user1
- dn as cn=user1,ou=people,cn=OracleSchemaVersion
- Open the User Directory Dialog.
- In the Directory Setup tab, select LDAP from the Namespace drop-down list.
- In the Directory Setup tab:
- Enter connection information for your LDAP directory.
- In the Root field, specify ou=people, cn=OracleSchemaVersion
- To configure the directory connection to include multiple servers for failover and load balancing, click the Configure button in the Directory Setup group box.
- Optionally, in the Credentials and Connection tab, specify administrator credentials that the Policy Server will use to connect to the LDAP directory, and specify whether the connection to the directory will use SSL.
Note: For Oracle Directory Enterprise Edition (formerly Sun Java System Directory Server Enterprise Edition) directories, we recommend using an administrator account other than cn=Directory Manager. Using cn=Directory Manager may cause performance issues due to security policies applied to this account. Instead, create a new user with sufficient privileges to manage the directory and specify that user in the Connect Username field.
- Optionally, in the User Attributes tab, specify directory attributes that will be reserved for use by SiteMinder features.
More information:
Navigate to the User Directory Dialog
User Directory Dialog—LDAP Namespace—Directory Setup Tab
Load Balancing/Failover Configuration for LDAP Directory Connections
User Directory Dialog—LDAP Namespace—Credentials and Connection Tab
Specify Directory Attributes