HP UX Direry Server manual Sasl

Page 90

S

 

SASL

An authentication framework for clients as they attempt to bind to a directory. Also Simple

 

Authentication and Security Layer .

schema

Definitions describing what types of information can be stored as entries in the directory. When

 

information that does not match the schema is stored in the directory, clients attempting to

 

access the directory may be unable to display the proper results.

schema checking

Ensures that entries added or modified in the directory conform to the defined schema. Schema

 

checking is on by default, and users will receive an error if they try to save an entry that does

 

not conform to the schema.

Secure Sockets

See SSL.

Layer

 

self access

When granted, indicates that users have access to their own entries if the bind DN matches the

 

targeted entry.

Server Console

Java-based application that allows you to perform administrative management of your Directory

 

Server from a GUI.

server daemon

The server daemon is a process that, once running, listens for and accepts requests from clients.

Server Selector

Interface that allows you select and configure servers using a browser.

server service

A process on Windows that, once running, listens for and accepts requests from clients. It is

 

the SMB server on Windows NT.

service

A background process on a Windows machine that is responsible for a particular system task.

 

Service processes do not need human intervention to continue functioning.

SIE

Server Instance Entry. The ID assigned to an instance of Directory Server during installation.

Simple

See SASL.

Authentication

 

and Security

 

Layer

 

Simple Network

See SNMP.

Management

 

Protocol

 

single-master

The most basic replication scenario in which multiple servers, up to four, each hold a copy of

replication

the same read-write replicas to replica servers. In a single-master replication scenario, the

 

supplier server maintains a changelog.

SIR

See supplier-initiated replication.

slapd

LDAP Directory Server daemon or service that is responsible for most functions of a directory

 

except replication.

 

See also ns-slapd.

SNMP

Used to monitor and manage application processes running on the servers by exchanging data

 

about network activity. Also Simple Network Management Protocol.

SNMP master

Software that exchanges information between the various subagents and the NMS.

agent

 

SNMP subagent

Software that gathers information about the managed device and passes the information to the

 

master agent. Also called a subagent.

SSL

A software library establishing a secure connection between two parties (client and server)

 

used to implement HTTPS, the secure version of HTTP. Also called Secure Sockets Layer.

standard index

index maintained by default.

sub suffix

A branch underneath a root suffix.

subagent

See SNMP subagent.

substring index

Allows for efficient searching against substrings within entries. Substring indexes are limited

 

to a minimum of two characters for each entry.

suffix

The name of the entry at the top of the directory tree, below which data is stored. Multiple

 

suffixes are possible within the same directory. Each database only has one suffix.

90 Glossary

Image 90
Contents HP-UX Directory Server console guide Page Table of Contents Glossary Index Overview of the console Console interfaceSimple system using the Console Console menus A more complex systemConsole tabs Servers and Applications tabUsers and Groups tab Servers and Applications tabServer-specific consoles Directory Server ConsoleTasks Administration Server consoleConfiguration DirectoryManaging SSL certificates Basic Console tasks Launching the ConsoleOpening a directory or Administration Server window Changing the Console appearanceChanging profile locations Restoring default font settings Changing console fonts # /opt/dirsrv/bin/hpds-idm-console Reordering table columns Basic Console tasks Changing the Console appearance Customizing the main window View menu, choose Custom View Configuration Working with custom viewsBasic Console tasks Switching to a custom view From the View menu, choose Custom View ConfigurationSet the access control instructions Changing the Console appearance Page Managing server instances Editing domain, host, server group, and instance informationCreating and removing admin domains Creating and editing an admin domainSelect Create New Admininistration Domain Removing an admin domain Select Remove Admininistration DomainCreating a new Directory Server instance Deleting a Directory Server instance Page Managing Directory Server users and groups Searching for users and groupsClick the Users and Groups tab Managing Directory Server users and groups Directory and administrative users Creating directory entriesManaging Directory Server users and groups Creating directory entries Groups Certificate group could be based on having the stringClick the Users and Groups tab Managing Directory Server users and groups Organizational units Click the Create button, and choose Organizational Unit Modifying directory entries Editing entriesAllowing sync attributes for entries Changing administrator entries Changing the configuration administrator and password Users and Groups, click AdvancedChanging the admin password Adding users to the configuration administrators group Modifying directory entries Removing an entry from the directory Setting access controls Setting access controls Setting access permissions on console elements ACI Manager window, click the New button Setting access permissions on console elements Setting access controls Setting access permissions on console elements Setting access controls Using SSL/TLS with the Console Overview of SSL/TLSInstalling certificates Generating a certificate request State/Province OrganizationOrganizational Unit optional Country/regionInstalling the certificate Click Done to dismiss the Certificate Request WizardThis local file Following encoded text blockInstalling certificates Go to the CA Certs tab, and click Install Installing certificates Using SSL/TLS with the Console Accepting connections from clients Client Authentication Making connections to other servers Server AuthenticationEnabling TLS/SSL Check the Use this Cipher Family checkbox Do not allow client authentication Allow client authenticationRequire client authentication Check the Use SSL in the Console box Enabling TLS/SSL Creating password files Creating a password file for the Directory ServerCreating a password file for the Administration Server Page Support and other resources Contacting HPRelated information HP-UX Directory Server administration server guide HP-UX documentation setTroubleshooting resources Typographic conventionsPage Access rights GlossaryCGI DIT GSS-API Ldap NIS PTA Sasl TCP/IP Page Index Index
Related manuals
Manual 68 pages 26.36 Kb Manual 160 pages 39.12 Kb Manual 18 pages 3.79 Kb Manual 72 pages 14.95 Kb

UX Direry Server specifications

HP UX Directory Server is a robust and scalable solution designed for managing directory information within enterprise networks. Developed by Hewlett-Packard (HP), this server offers an extensive set of features tailored to meet the needs of organizations that require an efficient way to store, manage, and retrieve identity and access data.

One of the key features of HP UX Directory Server is its ability to handle large directories with significant volumes of data. Built on a highly optimized architecture, it provides excellent performance and can support millions of entries without sacrificing speed or reliability. This capability makes it an ideal choice for large-scale deployments in enterprises that require high availability and responsiveness.

In addition to its scalability, HP UX Directory Server supports a wide range of protocols, including LDAP (Lightweight Directory Access Protocol), which ensures seamless integration with diverse applications and systems across various platforms. The server maintains standards compliance, which facilitates interoperability and simplifies administration tasks.

Security is a top priority for HP UX Directory Server, offering an array of features to protect sensitive information. It supports secure data transmission via TLS/SSL protocols, ensuring encrypted communication between clients and servers. Advanced access controls allow administrators to define fine-grained permissions, helping to safeguard directory data against unauthorized access.

Another salient feature of HP UX Directory Server is its replication capabilities. The server can replicate directory data across multiple instances, ensuring data consistency and availability in distributed environments. This feature is essential for businesses operating across different geographical locations or requiring failover solutions for disaster recovery.

HP UX Directory Server also comes equipped with tools for data management, including an intuitive administration console for configuring and monitoring the server. Additionally, it offers customizable schema capabilities, enabling organizations to tailor the directory structure to fit their specific needs.

Integration with existing identity management solutions is streamlined through connectors and APIs, allowing organizations to extend their directory services and enhance user experience.

In summary, HP UX Directory Server is a powerful directory management solution that combines scalability, security, and integration flexibility. Its support for industry standards, advanced replication, and comprehensive administrative tools makes it an essential asset for organizations seeking to manage identity and access efficiently. By leveraging this technology, businesses can improve their operational efficiency and ensure a secure and organized approach to directory management.