NOTE:

Run the setup-ds-admin.pl script as root.

The custom setup has the following steps:

CAUTION: If a Directory Server (notably Netscape Directory Server 6.21 or Red Hat Directory Server 7.1) is already installed on your machine, it is extremely important that you perform a migration, not a fresh installation. Migration is described in Chapter 6 “Migrating or upgrading to HP-UX Directory Server from Netscape or Red Hat Directory Server”.

1.Launch the setup-ds-admin.plscript:

# /opt/dirsrv/sbin/setup-ds-admin.pl

2.When asked to choose the setup type, enter 3 to perform a custom setup.

3.Set the computer name of the machine on which the Directory Server is being configured. This defaults to the fully-qualified domain name (FQDN) for the host. For example:

Computer name [ldap.example.com]:

NOTE:

The setup script gets the host information from the /etc/resolv.conf file. If the /etc/ hosts file includes aliases (such as ldap.example.com) that do not match the /etc/ resolv.conf settings, you cannot use the default host name option.

The host name is very important. It is used generate the Directory Server instance name, the admin domain, and the base suffix, among others. If you are using SSL/TLS or Kerberos, the computer name must be the exact name that clients use to connect to the system. If you will use DNS, make sure the name resolves to a valid IP address and that IP address resolves back to this name.

4.Set the user and group that the Directory Server process will run as. The default is www:other. For example:

System User [www]: System Group [other]:

HP recommends using the defaults. If you want to use a user or group other than the default, you must create the user or group before completing the setup script.

5.This step allows you to register your Directory Server with an existing Directory Server instance that serves as the Configuration Directory Server. This registers your new instance so it can be managed by the Console. If you are setting up the first Directory Server instance on your network, you cannot register it with another directory; you must set up your Directory Server as the Configuration Directory Server. To set up this Directory Server as a Configuration Directory Server, select n. The next installation steps (steps 6, 7, and 8) enable you to set up the administrator user.

To register the Directory Server instance with an existing Configuration Directory Server, select yes. This initiates the registration process in which you must supply the following information about the Configuration Directory Server. This information is supplied in place of setting up the administrator user for the new Directory Server (steps 6, 7, and 8).

The Configuration Directory Server URL, such as ldap://ldap.example.com:389/o=NetscapeRoot

To use TLS/SSL, set the protocol as ldaps:// instead of ldap://

For LDAPS, use the secure port (636) instead of the standard port (389), and provide a CA certificate.

The Configuration Directory Server administrator's user DN; by default, this is admin.

3.6 Setting up the Directory Server and Administration Server

27

Page 27
Image 27
HP UX Direry Server manual Run the setup-ds-admin.pl script as root

UX Direry Server specifications

HP UX Directory Server is a robust and scalable solution designed for managing directory information within enterprise networks. Developed by Hewlett-Packard (HP), this server offers an extensive set of features tailored to meet the needs of organizations that require an efficient way to store, manage, and retrieve identity and access data.

One of the key features of HP UX Directory Server is its ability to handle large directories with significant volumes of data. Built on a highly optimized architecture, it provides excellent performance and can support millions of entries without sacrificing speed or reliability. This capability makes it an ideal choice for large-scale deployments in enterprises that require high availability and responsiveness.

In addition to its scalability, HP UX Directory Server supports a wide range of protocols, including LDAP (Lightweight Directory Access Protocol), which ensures seamless integration with diverse applications and systems across various platforms. The server maintains standards compliance, which facilitates interoperability and simplifies administration tasks.

Security is a top priority for HP UX Directory Server, offering an array of features to protect sensitive information. It supports secure data transmission via TLS/SSL protocols, ensuring encrypted communication between clients and servers. Advanced access controls allow administrators to define fine-grained permissions, helping to safeguard directory data against unauthorized access.

Another salient feature of HP UX Directory Server is its replication capabilities. The server can replicate directory data across multiple instances, ensuring data consistency and availability in distributed environments. This feature is essential for businesses operating across different geographical locations or requiring failover solutions for disaster recovery.

HP UX Directory Server also comes equipped with tools for data management, including an intuitive administration console for configuring and monitoring the server. Additionally, it offers customizable schema capabilities, enabling organizations to tailor the directory structure to fit their specific needs.

Integration with existing identity management solutions is streamlined through connectors and APIs, allowing organizations to extend their directory services and enhance user experience.

In summary, HP UX Directory Server is a powerful directory management solution that combines scalability, security, and integration flexibility. Its support for industry standards, advanced replication, and comprehensive administrative tools makes it an essential asset for organizations seeking to manage identity and access efficiently. By leveraging this technology, businesses can improve their operational efficiency and ensure a secure and organized approach to directory management.