3.4.8.1 nsEncryptionAlgorithm

nsEncryptionAlgorithm selects the cipher used by nsAttributeEncryption. The algorithm can be set per encrypted attribute.

Parameter

Description

Entry DN

cn=attributeName, cn=encrypted attributes, cn=databaseName, cn=ldbm

 

database, cn=plugins, cn=config

Valid Values

The following are supported ciphers:

 

Advanced Encryption Standard Block Cipher (AES)

 

Triple Data Encryption Standard Block Cipher (3DES)

Default Value

 

Syntax

DirectoryString

Example

nsEncryptionAlgorithm: AES

3.5 Database link plug-in attributes (chaining attributes)

The database link plug-in attributes are also organized in an information tree, as shown in the following diagram:

Figure 3-4 Database link plug-in

All plug-in technology used by the database link instances is stored in the cn=chaining database plug-in node. This section presents the additional attribute information for the three nodes marked in bold in the cn=chaining database, cn=plugins, cn=config information tree in Figure 3-4 “Database link plug-in”.

3.5.1Database link attributes under cn=config, cn=chaining database, cn=plugins, cn=config

This section covers global configuration attributes common to all instances are stored in the cn=config, cn=chaining database, cn=plugins, cn=config tree node.

3.5.1.1 nsActiveChainingComponents

This attribute lists the components using chaining. A component is any functional unit in the server. The value of this attribute overrides the value in the global configuration attribute. To disable chaining on a particular database instance, use the value None. This attribute also allows the components used to chain to be altered. By default, no components are allowed to chain, which explains why this attribute will probably not appear in a list of cn=config,

3.5 Database link plug-in attributes (chaining attributes) 153

Page 153
Image 153
HP UX Identity Security Software manual Database link plug-in attributes chaining attributes, NsEncryptionAlgorithm