Installing And Configuring LDAP-UX Client Services

Configure LDAP-UX Client Services with Publickey Support

swinstall -x autoreboot=true -s

/tmp/ENHKEY_B.11.11.01_HP-UX_B.11.11_64_32.depotfor HP-UX 11i v1

swinstall -x autoreboot=true -x reinstall=false -s /tmp/ENHKEY_B.11.23.01_HP-UX_B.11.23_IA_PA.depot for HP-UX 11i v2

Extending the Publickey Schema into Your Directory

The publickey schema is not loaded in the Netscape Directory Server. If you are installing LDAP-UX B.04.00 or later version on your client system, the setup program will extend the publickey schema into your Netscape Directory Server. If you previously configured LDAP-UX B.03.30 or earlier version, and now update the product to version B.04.00 or later, you must re-run the setup program to extend the publickey schema into your LDAP directory. You do not need to re-run the setup program for the subsequent client systems. For detailed information on how to run the setup program to extend the publickey schema into an LDAP directory, see “Quick Configuration” on page 29.

Admin Proxy User

A special type of proxy user, known as an Admin Proxy has been added to LDAP-UX to support management of publickey information in an LDAP directory server. The Admin Proxy represents the HP-UX administrator’s rights in the directory server and typically is used to represent root’s privileges extended to the directory server. Only an Admin Proxy user is allowed to use the newkey tool to add host and user keys into the LDAP directory server, or to use the chkey tool to modify host keys in the LDAP directory server.

Configuring an Admin Proxy User Using ldap_proxy_config

You need to use a new ldap_proxy_config tool option -Ato configure an Admin Proxy user. You must specify the -Aoption along with other options to perform operations applying to an Admin Proxy user. For example, you can use the ldap_proxy_config -A-icommand to create an Admin Proxy user. See “The ldap_proxy_config Tool” on page 146 for details.

48

Chapter 2