Wednesday, November 23, 2011

setting up ssl 636 port for oid to ad for sync

Copied the wallet to /wallet .

Modified following changes as per ML DOC .

1. Open the Oracle Directory Manager
2. Navigate to SERVER MANAGEMENT, DIRECTORY SERVER , configuration set 1
3. Select the SSL Setup Tab and provide following details

ssl enable - ssl only
ssl wallet url : /wallet
ssl port : 636
ssl authentication : ssl server authentication

Click on apply and exit

4. Open dipassistant -gui and edit the profile activechngimp

check the connect directory ssl enable check box .
Update port as 636

5. Bounce odisrv services .





These 2 are the notes we need to follow to set this up .

##################
+.Please note that setting up AD SSL and ldapdind with ldap is must be resolved with AD admin help or with Microsoft Support.

1.>Note 842391.1--How To Set Up DIP Synchronization To Use SSL
In this note follow the other note mentioned to create new configset for SSL.


2.> This second note is just for your information.
NOTE:300756.1 - Active Directory (AD) Synchronization to OID Via SSL Mode Fails: DIP_GEN_CONNECTION_FAILURE

No comments:

Post a Comment