|
||
|
|
Part 1 Administering Netscape Directory Server
Chapter 1 Introduction to Netscape Directory Server
Overview of Directory Server Management
Using the Directory Server Console
Copying Entry DNs to the Clipboard
Configuring the Directory Manager
Binding to the Directory From Netscape Console
Starting and Stopping the Directory Server
Starting the Server with SSL Enabled
Starting the Server in Referral Mode
Chapter 2 Creating Directory Entries
Managing Entries From the Directory Console
Managing Entries From the Command Line
Providing Input From the Command Line
Adding and Modifying Entries Using ldapmodify
Adding Attributes to Existing Entries Using LDIF
Maintaining Referential Integrity
How Referential Integrity Works
Using Referential Integrity with Replication
Configuring the Supplier Server
From the Directory Server Console
From the Directory Server Console
From the Directory Server Console
From the Directory Server Console
Chapter 3 Configuring Directory Databases
Creating and Maintaining Suffixes
Creating and Maintaining Databases
Maintaining Directory Databases
Creating and Maintaining Database Links
Configuring the Chaining Policy
Database Links and Access Control Evaluation
Advanced Feature: Tuning Database Link Performance
Detecting Errors During Normal Processing
Advanced Feature: Configuring Cascading Chaining
Overview of Cascading Chaining
Summary of Cascading Chaining Configuration Attributes
Cascading Chaining Configuration Example
Chapter 4 Populating Directory Databases
Importing From the Command Line
Backing Up the dse.ldif Configuration File
Restoring Databases that Include Replicated Entries
Restoring the dse.ldif Configuration File
Enabling and Disabling Read-Only Mode
Chapter 5 Advanced Entry Management
Managing Roles Using the Console
Managing Roles Using the Command Line
Examples: Managed Role Definition
Example: Filtered Role Definition
Example: Nested Role Definition
About the CoS Definition Entry
Managing CoS Using the Console
Managing CoS From the Command Line
Creating Role-Based Attributes
Chapter 6 Managing Access Control
Rights Required for LDAP Operations
Anonymous Access (anyone Keyword)
Parent Access (parent Keyword)
Creating ACIs From the Console
Granting Write Access to Personal Entries
Restricting Access to Key Roles
Granting a Group Full Access to a Suffix
Granting Rights to Add and Delete Group Entries
Granting Conditional Access to a Group or Role
Setting a Target Using Filtering
Allowing Users to Add or Remove Themselves From a Group
Defining Permissions for DNs That Contain a Comma
Proxied Authorization ACI Example
Advanced Access Control: Using Macro ACIs
Macro Matching for ($attr.attrName)
Access Control and Replication
Logging Access Control Information
Compatibility with Earlier Releases
Chapter 7 User Account Management
Configuring the Password Policy
Configuring the Password Policy Using the Console
Configuring the Password Policy Using the Command-Line
Configuring the Account Lockout Policy
Configuring the Account Lockout Policy Using the Console
Configuring the Account Lockout Policy Using the Command Line
Managing the Password Policy in a Replicated Environment
Inactivating User and Roles Using the Console
Inactivating User and Roles Using the Command Line
Activating User and Roles Using the Console
Activating User and Roles Using the Command Line
Setting Resource Limits Based on the Bind DN
Setting Resource Limits Using the Console
Setting Resource Limits Using the Command Line
Chapter 8 Managing Replication
Read-Write Replica/Read-Only Replica
Compatibility with Earlier Versions of Directory Server
Summary of Steps for Complex Replication Configurations
Configuring Single-Master Replication
Configuring Multi-Master Replication
Configuring Cascading Replication
Replication with Earlier Releases
Using the Retro Change Log Plug-In
Solving Common Replication Conflicts
Chapter 9 Extending the Directory Schema
Turning Schema Checking On and Off
About Default, System, and Standard Indexes
Overview of the Searching Algorithm
Balancing the Benefits of Indexing
Creating Indexes From the Server Console
Creating Indexes From the Command Line
Running the db2index.pl Script
Creating Browsing Indexes From the Server Console
Creating Browsing Indexes from the Command Line
Deleting Indexes From the Server Console
Deleting Indexes From the Command Line
Running the db2index.pl Script
Deleting Browsing Indexes From the Server Console
Deleting Browsing Indexes From the Command Line
Deleting a Browsing Index Entry
Benefits of the All IDs Mechanism
Drawbacks of the All IDs Mechanism
When All IDs Threshold is Too Low
When All IDs Threshold is Too High
All IDs Threshold Tuning Advice for Single- Enterprise Directories
All IDs Threshold Tuning Advice for Service Providers and Extranets
Default All IDs Threshold Value
Symptoms of an Inappropriate All IDs Threshold Value
Changing the All IDs Threshold Value
Attribute Name Quick Reference Table
Introduction to SSL in the Directory Server
Obtaining and Installing Server Certificates
Using Certificate-Based Authentication
Configuring LDAP Clients to Use SSL
Chapter 12 Monitoring Server and Database Activity
Viewing and Configuring Log Files
Viewing the Server Performance Monitor
Overview of Server Performance Monitor Information
Global Database Cache Information
Viewing Database Performance Monitors
Overview of Database Performance Monitor Information
General Information (Database)
Database Cache Information Table
Monitoring Database Link Activity
Chapter 13 Monitoring Directory Server Using SNMP
Managed Device-Initiated Communication
Overview of the Directory Server Management Information Base
Configuring the AIX SNMP Daemon
Starting and Stopping the SNMP Subagent on UNIX
Starting and Stopping the SNMP Service on Windows NT
Configuring SNMP for the Directory Server
Chapter 14 Tuning Directory Server Performance
Changing the Location of the Database Transaction Log
Changing the Database Checkpoint Interval
Disabling Durable Transactions
Specifying Transaction Batching
Avoid Creating Entries Under the cn=config Entry in the dse.ldif File
Chapter 15 Administering Directory Server Plug-Ins
Server Plug-in Functionality Reference
Case Exact String Syntax Plug-In
Case Ignore String Syntax Plug-In
Distinguished Name Syntax Plug-In
Generalized Time Syntax Plug-In
Multimaster Replication Plug-In
CLEAR Password Storage Plug-In
CRYPT Password Storage Plug-In
NS-MTA-MD5 Password Storage Plug-In
Postal Address String Syntax Plug-In
Referential Integrity Postoperation Plug-In
Enabling and Disabling Plug-Ins From the Server Console
Chapter 16 Using the Pass-Through Authentication Plug-In
Specifying One Authenticating Directory Server and One Subtree
Specifying Multiple Authenticating Directory Servers
Specifying One Authenticating Directory Server and Multiple Subtrees
Using Non-Default Parameter Values
Specifying Different Optional Parameters and Subtrees for Different Authenticating Directory Servers
Chapter 17 Using the Attribute Uniqueness Plug-In
Overview of the Attribute Uniqueness Plug-In
Overview of the UID Uniqueness Plug-in
Attribute Uniqueness Plug-In Syntax
Creating an Instance of the Attribute Uniqueness Plug-In
Configuring Attribute Uniqueness Plug-Ins
Configuring Attribute Uniqueness Plug-Ins From the Directory Server Console
Attribute Uniqueness Plug-In Syntax Examples
Replication and the Attribute Uniqueness Plug-In
Multi-Master Replication Scenario
Appendix A LDAP Data Interchange Format
Specifying Directory Entries Using LDIF
Defining Directories Using LDIF
Storing Information in Multiple Languages
Appendix B Finding Directory Entries
Finding Entries Using the Server Console
ldapsearch Command-Line Format
Commonly Used ldapsearch options
Specifying Search Filters on the Command Line
Displaying Subsets of Attributes
Specifying Search Filters Using a File
Specifying DNs that Contain Commas in Search Filters
Using Client Authentication When Searching
Using Attributes in Search Filters
Using Operators in Search Filters
Searching an Internationalized Directory
Using Wildcards in Matching Rule Filters
Greater Than or Equal to Example
© 2001 Sun Microsystems, Inc. Portions copyright 1999, 2001 Netscape Communications Corporation. All rights reserved.
Last Updated November 26, 2001