XYGATE User Authentication Reference Manual

XYGATE
®
User Authentication
(XUA) 1.85 Reference Manual
Chapter 12. Configuring the LDAP Interface
XYPRO Technology Corporation 67 Proprietary and Confidential
1-> info process $ztc0, detail
TCPIP Detailed Info PROCESS \NODE.$ZTC0
*TCP Send Space......... 61440D *TCP Receive Space...... 61440D
*UDP Send Space......... 9216D *UDP Receive Space...... 42080D
*Delay Ack Time......... 20 *Delay Ack.............. ON
*Keep Alive Idle........ 75 *Keep Alive Retry Cnt... 8
*Keep Alive Interval.... 75 QIO Limit.............. 100%
*Host ID ............... 10.1.1.74
*Host Name ............. NODE.MYCOMPANY.COM
Program Filename ...... \NODE.$SYSTEM.SYS12.TCP6SAM
*Debug.................. OFF
*Full Dump.............. ON
*All Nets Are Local..... ON
*TCP Compat 42.......... ON
*EXPAND Security........ OFF
*TCP Path MTU........... ON
*TCP Time Wait.......... 10
Trace Status........... OFF
Trace Filename ........
*ARP Timer Refreshed ... OFF
*RFC1323 Enable ........ ON
More text? ([Y],N)
6.
Check the configuration of the TCP/IP process for the subnet settings.
$DATA WORK 4> SCF
1-> info subnet $ztc0.#*
TCPIP Info SUBNET \N1.$ZTC0.#*
Name Devicename *IPADDRESS TYPE *SUBNETMASK SuName QIO *R
#SN1 \NODE.L10023C 10.1.1.74 ETHERNET %HFFFFFF00 ON N
#LOOP0 127.0.0.1 LOOP-BACK %HFF000000 OFF N
12.3.5 SSL Encryption Readiness Checking
If communication between the NonStop server and the LDAP server is planned to be
encrypted, the NonStop system has to be ready for SSL encryption.
1. Check for the existence of the prngd.conf file as follows:
a. Logon to the OSS session and perform the commands described below.
cd /usr/local/etc/prngd
b.
If the directory does not exist, it must be created.
cd /usr/local/etc
mkdir prngd
c.
If the directory exists, check if the prngd.conf file resides in it.
Both the Host ID and Host Name
must be defined and be true.
The process name ($ztc0) is determined in step 2.
The directory must exist.
The IP address must match the Host ID in step 5.
#LOOP0 subnet should have an IP address of 127.0.0.1
The process name ($ztc0) is determined in step 2.