Installation guide
Installing or Upgrading NetIQ eDirectory on Linux 23
The interface could be a value such as eth0, hme0, hme1, or hme2, depending on the NIC that is
installed and used.
For more information on multicast and broadcast routes, refer to the OpenSLP Web site (http://
www.openslp.org/doc/html/UsersGuide/Installation.html).
Network server time synchronized
Use Network Time Protocol's (NTP) ntp to synchronize time across all network servers.
(Conditional) If you are installing a secondary server, all the replicas in the partition that you
install the product on should be in the On state.
(Conditional) If you are installing a secondary server into an existing tree as a non-administrator
user, create a container and then partition it. Ensure that you have the following rights:
Supervisor rights to this partition.
All Attributes rights: read, compare, and write rights over the W0.KAP.Security object.
Entry rights: browse rights over Security container object.
All Attributes rights: read and compare rights over Security container object.
(Conditional) If you are installing a secondary server into an existing tree as a non-administrator
user, ensure that at least one of the servers in the tree has the same or higher eDirectory version
as that of the secondary being added as container admin. In case the secondary being added is of
later version, then the schema needs to be extended by the administrator of the tree before
adding the secondary using container admin.
While configuring eDirectory, you must enable SLP services and a NetWare Core Protocol (NCP)
port (the default is 524) in the firewall to allow the secondary server addition. Additionally, you
can enable the following service ports based on your requirements:
LDAP clear text - 389
LDAP secured - 636
HTTP clear text - 8028
HTTP secured - 8030
In case, if you have enabled user-defined ports, you must mention these ports while configuring
eDirectory.
NOTE: This step is required only if you have SLP configured in your system.
Do not set the user-defined ports to 8008 and 8010 while upgrading eDirectory 8.8 SP2 or later
versions to 8.8 SP8. If the ports are set to 8008 or 8010,
ndsconfig
assumes that the server is a
pre-eDirectory 8.8x server and automatically resets them to 8028 and 8030 respectively.
During eDirectory upgrade, if SecretStore has not already been configured with the previous
versions, or you do not want to configure SecretStore, use the
-m no_ss
option with the
nds-
install
utility.
Configuring Static IP Address
Static IP address must be configured on the server for the eDirectory to perform efficiently.
Configuring eDirectory on the servers with DHCP address can lead to unpredictable results.










