LDAP Configuration Examples Oracle Internet Directory with Single Search Base
                                                                                Figure 36. Group Properties in LDAP
The following table shows how to configure Oracle Service Registry using this scenario.
See Config Value
Config Property
Figure 27 ldap:localhost:389
Java naming provider URL Figure 27
com.sun.jndi.ldap.LdapCtxFactory Initial Naming Factory
Figure 27 c
n =
J o
e Patroni,cn=Users,ou=uddi,dc=in,dc=idoox,dc=com
Security Principal Figure 27
simple Security Protocol
User Properties
Figure 29 objectClass=person
Search Filter Figure 29
cn=Users,dc=in,dc=idoox,dc=com Search Base
Figure 29 Subtree Scope
Search Scope Figure 29
100 Result Limit
Figure 30 phone
telephoneNumber Figure 30
loginName uid
Figure 30 fullName
cn Figure 30
email mail
Group Properties
Figure 31 objectClass=groupofuniquenames
Search Filter Figure 31
cn=Groups,dc=in,dc=idoox,dc=com Search Base
Figure 31 Subtree Scope
Search Scope Figure 31
100 Result Limit
Figure 32 owner
creatorsName Figure 32
description description
Figure 32 member
uniqueMember Figure 32
name cn
Page 115
Oracle Internet Directory with Single Search Base
SUN One with Single Search Base
In this example, we show how to configure a Sun One Directory Server 5.2 under the LDAP Single Search Base scenario
. Section SUN One with Single Search Base
shows user properties that are stored in the LDAP server.
Figure 37. User Properties in LDAP
Section SUN One with Single Search Base shows group properties that are stored in the LDAP server.
Figure 38. Group Properties in LDAP
The following table shows how to configure Oracle Service Registry using this scenario.
See Config Value
Config Property
Figure 27 ldap:localhost:389
Java naming provider URL Figure 27
com.sun.jndi.ldap.LdapCtxFactory Initial Naming Factory
Figure 27 uid=JPatroni,ou=people,dc=in,dc=idoox,dc=com
Security Principal Figure 27
simple Security Protocol
User Properties
Figure 29 objectClass=person
Search Filter Figure 29
ou=people,dc=in,dc=idoox,dc=com Search Base
Page 116
SUN One with Single Search Base
See Config Value
Config Property
Figure 29 Subtree Scope
Search Scope Figure 29
100 Result Limit
Figure 30 phone
telephoneNumber Figure 30
loginName uid
Figure 30 fullName
cn Figure 30
email mail
Group Properties
Figure 31 objectClass=groupofuniquenames
Search Filter Figure 31
ou=groups,dc=in,dc=idoox,dc=com Search Base
Figure 31 Subtree Scope
Search Scope Figure 31
100 Result Limit
Figure 32 owner
creatorsName Figure 32
description description
Figure 32 member
uniqueMember Figure 32
name cn
Sun One with Multiple Search Bases
In this example, we show how to configure Sun One Directory Server 5.2 with multiple search bases. In Figure 40
, you can see users and domains that are stored on the LDAP server. We want to configure the LDAP integration with Oracle
Service Registry in this way: •
Only users from domain1 and domain10 can log into Oracle Service Registry. LDAP domain2 will be disabled. •
LDAP domain10 will be mapped to the domain3 user group in Oracle Service Registry. Figure 40
shows how users from LDAP are mapped to Oracle Service Registry
Page 117
Sun One with Multiple Search Bases
Figure 39. LDAP Users and Groups
Figure 40. Registry Users
The following table shows how to configure Oracle Service Registry using this scenario.
See Config value
Config Property
Figure 27 ldap:localhost:1000
Java naming provider URL Figure 27
com.sun.jndi.ldap.LdapCtxFactory Initial Naming Factory
Figure 27 uid=JPatroni,ou=people,dc=in,dc=idoox,dc=com
Security Principal
Page 118
Sun One with Multiple Search Bases
See Config value
Config Property
Figure 27 simple
Security Protocol Figure 33
uddi.ldap.domain.delimiter Figure 33
ou= uddi.ldap.domain.prefix
Figure 33 leave empty
uddi.ldap.domain.postfix
Enable domains
Figure 34 domain3
domain name Figure 34
ou=domain10,ou=example,dc=in,dc=idoox,dc=com Distinguished name
Disable domains
Figure 34 ou=domain2,ou=example,dc=in,dc=idoox,dc=com
Distinguished name
User Properties
Figure 29 objectClass=person
Search Filter Figure 29
ou=people,dc=in,dc=idoox,dc=com Search Base
Figure 29 Subtree Scope
Search Scope Figure 29
100 Result Limit
Figure 30 phone
telephoneNumber Figure 30
loginName uid
Figure 30 fullName
cn Figure 30
email mail
Group Properties
Figure 31 objectClass=groupofuniquenames
Search Filter Figure 31
ou=groups,dc=in,dc=idoox,dc=com Search Base
Figure 31 Subtree Scope
Search Scope Figure 31
100 Result Limit
Figure 32 owner
creatorsName Figure 32
description description
Figure 32 member
uniqueMember Figure 32
name cn
Active Directory with Single Search Base
In this example, we show how to configure an Active Directory with a single search base. Figure 41
shows group properties that are stored in the Active Directory. These group properties will be mapped to Oracle Service Registry as shown in
Figure 42 .
Page 119
Active Directory with Single Search Base
Figure 41. LDAP User Group
Figure 42. User Group in Oracle Service Registry
Figure 43 shows user properties that are stored in the Active Directory. These user properties will be mapped to Oracle
Service Registry as shown in Figure 42
.
Page 120
Active Directory with Single Search Base
Figure 43. LDAP User Properties
Page 121
Active Directory with Single Search Base
Figure 44. User Properties in Oracle Service Registry
The following table shows how to configure Oracle Service Registry using this scenario.
See Config value
Config Property
Figure 27 ldap:localhost:389
Java naming provider URL Figure 27
com.sun.jndi.ldap.LdapCtxFactory Initial Naming Factory
Figure 27 CN=userx,OU=root,DC=registry,DC=in,DC=mycompany,DC=com
Security Principal Figure 27
DIGEST-MD5 Security Protocol
User Properties
Figure 29 objectClass=person
Search Filter Figure 29
ou=example,dc=registry,dc=in,dc=mycompany,dc=com Search Base
Figure 29 Subtree Scope
Search Scope Figure 29
100 Result Limit
Figure 30 loginName
sAMAccountName Figure 30
fullName cn
Figure 30 email
mail Figure 30
phone telephoneNumber
Group Properties
Page 122
Active Directory with Single Search Base
See Config value
Config Property
Figure 31 objectClass=group
Search Filter Figure 31
ou=example,dc=registry,dc=in,dc=mycompany,dc=com Search Base
Figure 31 Subtree Scope
Search Scope Figure 31
100 Result Limit
Figure 32 member
member Figure 32
name cn
Figure 32 member
uniqueMember Figure 32
name cn