Invoking Oracle Directory Services Manager

8-8 Oracle Fusion Middleware Administrators Guide for Oracle Virtual Directory

8.3.6.1 Logging in to the Directory Server from Oracle Directory Services Manager

You log in to a directory server’s non-SSL port from Oracle Directory Services Manager as follows:

1. Click Connect to a directory at the top of the Oracle Directory Services Manager

Welcome screen to open dialog box containing the following sections: ■ Live Connections–current connections that you can return to. ■ Disconnected Connections–a list of directory servers you have connected to and then disconnected from. Oracle Directory Services Manager saves information about connections that you previously used and lists them, by optional Name or by server, so that you can select them again. ■ New Connections–used to initiate a new connection If you are SSO-authenticated, you might see an additional section, refer to Connecting to an SSO-Enabled Directory as an SSO-Authenticated User on page 8-9 for more information.

2. Select OID or OVD.

3. Optionally, enter an alias name in the Name field to identify the connection. This

name appears in the list of live connections as described in 1 to enable you to quickly reconnect to it after ending the current Oracle Directory Services Manager session.

4. Enter the name of server where Oracle Internet Directory or Oracle Virtual

Directory is running in the Name field.

5. Enter the non-SSL port in the Port field. For Oracle Virtual Directory, enter the

non-SSL port for the Admin Listener. For Oracle Internet Directory, enter the non-SSL LDAP port.

6. Deselect SSL Enabled.

7. Enter the name of the user who has Oracle Directory Services Manager

Administrator access usually cn=orcladmin and password.

8. Select the Start Page you want to go to after logging in.

9. Click Connect.

After you have logged in to an Oracle Internet Directory or Oracle Virtual Directory server, you can use the navigation tabs to select other pages. The Oracle Directory Services Manager home pages for Oracle Internet Directory and Oracle Virtual Directory list version information about Oracle Directory Services Manager itself, as well as the directory and adapters. It also lists the existing configured adapters and listeners for Oracle Virtual Directory.

8.3.6.2 Logging Into the Directory Server from Oracle Directory Services Manager Using SSL

When you log in to the server’s SSL port, you follow the procedure in Logging in to the Directory Server from Oracle Directory Services Manager on page 8-8, except that you specify the SSL port in Step 4 and select SSL Enabled in Step 6. Specifically, you enter the SSL port for the Admin Listener for Oracle Virtual Directory, or you enter the SSL LDAP port for Oracle Internet Directory. Then, after you click Connect in Step 9, you might be presented with a certificate, depending on the type of SSL See Also: Cannot Invoke Oracle Directory Services Manager in Appendix D, Troubleshooting Oracle Virtual Directory. Getting Started with Administering Oracle Virtual Directory 8-9 authentication. The following sections provide information on handling the certificate for each supported SSL authentication type: ■ SSL No Authentication ■ SSL Server Only Authentication

8.3.6.2.1 SSL No Authentication If the directory server is using SSL No Authentication

mode, you are not presented with a certificate. SSL No Authentication provides data confidentiality and integrity, but no authentication using X.509 certificates.

8.3.6.2.2 SSL Server Only Authentication If the directory server is using SSL Server

Authentication Only Mode, which is the default for Oracle Virtual Directory, you are presented with the server’s certificate when you click Connect in Step 9. After manually verifying the authenticity of the server certificate, you can accept the certificate permanently, accept the certificate for the current session only, or reject the certificate. If you accept the certificate permanently, the certificate is stored in the Oracle Directory Services Manager’s Java Key Store JKS. From then on, you will not be prompted to accept the certificate when you connect to that server using that particular Oracle Directory Services Manager URL. If you accept the certificate only for the current session, you are prompted to accept or reject the certificate every time you connect to the server. If you reject the certificate, Oracle Directory Services Manager closes the connection to the server. Refer to Managing Oracle Directory Services Manager’s Key Store for additional information.

8.3.6.3 Connecting to an SSO-Enabled Directory as an SSO-Authenticated User

If you have already been authenticated by the Single Sign-On server, Oracle Directory Services Manager allows you to connect to SSO-enabled directories without logging in, provided you have an entry in that directory. When you access the Oracle Directory Services Manager Welcome page, if you have an entry in only one SSO-enabled directory, Oracle Directory Services Manager connects you to it. If you have entries in more than one SSO-enabled directory Oracle Directory Services Manager allows you to select a directory you want to connect to, as follows. Click the small arrow to the right of the label Click to connect to a directory. In this case, the dialog box contains an extra section, listing SSO-enabled directories to which you are authorized to connect. Select the directory you want. Oracle Directory Services Manager connects you without requesting a username or password. If the port you connected to is an SSL port, you still must perform the appropriate steps in SSL No Authentication or SSL Server Only Authentication . Note: SSO-authenticated users must be members of the Oracle Virtual Directorys admin group to manage Oracle Virtual Directory. Even with a valid DN, users cannot manage Oracle Virtual Directory unless they are in the admin group. The container DN under which Oracle Directory Services Manager searches for a users DN can be from any adapter configured in Oracle Virtual Directory.