Reconfiguring the Oracle Password Filter for Microsoft Active Directory

19-20 Oracle Fusion Middleware Administrators Guide for Oracle Directory Integration Platform

1. Open in a text editor the prepAD.ldif file, which is located in the directory where

you installed the Oracle Password Filter for Microsoft Active Directory. Delete the entries and container listed in the prepAD.ldif file from your Microsoft Active Directory installation.

2. Click the Windows Start menu and select Run.

The Run dialog box opens.

3. Enter regedt32 in the Run dialog box and click OK.

The Registry Editor opens. 4. Navigate to the following registry key: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\orclidmpwf\OIDConfig 5. Note the container assigned to the OidSinkNode entry. The default value assigned to this entry is cn=Products,cn=OracleContext.

6. Select Control Panel from the Windows Start menu. The Control Panel window

displays. In the Control Panel window, select Add or Remove Programs. The Add or Remove Programs window displays.

7. In the Add or Remove Programs window, select Oracle Password Filter for

Microsoft Active Directory from the list of currently installed programs, and then click ChangeRemove. The Welcome page of the Oracle Password Filter for Microsoft Active Directory installation program displays, informing you that the program will remove the Oracle Password Filter for Microsoft Active Directory.

8. On the Welcome page, click Next. The Summary page displays and lists the path

from where the Oracle Password Filter for Microsoft Active Directory will be removed.

9. On the Summary page, click Next. The Restart Required page appears notifying

you that removing the Oracle Password Filter for Microsoft Active Directory requires a restart at the end of the deinstallation process.

10. On the Restart Required page, click Next. A final page appears informing you that

you must restart your computer. Click Next to restart your computer. 11. On the system where Oracle Internet Directory is installed, use Oracle Directory Services Manager or ldapdelete to delete the following entry and its subentries in the cn=PWSync,OidSinkNode container: CN=Active_Directory_Host, cn=PWSync,OidSinkNode 12. Create a new text file named deleteOIDSchema.ldif that contains the following entries: dn: cn=subschemasubentry changetype: modify delete: objectclasses objectclasses: 2.16.840.1.113894.8.2.1002 NAME adconfig SUP top STRUCTURAL MUST cn MAY ADBaseDN deleteomain ADHost ADPort Log ResourceFilePath dn: cn=subschemasubentry changetype: modify delete: objectclasses objectclasses: 2.16.840.1.113894.8.2.1001 NAME oidconfig SUP top STRUCTURAL MUST cn MAY OIDBaseDN OIDHost OIDPort passwdattr MSDEDSN OIDObjectClass OIDLog ExcludeListDN MAX_RETRIES OIDSSLType OIDWalletLoc OidSinkNode SleepTime stop ConfigSleepTime Deploying the Oracle Password Filter for Microsoft Active Directory 19-21 OIDConfigSynchKey dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1001 NAME OIDBaseDN DESC OID Base Search DN SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1002 NAME OIDHost DESC OID Host SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1003 NAME OIDPort DESC OID Port SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1004 NAME passwdattr DESC Pass Attribute SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1005 NAME MSDEDSN DESC DB DSN SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1006 NAME OIDObjectClass DESC AD Object Class SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1007 NAME OIDLog DESC OID Log SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1008 NAME ExcludeListDN DESC Exclude List SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1009 NAME MAX_RETRIES DESC Max Retries SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1010 NAME OIDSSLType DESC OID SSL 19-22 Oracle Fusion Middleware Administrators Guide for Oracle Directory Integration Platform Type SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1011 NAME OIDWalletLoc DESC OID Wallet Loc SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1012 NAME OidSinkNode DESC Config Sync Node SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1013 NAME SleepTime DESC Sleep Time for store thread SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1014 NAME stop DESC Stop flag for store thread SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1015 NAME ConfigSleepTime DESC Sleep Time for config thread SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 22.16.840.1.113894.8.1.1016 NAME OIDConfigSynchKey DESC Config Sync key SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1017 NAME ADBaseDN SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1018 NAME ADPort SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1019 NAME ADHost SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1020 NAME ADDomain SYNTAX Deploying the Oracle Password Filter for Microsoft Active Directory 19-23 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1021 NAME Log SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 dn: cn=subschemasubentry changetype: modify delete: attributetypes attributetypes: 2.16.840.1.113894.8.1.1022 NAME ResourceFilePath SYNTAX 1.3.6.1.4.1.1466.115.121.1.15 13. Use an ldapmodify command to load the deleteOIDSchema.ldif file: ORACLE_HOMEbinldapmodify -h OID host -p OID port \ -D binddn -q -f deleteOIDSchema.ldif Note: You will be prompted for the password. 19-24 Oracle Fusion Middleware Administrators Guide for Oracle Directory Integration Platform