SSL for Oracle Portal

6-26 Oracle Fusion Middleware Administrators Guide SSL Enabling in Other Authentication Modes You can do this by running the configureSSL command with a properties file as parameter and specifying an appropriate authentication type parameter value. For details, see the Oracle Fusion Middleware Administrators Guide for Oracle Internet Directory.

6.6.1.3 Enabling Outbound SSL from Oracle Internet Directory to Oracle Database

Two sets of procedures are needed to configure SSL connections from Oracle Internet Directory to Oracle Database: ■ Configure SSL for the Database ■ Configure Outbound Oracle Internet Directory Configure SSL for the Database The steps to configure Oracle Database for SSL are described in Section 6.6.3.1, SSL-Enable Oracle Database. Configure Outbound Oracle Internet Directory Take these steps to configure SSL for outbound traffic from Oracle Internet Directory to Oracle Database: 1. Stop the Oracle Internet Directory server instances whose outbound traffic to the database is to be configured with SSL using this opmnctl syntax: ORACLE_INSTANCEbinopmnctl stopproc ias-component=componentName For example: ORACLE_INSTANCEbinopmnctl stopproc ias-component=oid1 2. Configure Security Socket Layer authentication on the database to which the Oracle Internet Directory server instance is connecting. For details, see Oracle Database Advanced Security Administrators Guide. 3. Restart the databaselistener as required. 4. Start Oracle Internet Directory server instances using this opmnctl syntax: ORACLE_INSTANCEbinopmnctl startproc ias-component=componentName For example: ORACLE_INSTANCEbinopmnctl startproc ias-component=oid1 Note: ■ configureSSL can use defaults for all SSL attributes; see Table 6–5 for details. ■ We could also specify a properties file as a parameter to configureSSL; see Table 6–4 for details. Note: Only the no-authentication mode is supported. Configuring SSL in Oracle Fusion Middleware 6-27

6.6.2 Enabling SSL on Oracle Virtual Directory Listeners

This section explains how to enable SSL for an instance of Oracle Virtual Directory. The Oracle Fusion Middleware Administrators Guide for Oracle Virtual Directory provides additional information on these topics: ■ Configuring SSL for Listeners Using Fusion Middleware Control ■ Configuring SSL for Listeners Using WLST ■ Configuring a Mutual Authentication SSL Connection Between Oracle Virtual Directory and Oracle Internet Directory

6.6.2.1 Enable SSL for Oracle Virtual Directory Using Fusion Middleware Control

The steps to enable SSL are as follows the example illustrates the server-auth mode: 1. Select the Oracle Virtual Directory instance in the navigation pane on the left. 2. Select a keystore to use for the operation by navigating to Oracle Virtual Directory , then Security, then Keystores Choose from the list of keystores that appears. If you need to generate a new keystore, see Section 8.3.3.1, Creating a Keystore Using Fusion Middleware Control for details. 3. To SSL-enable the listener, navigate to Oracle Virtual Directory, then Administration , then Listeners. 4. Select the LDAP SSL Endpoint listener, and click Edit. The Edit Listener page appears: 5. Click Change SSL Settings. 6. On the SSL Settings dialog: