Previous topic |
Next topic |
Contents |
Contact z/OS |
Library |
PDF
Establishing a secure connection with LDAP (optional) z/OS Cryptographic Services PKI Services Guide and Reference SA23-2286-00 |
|
You can optionally set up a secure connection between PKI Services and the LDAP server to prevent the bind password from flowing in the clear. The secure connection uses the Secure Sockets Layer (SSL) and Transport Layer Security (TLS) protocols, provided by z/OS® Cryptographic Services System SSL services, to maintain an encrypted communications path between PKI Services and the LDAP server. For information on how to configure LDAP to use a secure connection, see the topic on using SSL/TLS protected communications in z/OS IBM Tivoli Directory Server Administration and Use for z/OS. If you are using a secure connection with LDAP, the RACF® administrator needs to add a certificate
to the PKI Services key
ring for validating the LDAP server:
|
Copyright IBM Corporation 1990, 2014
|