2010年 08月 27日
eDirectory の SAS, SSL の修復
NetWare では PKIDIAG と同じ機能を持ちます。
次のコマンドを実行します。
myserver:/etc/sysconfig # ndsconfig upgrade
[1] Instance at /etc/opt/novell/eDirectory/conf/nds.conf: myserver.OU=System.O=islandcenter.islandcenter
Upgrading Novell eDirectory server with the following parameters, Please wait...
Tree Name : islandcenter
Server DN : myserver.OU=System.O=islandcenter
Configuration File : /etc/opt/novell/eDirectory/conf/nds.conf
Instance Location : /var/opt/novell/eDirectory/data
DIB Location : /var/opt/novell/eDirectory/data/dib
Checking if server is ready to service requests... Done
Enter admin name with context[admin.org]:.admin.islandcenter
Enter the password for .admin.islandcenter:
Performing eDirectory health check... Done
For more details view health check logfile: /var/opt/novell/eDirectory/log/ndscheck.log
Extending schema... Done
For more details view schema extension logfile: /var/opt/novell/eDirectory/log/schema.log
Configuring HTTP service... Done
Configuring LDAP service... Done
Configuring SNMP service... Done
Configuring SAS service... Done
Associating certificate with the NCP server object... INFO: Server is already associated with a certificate.
Done
Configuring NMAS service... Done
Configuring SecretStore...
INFO: SecretStore extensions have already been added to the server.Done
Configuring LDAP Server with default SSL CertificateDNS certificate...
INFO: LDAP Server is already associated with SSL CertificateDNS certificate.
Done
Done
Triggering the 'External Reference Check' process... Done
The instance at /etc/opt/novell/eDirectory/conf/nds.conf is upgraded successfully.
myserver:/etc/sysconfig #

デフォルトの証明書(KMO)の有効期間が2年なのでうっかり失効して慌てたりすることが多々あります・・・