252
Novell eDirectory 8.8 Administration Guide
no
vd
ocx
(e
n)
6 Ap
ril 20
07
Enabling Encrypted Replication for the Server You Add
If the server you are trying to add is on Linux and UNIX, you can use the ndsconfig -E option to
enable encrypted replication on the server. Refer to the ndsconfig manpages for more information.
If the server you are trying to add is on Windows, you can enable the Enable Encrypted Replication
option in the installation wizard.
If the server you are trying to add is on platforms other than Linux and UNIX, you can enable
encrypted replication through iManager or LDAP. Refer to
Section 10.2.1, “Enabling Encrypted
Replication,” on page 243
for more information.
10.2.3 Synchronization and Encrypted Replication
If one replica is enabled for encrypted replication and the configuration changes are not
synchronized with the other servers, replication happens in the encrypted form between the replicas.
The replicas that are not synced with the configuration changes for encrypted replication continue to
sync in clear text.
Even if the encrypted replication configuration has not been synchronized across the replicas, the
replication between them will happen in the encrypted form.
10.2.4 Viewing the Encrypted Replication Status
You can view the encrypted replication status through iMonitor as follows:
1
In iMonitor, click
Agent Synchronization
in the Assistant frame.
2
Click
Replica Synchronization
for the partition you want to view.
The replica status information is displayed. The
Encryption Status
field displays whether the
link from the replica to which you are currently connected is encrypted or not.
Basically, there are three scenarios in encryption replication (ER):
ER enabled at partition level:
The replica to which you are connected to shows
Encryption State
is enabled.
To find out which replica you are connected to, in the replica frame, the one that is not
hyper linked is the one you are connected to. If you browse to the other replicas it shows
that the
Encryption State
is also marked Enabled.
ER enabled at replica level:
You have enabled ER for all replicas from one particular
replica (that is, One to All.) In this case, when you are connected to that replica, its
Encryption State
is marked Enabled.
ER enabled/disabled for a combination of replicas:
ER enabled/disabled for one
combination of replicas - You have enabled ER for the whole partition but not for a
selected set of servers or vice versa.
For example, you have enabled ER for partition A that has three replicas 1, 2, and 3 and
disabled ER for 1 <--> 3. In this case, if you are connected to replica 1, the
Encryption
State
is displayed as:
Server 1 Enabled
Server 2
Server 3 Disabled
Summary of Contents for EDIRECTORY 8.8 SP2
Page 4: ...novdocx en 6 April 2007...
Page 116: ...116 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 128: ...128 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 255: ...256 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 406: ...408 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 563: ...566 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 573: ...576 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...
Page 601: ...604 Novell eDirectory 8 8 Administration Guide novdocx en 6 April 2007...