260
Novell eDirectory 8.8 Administration Guide
n
ov
do
cx (e
n)
22
Ju
n
e 20
09
Enabling Encrypted Replication for the Server You Add
If the server you are trying to add is on Linux and UNIX, you can use the ndsconfig -E option to
enable encrypted replication on the server. Refer to the ndsconfig manpages for more information.
If the server you are trying to add is on Windows, you can enable the Enable Encrypted Replication
option in the installation wizard.
If the server you are trying to add is on platforms other than Linux and UNIX, you can enable
encrypted replication through iManager or LDAP. Refer to
Section 11.2.1, “Enabling Encrypted
Replication,” on page 251
for more information.
11.2.3 Synchronization and Encrypted Replication
If one replica is enabled for encrypted replication and the configuration changes are not
synchronized with the other servers, replication happens in the encrypted form between the replicas.
The replicas that are not synced with the configuration changes for encrypted replication continue to
sync in clear text.
Even if the encrypted replication configuration has not been synchronized across the replicas, the
replication between them will happen in the encrypted form.
11.2.4 Viewing the Encrypted Replication Status
You can view the encrypted replication status through iMonitor as follows:
1
In iMonitor, click
Agent Synchronization
in the Assistant frame.
2
Click
Replica Synchronization
for the partition you want to view.
The replica status information is displayed. The
Encryption Status
field displays whether the
link from the replica to which you are currently connected is encrypted or not.
Basically, there are three scenarios in encryption replication (ER):
ER enabled at partition level:
The replica to which you are connected to shows
Encryption State
is enabled.
To find out which replica you are connected to, in the replica frame, the one that is not
hyper linked is the one you are connected to. If you browse to the other replicas it shows
that the
Encryption State
is also marked Enabled.
ER enabled at replica level:
You have enabled ER for all replicas from one particular
replica (that is, One to All.) In this case, when you are connected to that replica, its
Encryption State
is marked Enabled.
ER enabled/disabled for a combination of replicas:
ER enabled/disabled for one
combination of replicas - You have enabled ER for the whole partition but not for a
selected set of servers or vice versa.
For example, you have enabled ER for partition A that has three replicas 1, 2, and 3 and
disabled ER for 1 <--> 3. In this case, if you are connected to replica 1, the
Encryption
State
is displayed as:
Server 1 Enabled
Server 2
Summary of Contents for EDIRECTORY 8.8 SP5
Page 4: ...4 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 72: ...72 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 118: ...118 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 130: ...130 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 188: ...188 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 222: ...222 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 240: ...240 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 264: ...264 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 290: ...290 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 322: ...322 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 540: ...540 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 548: ...548 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...
Page 616: ...616 Novell eDirectory 8 8 Administration Guide novdocx en 22 June 2009...