Focal Point
Secure LDAP Configuration

This topic can be found at:
https://forums.informationbuilders.com/eve/forums/a/tpc/f/7971057331/m/1361069891

November 30, 2006, 12:32 PM
Aaron M. Reiff
Secure LDAP Configuration
Howdy, all! Trying to configure the Webfocus 7.1x server to use secure LDAP - I've already gotten regular LDAP working. I got the certificate, loaded it into my keystore and changed the port on the LDAP configuration page. When I try to log into the MRE, the system hangs. When I switch the port back to regular LDAP (389) I have no problems. I read the security documentation up and down but found nothing specifically outlining steps for LDAP. Anyone know where I can find anything on this subject?


Aaron M Reiff
Prod - WebFocus 7.66
Prod - ReportCaster 5
Win Server 2K/ISAPI/MSSQL Server 2K
--------------------
Test - WebFocus 7.66
Win Server 2003/TomCat/MSSQL Server 2K
--------------------
Dev - WebFocus 7.66
Win Server 2003/TomCat/MSSQL Server 2K
December 01, 2006, 10:13 AM
Kerry
Hi Aaron,

In order to set up the WebFOCUS reporting security with secure LDAP, go from the reporting server web console:

Workspace / Access Control / Security mode / LDAP

set ldap_secure_connection to yes.

This is available in version 7.1.3 and above.


Hope this helps. Big Grin

Cheers,

Kerry


Kerry Zhan
Focal Point Moderator
Information Builders, Inc.
December 01, 2006, 01:45 PM
Aaron M. Reiff
Kerry

This just appeared to set the server administration console security to LDAP. I'm trying to log into the MRE. Is this setting supposed to cover that as well?


Aaron M Reiff
Prod - WebFocus 7.66
Prod - ReportCaster 5
Win Server 2K/ISAPI/MSSQL Server 2K
--------------------
Test - WebFocus 7.66
Win Server 2003/TomCat/MSSQL Server 2K
--------------------
Dev - WebFocus 7.66
Win Server 2003/TomCat/MSSQL Server 2K
December 01, 2006, 02:55 PM
newtofocus
Please make sure that the certificate is in the correct path. It should be in \\jdk\jre\lib\security. Also turning on the servlet trace would help you figure out the problem.


WF7.1.4 Prod/Test, MRE, self serve, DM
December 04, 2006, 03:39 PM
Kerry
Hi Aaron,

Suggestion from our internal expert is that, for LDAP security with MRE, it is better to open a case and work from there. You may need to upgrade to 7.x. To open a case, please either call at 1-800-736-6130, or access the online system InfoResponse at http://techsupport.ibi.com. Here is a list of information to be ready when you call: http://techsupport.ibi.com/before_you_call.jsp.

Another good starting point would be the WebFOCUS Security and Administration. For the release you are currently using, the following manual may be of interest:

WebFOCUS Security and Administration 5.2.3
You will need to have an InfoResponse username/password to access the manual.

Hope this helps. Smiler

Cheers,

Kerry


Kerry Zhan
Focal Point Moderator
Information Builders, Inc.
December 05, 2006, 11:08 AM
Aaron M. Reiff
Kerry - Thanks for the info. As I stated above, we are already upgrading to 7.x and have found nothing in the Security and Administration 7.x guide. I'll try opening a case. Thanks!


Aaron M Reiff
Prod - WebFocus 7.66
Prod - ReportCaster 5
Win Server 2K/ISAPI/MSSQL Server 2K
--------------------
Test - WebFocus 7.66
Win Server 2003/TomCat/MSSQL Server 2K
--------------------
Dev - WebFocus 7.66
Win Server 2003/TomCat/MSSQL Server 2K