Sun Java System Instant Messaging 7.2 Administration Guide

Using a Directory That Does not Permit Anonymous Bind

By default, Instant Messaging server performs an anonymous search of the LDAP directory. However, it is common for sites to prevent anonymous searches in their directory so that any random person cannot do a search and retrieve all the information. If your site’s directory is configured to prevent such anonymous searches, and you didn't provide bind credentials during post-installation configuration, you need to configure the Instant Messaging server needs with a user ID and password it can use to bind and perform searches.

Use the iim_ldap.usergroupbinddn and iim_ldap.usergroupbindcred parameters to configure the necessary credentials.

ProcedureTo Configure Bind Credentials for the Instant Messaging Server

  1. Open iim.conf.

    See iim.conf File Syntax for instructions on locating and modifying iim.conf.

  2. Specify the DN you want the server to use to bind to the directory as the value for iim_ldap.usergroupbinddn.


    iim_ldap.usergroupbinddn=bind-DN
    
  3. Specify the password that corresponds to the bind DN as the value for iim_ldap.usergroupbindcred


    iim_ldap.usergroupbindcred=password
    
  4. Save and close the file.