Skip Navigation Links | |
Exit Print View | |
Oracle Directory Server Enterprise Edition Administration Guide 11g Release 1 (11.1.1.5.0) |
Part I Directory Server Administration
2. Directory Server Instances and Suffixes
Quick Procedure for Creating Server Instances and Suffixes
Starting, Stopping, and Restarting a Directory Server Instance
To Start, Stop, and Restart Directory Server
To List All the Running Instances
Disabling or Enabling a Suffix
To Disable then Enable a Suffix
Setting Referrals and Making a Suffix Read-Only
To Set Referrals to Make a Suffix Read-Only
Importing Data From an LDIF File
To Load Sample Data in Directory Server Instance
Adding, Modifying, and Deleting Entries in Bulk
To Add, Modify and Delete Entries in Bulk
3. Directory Server Configuration
6. Directory Server Access Control
7. Directory Server Password Policy
8. Directory Server Backup and Restore
9. Directory Server Groups, Roles, and CoS
10. Directory Server Replication
13. Directory Server Attribute Value Uniqueness
15. Directory Server Monitoring
Part II Directory Proxy Server Administration
16. Directory Proxy Server Tools
17. Directory Proxy Server Instances
19. Directory Proxy Server Certificates
20. Directory Proxy Server Load Balancing and Client Affinity
21. Directory Proxy Server Distribution
22. Directory Proxy Server Virtualization
23. Virtual Data Transformations
24. Connections Between Directory Proxy Server and Back-End LDAP Servers
25. Connections Between Clients and Directory Proxy Server
26. Directory Proxy Server Client Authentication
27. Directory Proxy Server Logging
28. Directory Proxy Server Monitoring and Alerts
Part III Directory Service Control Center Administration
This section shows how to create and delete a Directory Server instance.
Before you can administer data, you must create a Directory Server instance by using command-line tools or the browser interface Directory Service Control Center (DSCC). In DSCC, a Directory Server instance is often referred to simply as a “Directory Server”.
When you create a Directory Server instance, the files and directories required for your Directory Server are created in the instance-path that you specify.
You can use DSCC to perform this task. For information, see Directory Service Control Center Interface and the DSCC online help.
If you use DSCC to create a new server instance, you can choose to copy some or all server configuration settings from an existing server.
The dsadm command enables you to manage a Directory Server instance and the files belonging to that instance on the local host. The command does not let you administer servers over the network, but only directly on the local host. The dsadm command has subcommands for each key management task. For a complete description, see dsadm(1M).
The dsconf command is an LDAP client. The command enables you to configure nearly all server settings on a running Directory Server instance from the command line. You can configure settings whether the server is on the local host or another host that is accessible across the network. The dsconf command has subcommands for each key configuration task. For a complete description, see dsconf(1M).
$ dsadm create instance-path
You are prompted to set a password for the Directory Manager for this server.
To specify a non-default port number for the server instance, or any other parameter, see the dsadm(1M) man page.
For example, to create a new instance in the directory /local/dsInst, use this command:
$ dsadm create /local/dsInst Choose the Directory Manager password: Confirm the Directory Manager password: Use 'dsadm start /local/dsInst' to start the instance
The instance is created in a directory on the local file system and not a network file system.
$ dsadm info instance-path
For example:
$ dsadm info /local/dsInst Instance Path: /local/dsInst Owner: user1(group1) Non-secure port: 1389 Secure port: 1636 Bit format: 64-bit State: Running Server PID: 22555 DSCC url: - SMF application name: - Instance version: D-A00
|
$ dsadm start instance-path
Note - The server is running but does not contain data or a suffix. Use dsconf to create a suffix.
Access DSCC using http://hostname:8080/dscc7 or https://hostname:8181/dscc7 as per your application server configuration.
$ dsccreg add-server -h hostname --description "My DS" /local/dsInst Enter DSCC administrator's password: /local/dsInst is an instance of DS Enter password of "cn=Directory Manager" for /local/dsInst: This operation will restart /local/dsInst. Do you want to continue ? (y/n) y Connecting to /local/dsInst Enabling DSCC access to /local/dsInst Restarting /local/dsInst Registering /local/dsInst in DSCC on hostname.
See dsccreg(1M) for more information about the command.
$ dsconf pwd-compat -h host -p port to-DS6-migration-mode ## Beginning password policy compatibility changes . ## Password policy compatibility changes finished. Task completed (slapd exit code: 0). $ dsconf pwd-compat -h host -p port to-DS6-mode ## Beginning password policy compatibility changes . ## Password policy compatibility changes finished. Task completed (slapd exit code: 0).
The above action should be performed in the specified sequence.
For more information about password policies compatibilities, see Password Policy in Oracle Directory Server Enterprise Edition Upgrade and Migration Guide.
Before you delete the server instance, you must prepare the instance for deletion. Refer to the following procedure to delete a server instance successfully:
You can use DSCC to perform this task. For information, see Directory Service Control Center Interface and the DSCC online help.
$ dsadm stop [--force] instance-path
$ dsccreg remove-server /local/dsInst Enter DSCC administrator's password: /local/dsInst is an instance of DS Enter password of "cn=Directory Manager" for /local/dsInst: This operation will restart /local/dsInst. Do you want to continue ? (y/n) y Unregistering /local/dsInst from DSCC on localhost. Connecting to /local/dsInst Disabling DSCC access to /local/dsInst Restarting /local/dsInst
For details, see the dsccreg(1M) man page.
|
$ dsadm delete instance-path
Caution - This command removes everything, under the instance-path directory. If the instance has been enabled as a service, or if the instance is started automatically at system startup, dsadm delete requires root access. |