Sun Java System Directory Server Enterprise Edition 6.3 Migration Guide

LDAP Server Property

In Directory Proxy Server 5, the ids-proxy-sch-LDAPServer property is used to define the backend LDAP servers to which Directory Proxy Server sends requests. In Directory Proxy Server 6.3, this functionality is achieved by using LDAP data sources. You can set properties for LDAP data sources by using the Directory Service Control Center or by using the command line. For more information, see Creating and Configuring LDAP Data Sources in Sun Java System Directory Server Enterprise Edition 6.3 Administration Guide.

In iPlanet Directory Access Router 5.0 (IDAR) these configuration attributes are stored under ids-proxy-con-Name=server-name,ou=properties,ou=pd2,ou=iDAR,o=services. In Directory Proxy Server 5.2, these configuration attributes are stored under ou=groups,cn=user-defined-name,ou=dar-config,o=NetscapeRoot.

The following table maps the attributes of the ids-proxy-sch-LDAPServer object class to the corresponding data source properties in Directory Proxy Server 6.3. Data sources provide additional functionality that was not provided in Directory Proxy Server 5. Not all data source properties are listed here. For a list of all the properties that can be configured for a data source, run the following command:

$ dpconf help-properties | grep ldap-data-source
Table 6–15 Mapping of ids-proxy-sch-LDAPServer Attributes to Data Source Properties

Directory Proxy Server 5 Attribute 

Directory Proxy Server 6.3 Property 

ids-proxy-con-host

ldap-address

ids-proxy-con-port

ldap-port

ids-proxy-con-sport

ldaps-port

ids-proxy-con-supported-version

No equivalent 

Directory Proxy Server 6.3 supports LDAP v3 backends for both version 2 and version 3 clients. 

Directory Proxy Server 6.3 supports the proxy authorization control version 1 and version 2. 

ids-proxy-con-use-version

No equivalent 

Directory Proxy Server 6.3 supports LDAP v3 backends for both v2 and v3 clients. 

Directory Proxy Server 6.3 supports the proxy authorization control version 1 and version 2. 

ids-proxy-con-tcp-no-delay

use-tcp-no-delay

ids-proxy-con-link-security-policy

ssl-policy

ids-proxy-con-x509cert-subject

No equivalent. Directory Proxy Server 6.3 does not check the subject of the certificate provided by the backend server. 

ids-proxy-con-keepalive-interval

This functionality is achieved by setting the following properties of the LDAP data source: 

monitoring-bind-timeout

monitoring-entry-timeout

monitoring-inactivity-timeout

monitoring-interval

For information about setting LDAP data source properties, see To Configure an LDAP Data Source in Sun Java System Directory Server Enterprise Edition 6.3 Administration Guide.