Administrator Server Configuration: LDAP Authentication Realm Details (Screen 3)

Field/Button Description
LDAP Realm
User Search Scope Subtree Whether to search the entire subtree starting at the base DN, or search only the nodes one level below the base DN.

Default: Selected

Security Authentication Value of Simple Authentication and Security Layer (SASL) authentication protocol to use. Values are implementation-dependent. Some possible values are:
  • Simple - Username and password are required.
  • None - No log-in is performed, any other settings are ignored, and the LDAP client is anonymous.
  • md-5

Default: Simple

LDAP Server is SSL-enabled Indicate that the LDAP server is enabled for SSL. When checked, the SSL Trust Store Configuration fields are enabled.
Test Connection Verifies that TIBCO Configuration Tool can connect to the server using the information supplied on this page.
SSL Trust Store Configuration:
Create a Trust Store Invokes a wizard to obtain certificates from the specified server and create the trust store:
  1. Click Create a Trust Store.
  2. Specify a password to protect the keystore and click Next. The SSL setup wizard displays the certificates imported from the server.
  3. In the Trust Selected Certifications area, select the certificates to trust and click Finish. The wizard fills in the Keystore Location, Keystore Type and Keystore Password fields.

    If you do not click Create a Trust Store, you must specify the details of an existing trust store that can be used to establish the trust relationship with the server.

Trust Store Location Either:
  • the location in which the created trust store will be stored, or
  • the location of the trust store to be uploaded to ActiveMatrix Administrator. (You can either type this directly or click Browse to find it.)
Trust Keystore Type The type of the created or uploaded trust store: JKS or JCEKS.

Default: JKS

Trust Store Password Either:
  • the password specified in the Create a Trust Store wizard, or
  • the password required to access the trust store that is to be uploaded.