<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Configure OID with SSL</title>
	<atom:link href="http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html/feed/" rel="self" type="application/rss+xml" />
	<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html</link>
	<description>Oracle Certified Master</description>
	<pubDate>Mon, 01 Dec 2008 19:08:36 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.5</generator>
		<item>
		<title>By: Laurent Schneider</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7732</link>
		<dc:creator>Laurent Schneider</dc:creator>
		<pubDate>Wed, 21 May 2008 19:53:19 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7732</guid>
		<description>well done!</description>
		<content:encoded><![CDATA[<p>well done!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mac</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7731</link>
		<dc:creator>mac</dc:creator>
		<pubDate>Wed, 21 May 2008 19:51:47 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7731</guid>
		<description>I got it.
 I simply used my certificate (used for Server Side Authentication) and on my clients LDAP.ora i configured  macserver::1636. Leaving the non-SSL port empty worked for me. 
Then I just stopped my Non SSL port using oidctl command leaving the SSL port  alone running.

Thanks a lot!</description>
		<content:encoded><![CDATA[<p>I got it.<br />
 I simply used my certificate (used for Server Side Authentication) and on my clients LDAP.ora i configured  macserver::1636. Leaving the non-SSL port empty worked for me.<br />
Then I just stopped my Non SSL port using oidctl command leaving the SSL port  alone running.</p>
<p>Thanks a lot!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mac</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7576</link>
		<dc:creator>mac</dc:creator>
		<pubDate>Thu, 15 May 2008 16:26:49 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7576</guid>
		<description>So it always check on the first port listed which happens to be a non SSL port.
And you said i cannot use the SSL port alone making my configuration macserver:0:1636 

What if I like to use the SSL port (1636 only) since I already have a certificate Ready? and I disallow the use of NON-SSL port?  Is there any way to do this?</description>
		<content:encoded><![CDATA[<p>So it always check on the first port listed which happens to be a non SSL port.<br />
And you said i cannot use the SSL port alone making my configuration macserver:0:1636 </p>
<p>What if I like to use the SSL port (1636 only) since I already have a certificate Ready? and I disallow the use of NON-SSL port?  Is there any way to do this?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Laurent Schneider</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7570</link>
		<dc:creator>Laurent Schneider</dc:creator>
		<pubDate>Thu, 15 May 2008 15:20:55 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7570</guid>
		<description>yes, it always try the first port, and if there is a service listening on this port it will not try port 2... a bit unlucky I admin :&#124;</description>
		<content:encoded><![CDATA[<p>yes, it always try the first port, and if there is a service listening on this port it will not try port 2&#8230; a bit unlucky I admin <img src='http://laurentschneider.com/wordpress/wp-includes/images/smilies/icon_neutral.gif' alt=':|' class='wp-smiley' /></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mac</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7569</link>
		<dc:creator>mac</dc:creator>
		<pubDate>Thu, 15 May 2008 15:11:23 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7569</guid>
		<description>Hi Laurent,

One more thing, whenever I use the the Directory Manager I was usually asked first to which OID server to connect.
So I type in my server name: macserver and the port as 1636 but the status of the server is unavailable. (Even if I change the port to 0 it is unavailable)

This scenario restricts me to do the management of Directory manager remotely using the SSL port.

Any Idea?</description>
		<content:encoded><![CDATA[<p>Hi Laurent,</p>
<p>One more thing, whenever I use the the Directory Manager I was usually asked first to which OID server to connect.<br />
So I type in my server name: macserver and the port as 1636 but the status of the server is unavailable. (Even if I change the port to 0 it is unavailable)</p>
<p>This scenario restricts me to do the management of Directory manager remotely using the SSL port.</p>
<p>Any Idea?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mac</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7567</link>
		<dc:creator>mac</dc:creator>
		<pubDate>Thu, 15 May 2008 14:58:59 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7567</guid>
		<description>Hi, 
Thanks for your reply;
My LDAP.ora  is using
macserver:1389:1636

and with this configuration my TNSPING is failing.

However when I changed the nonssl port to 0 ( macserver:0:1636) or the default (macserver:389:1636) It is working. 

Why is that so? Should this mean that the TNSPING is only using the non-ssl port? 

I want to enable SSL only on my configset1 with the authentication set to Server Authentication and stop the default configset0 with default port (389:636)

How can I do that?</description>
		<content:encoded><![CDATA[<p>Hi,<br />
Thanks for your reply;<br />
My LDAP.ora  is using<br />
macserver:1389:1636</p>
<p>and with this configuration my TNSPING is failing.</p>
<p>However when I changed the nonssl port to 0 ( macserver:0:1636) or the default (macserver:389:1636) It is working. </p>
<p>Why is that so? Should this mean that the TNSPING is only using the non-ssl port? </p>
<p>I want to enable SSL only on my configset1 with the authentication set to Server Authentication and stop the default configset0 with default port (389:636)</p>
<p>How can I do that?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Laurent Schneider</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7506</link>
		<dc:creator>Laurent Schneider</dc:creator>
		<pubDate>Wed, 14 May 2008 18:39:35 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7506</guid>
		<description>what it your ldap.ora?

it must be something like

&lt;code&gt;macserver:1434:1636&lt;/code&gt;

where the second port is SSL. You cannot have ssl only, you may use macserver:0:1636 maybe, but ssl must be second

HTH</description>
		<content:encoded><![CDATA[<p>what it your ldap.ora?</p>
<p>it must be something like</p>
<p><code>macserver:1434:1636</code></p>
<p>where the second port is SSL. You cannot have ssl only, you may use macserver:0:1636 maybe, but ssl must be second</p>
<p>HTH</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: mac</title>
		<link>http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7505</link>
		<dc:creator>mac</dc:creator>
		<pubDate>Wed, 14 May 2008 17:19:50 +0000</pubDate>
		<guid isPermaLink="false">http://laurentschneider.com/wordpress/2007/03/configure-oid-with-ssl.html#comment-7505</guid>
		<description>Hi,

Thanks for sharing this configuration of OID on SSL. I was able to setup my own OID server and I configured my port 1636 for SSL. Since I only want to test my SSL configuration I simply created a self_signed certification using " orapki wallet create -wallet ./ -auto_login". Now my wallet certificate says  "READY".

I did an LDAP bind using the SSL port and the result was "bind Successful"
I used my OID server for net service management so I have my client configured with LDAP.ORA and the parameter for DIRECTORY SERVER was set to use the SSL port 1636. Unfortunately using this port fails me to do a TNSPING to my database.

How should I configure my client to use the SSL to connect to OID? Did I miss something? I am using a Server side Authentication only.</description>
		<content:encoded><![CDATA[<p>Hi,</p>
<p>Thanks for sharing this configuration of OID on SSL. I was able to setup my own OID server and I configured my port 1636 for SSL. Since I only want to test my SSL configuration I simply created a self_signed certification using &#8221; orapki wallet create -wallet ./ -auto_login&#8221;. Now my wallet certificate says  &#8220;READY&#8221;.</p>
<p>I did an LDAP bind using the SSL port and the result was &#8220;bind Successful&#8221;<br />
I used my OID server for net service management so I have my client configured with LDAP.ORA and the parameter for DIRECTORY SERVER was set to use the SSL port 1636. Unfortunately using this port fails me to do a TNSPING to my database.</p>
<p>How should I configure my client to use the SSL to connect to OID? Did I miss something? I am using a Server side Authentication only.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
