Difference between revisions of "PKI LDAP"

From Dogtag
Jump to: navigation, search
m (Connection)
m (Authentication)
(3 intermediate revisions by the same user not shown)
Line 27: Line 27:
* [[DS SSL]]
* [[DS SSL]]
* [[PKI LDAP Connection]]
* [[PKI LDAP Connection]]
= Authentication =
See [[DS Authentication]].
= Authorization =
See [[DS Authorization]].
= Queries =
= Queries =
See [[PKI LDAP Queries]].
See [[PKI LDAP Queries]].
= Logging =
See [[PKI LDAP Logging]].
= References =
= References =

Latest revision as of 02:28, 12 July 2019


PKI server uses an LDAP server as a backend to store the data and some of the server configuration. Currently the only supported LDAP server is 389 DS. Each PKI subsystem requires an DS instance. The DS instance can be shared among multiple subsystems and the subsystems will use separate backend databases. The DS instance can be local or remote.

Deployment Scenarios

See DS Deployment Scenarios.


See DS Instance Setup.

To restart DS instance:

$ systemctl restart dirsrv@pki-tomcat.service

DS Backend



See PKI LDAP Queries.