SSL is recommended if you have selected the Simple authentication mechanism because Simple authentication passes passwords in clear text.
Table 9-3 Recommended Security Configuration for the Simple Authentication Method
|
Parameter |
Description |
|---|---|
|
Authentication ID |
The account the driver uses to access the domain data. Use LDAP format for the . For example, cn=IDMadmin,cn=Users,dc=domain,dc=com |
|
Authentication Context |
IP address of domain controller. |
|
Password |
The password for the specified . |
|
Digitally sign communications |
Select . |
|
Digitally sign and seal communications |
Select . |
|
Use SSL for encryption |
Select . SSL requires that the Microsoft server running the driver shim imports the domain controller’s server certificate imported. For more information, see Securing Windows 2000 Server. |