Configure a secure connection to the EIM domain controller

This information explains how to setup a secure connection to a domain controller with SSL or TLS.

You may want to use Secure Sockets Layer (SSL) or Transport Layer Security Protocol (TLS) to establish a secure connection to the Enterprise Identity Mapping (EIM) domain controller to protect the transmission of EIM data.

To configure SSL or TLS for EIM, you must complete these tasks:

  1. If necessary, use Digital Certificate Manager (DCM) to create a certificate for the directory server to use for SSL.
  2. Enable SSL for the local directory server that hosts the EIM domain controller.
  3. Update EIM Configuration properties to specify that the iSeries™ server uses a secure SSL connection. To update the EIM Configuration properties, complete these steps:
    1. In iSeries Navigator, select the system on which you configured EIM and expand Network > Enterprise Identity Mapping.
    2. Right-click Configuration and select Properties.
    3. On the Domain page, select Use secure connection (SSL or TLS), specify the secure port on which your directory server listens or accept the default value of 636 in the Port field, and click OK.
  4. Update EIM Domain properties for each EIM domain to specify that EIM uses an SSL connection when managing the domain through iSeries Navigator. To update the EIM Domain properties, complete these steps:
    1. In iSeries Navigator, select the system on which you configured EIM and expand Network > Enterprise Identity Mapping > Domain Management.
    2. Select the EIM domain in which you want to work.
    3. Right-click the EIM domain to which you are now connected and select Properties.
    4. On the Domain page, select Use secure connection (SSL or TLS), specify the secure port on which your directory server listens or accept the default value of 636 in the Port field, and click OK.