HP OpenVMS Enterprise Directory Version 5.6 ECO1 Read Before Installing HP OpenVMS Enterprise Directory Version 5.6 ECO1 is an upgrade of HP OpenVMS Enterprise Directory Version 5.6 or earlier ver- sions. Read the Release Notes and Installation Guide before installing HP OpenVMS Enterprise Directory Version 5.6 ECO1. Prerequisite Software Before you install the HP OpenVMS Enterprise Directory Ver- sion 5.6 ECO1 ensure that you have the following installed and working on your system: o OpenVMS Alpha V7.3-2 or later or o OpenVMS Integrity servers V8.2 or later For the HP OpenVMS Enterprise Directory Version 5.6 ECO1 on OpenVMS Alpha V7.3-2 or later (excluding Topaz Alpha), the following optional softwares can be installed on your system: 1. For LDAP or X.500 protocols that use RFC1006 connections, HP TCP/IP Services V5.4 ECO5 or later for OpenVMS Alpha. 2. For X.500 protocols over an OSI network, DECnet-Plus for OpenVMS Alpha V7.3-2 or later including the application option (OSAK). Note: At least one of the above-mentioned optional softwares need to be installed for HP OpenVMS Enterprise Directory to work. 3. For LDAPv3 over SSL, HP SSL V1.1 or later for OpenVMS Alpha. For the HP OpenVMS Enterprise Directory Version 5.6 ECO1 on OpenVMS Alpha V8.2 or later, the following optional softwares can be installed on your system: 1. For LDAP or X.500 protocols that use RFC1006 connections, HP TCP/IP Services V5.5 or later for OpenVMS. 2. For X.500 protocols over an OSI network, DECnet-Plus for OpenVMS Alpha V8.2 or later including the application option (OSAK). Note: At least one of the above-mentioned optional softwares need to be installed for HP OpenVMS Enterprise Directory to work. 3. For LDAPv3 over SSL, HP SSL V1.1 or later for OpenVMS. For the HP OpenVMS Enterprise Directory Version 5.6 ECO1 on OpenVMS Integrity servers V8.2 or later, the following optional softwares can be installed on your system: 1. HP TCP/IP Services V5.5 or later for OpenVMS Integrity servers. 2. For X.500 protocols over an OSI network, DECnet-Plus V8.2 or later for OpenVMS Integrity servers including the application option (OSAK). Note: At least one of the above-mentioned optional softwares need to be installed for HP OpenVMS Enterprise Directory to work. 3. For LDAPv3 over SSL, HP SSL V1.1 or later for OpenVMS In- tegrity servers. New Features in this Release No new features are added in this release of Enterprise Direc- tory. New Features in Enterprise Directory V5.6 Following are the new features in Enterprise Directory V5.6: o Password Policy HP Enterprise Directory Version 5.6 implements the pass- word policy as defined in Draft Behera. The policy provides the ability to ensure the secure read and update access to directory information throughout the network. The policy is applied on a password that is used to authenticate. The policy also includes the following: - Whether and when passwords expire - Whether failed bind attempts cause the account to be locked and - If and how users are able to change their passwords. The password policy can be applied to any attribute holding a users password used for an authenticated LDAP bind operation. Here the term user represents any LDAP client application that has an identity in the directory. For details on usage and applicability of password policy as defined in Draft Behera, see Section 11 in the HP OpenVMS Enterprise Directory Release Notes. o Password Hashing HP Enterprise Directory Version 5.6 implements hashing of the users password. Here the term user represents any LDAP client application that has an identity in the directory. The directory server provides options of crypt and the algorithms supported by OpenSSL_add_all_digests( ) function of OpenSSL library with which the users password can be hashed. 2 For details on usage and applicability of password hashing, see Section 12 in the HP OpenVMS Enterprise Directory Release Notes. o Configuring HP Enterprise Directory for Failover Capability on OpenVMS Cluster Sample steps and procedures that allow automatic failover of the DSA in a VMS cluster environment have been added to section 13 in the HP OpenVMS Enterprise Directory Release Notes. o Enabling Memory Tracing Facility Memory tracing facility is added to this version of DSA, which can be turned on as required for faster diagnostics of DSA. For details on enabling memory tracing facility, see Section 14 in the HP OpenVMS Enterprise Directory Release Notes. o Support for Samba Schema 3.0 Samba 3.0 Schema elements are supported in this version of HP Enterprise Directory. For details on Samba 3.0 schema ele- ments, see Section 15 in the HP OpenVMS Enterprise Directory Release Notes. Configuration Tutorials Chapter 2 and Chapter 3 of HP Enterprise Directory - Management provide configuration tutorials. If you are installing HP Direc- tory products for the first time, you might find the tutorials a useful introduction to managing the product. © Copyright 2010 Hewlett-Packard Development Company, L.P. Confidential computer software. Valid license from HP required for possession, use or copying. Consistent with FAR 12.211 and 12.212, Commercial Computer Software, Computer Software Documen- tation, and Technical Data for Commercial Items are licensed to the U.S. Government under vendors standard commercial license. The information contained herein is subject to change without notice. The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein. A FULL SOFTWARE PATCH KIT HAS RECEIVED LIMITED TESTING AND IS CONSIDERED APPROPRIATE FOR GENERAL DISTRIBUTION TO CUSTOMERS. DISCLAIMER OF WARRANTY AND LIMITATION OF LIABILITY THIS FULL SOFTWARE PATCH KIT IS PROVIDED "AS IS", WITHOUT WAR- RANTY OF ANY KIND. ALL EXPRESS OR IMPLIED CONDITIONS, REP- RESENTATIONS AND WARRANTIES, INCLUDING ANY IMPLIED WARRANTY OF MERCHANTABILITY, FITNESS FOR PARTICULAR PURPOSE, OR NON- INFRINGEMENT, ARE HEREBY EXCLUDED TO THE EXTENT PERMITTED BY 3 APPLICABLE LAW. IN NO EVENT WILL HP OR ANY OF ITS SUBSIDIARIES BE LIABLE FOR ANY LOST REVENUE OR PROFIT, OR FOR SPECIAL, IN- DIRECT, CONSEQUENTIAL, INCIDENTAL OR PUNITIVE DAMAGES, HOWEVER CAUSED AND REGARDLESS OF THE THEORY OF LIABILITY, WITH RESPECT TO ANY SOFTWARE PATCH MADE AVAILABLE HERE OR TO THE USE OF SUCH SOFTWARE PATCH. 4