ldap安装配置完了以后,装 TAM,
access manager runtime configure 以后,接着配置access manager Policy server 后缀secAuthority=Default 也配置了,我的IDS是5.2为什么policy server 配置不能通过,日志是
'no such object '

解决方案 »

  1.   

    2010-10-9-11:32:58:    Configuring Access Manager Policy Server....
    C:\PROGRA~1\Tivoli\POLICY~1\sbin\ivmgrd_setup.exe -d "cn=root" -w "********" -m "********" -y no  -r 7135 -l 365 -t 7200 -D no
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf [pdrte] user-reg-type
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] host
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] port
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSL
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] ssl-port
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFile
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFilePwd
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFileDn
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf
    "C:\PROGRA~1\Tivoli\POLICY~1\sbin\ivrgy_tool.exe" -h MICROSOF-8526C7 -p 389 -D "cn=root" -w **** check-bind  "cn=root" ****
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf [pdrte] user-reg-type
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] port
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] host
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSL
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] ssl-port
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFile
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFilePwd
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFileDn
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf
    ldap_search: No such object
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf [pdrte] user-reg-type
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\pd.conf
    C:\PROGRA~1\Tivoli\POLICY~1\sbin\mgrsslcfg.exe -config -t 7200 -l 365 -D no
    Creating the SSL certificate.  This might take several minutes.
    The SSL configuration of the Tivoli Access Manager policy server has completed successfully.
    The policy server's signed SSL certificate is base-64 encoded and saved in text file
     "C:\PROGRA~1\Tivoli\POLICY~1\keytab\pdcacert.b64"
    This file is required by the configuration program on each machine in your
    secure domain.
    C:\PROGRA~1\Tivoli\POLICY~1\sbin\bassslcfg.exe -config -c "C:\PROGRA~1\Tivoli\POLICY~1\keytab\pdcacert.b64" -p 7135 -h MICROSOF-8526C7
    The SSL configuration of Access Control Runtime has completed successfully.
      Tivoli Access Manager policy server domain name:     Default
      Tivoli Access Manager policy server host name:       MICROSOF-8526C7
      Tivoli Access Manager policy server listening port:  7135OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] port
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] host
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSL
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] ssl-port
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFile
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFilePwd
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf [ldap] LdapSSLKeyFileDn
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\ldap.conf
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf"
      setentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf [ldap] bind-dn = cn=ivmgrd/master,cn=SecurityDaemons,secAuthority=Default
      setentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf [ldap] bind-pwd = ****
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf
    "C:\PROGRA~1\Tivoli\POLICY~1\sbin\ivrgy_tool.exe" -h MICROSOF-8526C7 -p 389 -D "cn=root" -w **** del-daemon Default ivmgrd/master
    OpenConfFile: "C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf"
      getentry: C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf [domains] domain
    CloseConfFile: C:\PROGRA~1\Tivoli\POLICY~1\etc\ivmgrd.conf
    "C:\PROGRA~1\Tivoli\POLICY~1\sbin\ivrgy_tool.exe" -h MICROSOF-8526C7 -p 389 -D "cn=root" -w **** uninstall Default
    "C:\PROGRA~1\Tivoli\POLICY~1\sbin\ivrgy_tool.exe" -h MICROSOF-8526C7 -p 389 -D "cn=root" -w **** -S sec_master install Default ****
    2010-10-09-11:33:05.156+08:00I----- 0x16B480C9 IRAapi ERROR rgy ira e:\am510\src\ivrgy\ira_domain.c 1102 0x000009f8
    HPDRG0201E   Error code 0x20 was received from the LDAP server. Error text: "No such object".
    ivrgy_tool.exe: 62010-10-9-11:33:05:    Configuration failed.