This document provides installation and configuration notes for ACME LDAP version 2.0-1A for VSI OpenVMS systems. ACME LDAP enables centralized user account management by integrating the Lightweight Directory Access Protocol (LDAP) with the OpenVMS Authentication and Credentials Management Extension (ACME).
Key highlights include:
- Security Updates: This release incorporates the updated OpenLDAP client and OpenSSL 1.1.1g. It also addresses security improvements regarding certificate validation, specifically requiring the Subject Common Name (CN) to match the server hostname (or utilizing the Subject Alternative Name extension to resolve potential mismatches).
- System Requirements: The software requires VSI OpenVMS 8.4-2L1 or higher, appropriate TCP/IP services, and specific system images enabled for ACME login.
- Installation: The software is distributed as an OpenVMS PCSI kit. The installation process does not require a system reboot, though the
ACME_SERVER must be restarted to finalize changes.
- Configuration: Post-installation steps involve installing SYS$ACM-enabled login images, the LDAP persona extension, configuring the ACME agent, and updating user account settings to leverage external authentication. Detailed configuration guidance is provided within the provided PDF documentation located in
SYS$HELP.