Hello,
I installed InformationServer 11.3 on Solaris.
I'd like to know how to replace the dsadm user with another user.
Why?
Simple because during the installation, you have to create this user locally, but my system administrator does not want to use a local user, you must absolutely use a user created in the LDAP.
In the console, I defined my LDAP user as admin but when I start the different service and engine I always have the dsadm user who appears in the processes.
How do I get rid of the dsadm user and the dstage group?
Thank you in advance.
Modifiy admin user "dsadm"
Moderators: chulett, rschirm, roy
-
- Participant
- Posts: 2
- Joined: Wed Dec 17, 2014 7:29 am
- Location: Belgique -Bxl
-
- Participant
- Posts: 54607
- Joined: Wed Oct 23, 2002 10:52 pm
- Location: Sydney, Australia
- Contact:
Welcome aboard.
Is security on UNIX managed though LDAP to the same user registry as that used for client software? This will determine how to map engine credentials using web console for Information Server.
Is security on UNIX managed though LDAP to the same user registry as that used for client software? This will determine how to map engine credentials using web console for Information Server.
IBM Software Services Group
Any contribution to this forum is my own opinion and does not necessarily reflect any position that IBM may hold.
Any contribution to this forum is my own opinion and does not necessarily reflect any position that IBM may hold.
I thought that the engine tier required local operating system users as per the system requirements and product documentation. I would expect my system admin to come to terms with the product's requirements. Maybe I am missing something? ![Confused :?](./images/smilies/icon_confused.gif)
![Confused :?](./images/smilies/icon_confused.gif)
Choose a job you love, and you will never have to work a day in your life. - Confucius
-
- Premium Member
- Posts: 425
- Joined: Sat Nov 19, 2005 9:26 am
- Location: New York City
- Contact:
The IBM install/Updater scripts are not able to authenticate dsadm account against LDAP -I submitted a PMR inquiring about this - but as PaulVL stated you could create the dsadm and dstage group in your LDAP registry and then used the UID/GID values to create the local counter parts for installation purpose and after installation then set up PAM/LDAP and remove the local ones ...this worked like a charm for us
*** We are not allow to have local account/groups
*** We are not allow to have local account/groups
Julio Rodriguez
ETL Developer by choice
"Sure we have lots of reasons for being rude - But no excuses
ETL Developer by choice
"Sure we have lots of reasons for being rude - But no excuses
-
- Participant
- Posts: 2
- Joined: Wed Dec 17, 2014 7:29 am
- Location: Belgique -Bxl