Changes between Version 2 and Version 3 of ALL__architecture
- Timestamp:
- 11/14/14 16:18:08 (10 years ago)
Legend:
- Unmodified
- Added
- Removed
- Modified
-
ALL__architecture
v2 v3 11 11 12 12 == EDIR Directory : SUN LDAP iPlanet Directories == 13 The account, ''iplanet'', is found on both the Linux IDMP Cluster and "E" boxes SUN UNIX servers. 13 14 14 iplanet UNIX account 15 16 source of information for web gateways 17 source of identity for authentication service 18 enforces uniqueness 19 (BannerID, UASystemID, UASystemLegacyID, UID and mailAlternateAddress) 20 enforces limited password logic 21 (age, length, composition, reuse) 22 contains plugin for kerberos authentication 23 24 3 instances; Test, Prep, Prod 25 on 4 servers; eklutna, egegik, edgar, elias 26 (soon to be 5th server; elfin) 15 === IDMP Cluster Functions and Instances === 16 * Source of information for web gateways 17 * Source of identity for authentication service 18 * Enforces uniqueness via LDIF updates 19 * BannerID 20 * UASystemID 21 * UASystemLegacyID 22 * UID 23 * mailAlternateAddress 24 * Stores daily transaction log files for daily LDAP processing 25 * Stores daily access logs for EDIR authenticated services 26 * One active Instance; Prod on IDMP-3 27 * Two inactive instances; Prep (IDMP-0), Test (IDMP-1) 28 === "E" Box Functions and Instances === 29 * Enforces uniqueness via Web Edits 30 * Enforces limited password logic via Web Edits 31 * age 32 * length 33 * composition 34 * reuse 35 * 3 instances; Test, Prep, Prod on 4 servers; eklutna, egegik, edgar, elias 27 36 28 37 … … 60 69 61 70 == Equalizer == 71 The Equalizers balance the load for the following DNS names. 62 72 63 load balancing for DNS names 73 === EDIR URLs === 74 These URLs are accessed for directory information and user self-service actions. 64 75 65 edirtest.alaska.edu66 edirprep.alaska.edu67 edir.alaska.edu76 * edirtest.alaska.edu 77 * edirprep.alaska.edu 78 * edir.alaska.edu 68 79 69 authservtest.alaska.edu 70 authservprep.alaska.edu 71 authserv.alaska.edu 80 === AUTHSERV URLs === 81 These URLs are accessed by IAM and the Help Desk to Manage EDIR LDAP entries for users when necessary. 82 * authservtest.alaska.edu 83 * authservprep.alaska.edu 84 * authserv.alaska.edu 72 85 73 email-lookup.alaska.edu74 86 75 for http/https ports 76 for ldap/ldaps ports 87 ==== HTTP Ports ==== 88 The equalizer balances access to ports for: 89 * http 90 * https 91 * ldap 92 * ldaps 93 94 '''Note: '''' The URL, email-lookup.alaska.edu, is no longer used. Email information is found in the regular EDIR listing. 77 95 78 96 == Historical Use of Kerberos ==