Skip to main content

Enabling SSL connections

You can configure the Active Directory connector so that all connections to the ADSI LDAP Provider are made over SSL (using server certificates). Encryption strength depends on the certificate strength.

To do this, you must:

  1. Configure server certificates on all domain controllers (that the Bravura Security Fabric server could communicate with).

    Consult your product documentation to ensure Domain controllers have certificates installed. This can vary between Windows 2008R2, 2012, 2016, 2019, and 2022, and deployment method; for example, whether you have manually deployed certificates or auto-enrollment.

    For an example of Windows Server 2008 certificate services deployment, see:

    http://technet.microsoft.com/en-us/library/cc772393%28WS.10%29.aspx

    For an example of Windows Server 2012 certificate services deployment, see:

    https://technet.microsoft.com/library/hh831348.aspx

  2. Install CA certificates on all Bravura Security Fabric servers that validate the Server certificates.

    Instructions for installation of the CA certificates can be found here:

    http://technet.microsoft.com/en-us/library/cc754841.aspx

    All Bravura Security Fabric servers require the trusted CA certificates installed for the local computer store.

  3. Enable the SSL option in the target system address.