storing db2 catalogs in MS active directory -
04-14-2011
, 03:29 PM
Hello,
I have following questions
1. I am trying to find out of I can store db2 catalog information
inside Microsoft Active Directory. All of my db2 servers are on AIX
6.1.3 and DB2 9.5 FP4.
IBM documentation says the following
In order to access Microsoft Active Directory, ensure that the
following conditions are met:
1. The machine that runs DB2® database must belong to a Windows 2000
or Windows Server 2003 domain.
2. The Microsoft LDAP client is installed. The Microsoft LDAP client
is part of the Windows 2000, Windows XP, and Windows Server 2003
operating systems.
3. Enable LDAP support.
4. Log on to a domain user account when running the DB2 database
system to read information from the Active Directory.
Does it mean that DB2 server should be installed on Windows Server or
DB2 server just has to be part of domain of windows server ?
Is there a documentation explaining in detail about setting up active
directory server to store db2 catalogs other than information center?
2. Is it possible to control db2 catalogs based on user groups now? If
I want to allow users from group say ABC retrieve catalogs for
databases say X,Y, and Z, is it possible to control that?
Earlier versions of LDAP and DB2, all users were able to see all
catalogs which is a security concern
regards,
jagdip |