updates when data consistency is more important than performance.
TIP
Using different fractional replication lists for incremental and total updates is strongly
recommended if you use the memberof plug-in. memberOf fixup tasks are run after every
replication update, and this causes negatively affects server performance.
Limiting the memberof attribute to being replicated only for total updates improves the
performance of replica initialization and replication.
For more information on incremental updates, total updates, and fractional replication, see the 9.0
Administrator's Guide.
1.10. Enhanced: New Options and Procedures to Set up Secure Connections
Directory Server allows secure connections to be set between servers and between servers and clients
using SSL, TLS, Start T LS, or SASL. Directory Server 9.0 introduces some new options to refine what
kinds of secure connections are allowed and to administer secure connections more easily:
Procedures have been added to allow administrators how to disable selected SASL mechanisms.
Procedures have been added to disable SSLv3 and require TLS connections only.
A new attribute has been added to allow the Directory Server to be restarted with an expired
certificate. T his means that the server can still run and operate until the expired certificate is
replaced.
1.11. New: Added Support for the CoS merge-schemes Qualifier
A class of service adds and updates an attribute in an entry based on changes in an identified template
entry. Normally, when a change is made to the CoS attribute, the new value overwrites any previous
attribute in the entry. T he new merge-schemes qualifier for CoS definitions tells the CoS to add
attributes and allow multiple values, rather than replacing attributes when the CoS changes.
1.12. New: Added SELinux Policies
SELinux is a security function in Linux that categorizes files, directories, ports, processes, users, and
other objects on the server. New policies have been written for Directory Server files, directories, and
ports. In 9.0, Directory Server can run with SELinux set to enforcing mode and operate normally.
The 9.0 Administrator's Guide has information on the default Directory Server policies and simple
procedures for changing and updating these policies. More detail about SELinux and Red Hat Enterprise
Linux is covered in the SELinux Guide.
1.13. New: Replication Session Hooks
Client applications can have some control over replication operations by using custom plug-ins that
define replication session hooks. Suppliers and consumers can send each other some limited
information. If both servers meet the required session settings in the plug-in (like using the same
Directory Server version), then replication proceeds; if not, it fails.
The new replication callbacks are detailed in the Plug-in Programmer's Guide.
2. Structural Changes in Red Hat Directory Server 9.0
Komentarze do niniejszej Instrukcji