User's Manual

ix
How SSL Works with Other Authentication Methods......................................................... 7-10
SSL and Firewalls............................................................................................................................. 7-12
SSL Usage Issues............................................................................................................................... 7-14
Enabling SSL ..................................................................................................................................... 7-15
Task 1: Install Oracle Advanced Security and Related Products ........................................ 7-15
Task 2: Configure SSL on the Server........................................................................................ 7-15
Task 3: Configure SSL on the Client........................................................................................ 7-23
Task 4: Log on to the Database................................................................................................. 7-31
Troubleshooting SSL........................................................................................................................ 7-31
Certificate Validation with Certificate Revocation Lists ........................................................... 7-35
What CRLs Should You Use? ................................................................................................... 7-35
How CRL Checking Works....................................................................................................... 7-36
Configuring Certificate Validation with Certificate Revocation Lists................................ 7-37
Certificate Revocation List Management................................................................................ 7-40
Troubleshooting Certificate Validation................................................................................... 7-45
Configuring Your System to Use Hardware Security Modules............................................... 7-48
General Guidelines for Using Hardware Security Modules with Oracle Advanced Security
....................................................................................................................................................... 7-48
Configuring Your System to Use nCipher Hardware Security Modules........................... 7-49
Troubleshooting Using Hardware Security Modules........................................................... 7-50
8 Using Oracle Wallet Manager
Oracle Wallet Manager Overview ................................................................................................... 8-2
Wallet Password Management................................................................................................... 8-2
Strong Wallet Encryption............................................................................................................ 8-3
Microsoft Windows Registry Wallet Storage........................................................................... 8-3
Backward Compatibility.............................................................................................................. 8-3
Public-Key Cryptography Standards (PKCS) Support........................................................... 8-3
Multiple Certificate Support....................................................................................................... 8-4
LDAP Directory Support............................................................................................................. 8-7
Starting Oracle Wallet Manager....................................................................................................... 8-7
How To Create a Complete Wallet: Process Overview................................................................ 8-8
Managing Wallets............................................................................................................................... 8-9
Required Guidelines for Creating Wallet Passwords ............................................................. 8-9
Creating a New Wallet............................................................................................................... 8-10