Installation guide
52 NetIQ eDirectory 8.8 SP8 Installation Guide
3.2 Prerequisites
IMPORTANT: Check the currently installed NetIQ and Third Party applications to determine if
eDirectory 8.8 is supported before upgrading your existing eDirectory environment. You can find out
the current status for NetIQ products in the TID 7003446 (http://www.novell.com/support/kb/
doc.php?id=7003446) It is also highly recommended to back up eDirectory prior to any upgrades.
Because NTFS provides a safer transaction process than a FAT file system provides, you can
install eDirectory only on an NTFS partition. Therefore, if you have only FAT file systems, do
one of the following:
Create a new partition and format it as NTFS.
Use Disk Administrator. Refer to the Windows Server documentation for more information.
Convert an existing FAT file system to NTFS, using the
CONVERT
command.
Refer to the Windows Server documentation for more information.
If your server only has a FAT file system and you forget or overlook this process, the installation
program prompts you to provide an NTFS partition.
(Conditional) NICI 2.7 and eDirectory 8.8 support key sizes up to 4096 bits. If you want to use a
4 KB key size, every server must be upgraded to eDirectory 8.8. In addition, every workstation
using the management utilities, for example, iManager and ConsoleOne, must have NICI 2.7
installed on it.
When you upgrade your Certificate Authority (CA) server to eDirectory 8.8, the key size will not
change but will still be 2 KB. The only way to create a 4 KB key size is recreate the CA on an
eDirectory 8.8 server. In addition, you would have to change the default from 2 KB to 4 KB for
the key size, during the CA creation.
NOTE: The Windows Silent Installer requires NICI installed on the system.
If you are upgrading to eDirectory 8.8, make sure you have the latest eDirectory patches
installed on all non-eDirectory 8.8 servers in the tree. You can get eDirectory patches from the
NetIQ Support (http://support.novell.com) Web site.
Make sure you have the latest Windows 2003 or 2008 Server Service Packs installed. The latest
updated Windows Service Pack needs to be installed after the installation of the Windows
SNMP service.
If you are upgrading from a previous version of eDirectory, it must be eDirectory 8.7.3 or later.
(Conditional) If you are installing a secondary server into an existing tree as a non-administrator
user, ensure that you have the following rights:
Supervisor rights to the container the server is being installed into.
Supervisor rights to the partition where you want to add the server.
NOTE: This is required for adding the replica when the replica count is less than 3.
All Attributes rights: read, compare, and write rights over the W0.KAP.Security object.
Entry rights: browse rights over Security container object.
All Attributes rights: read and compare rights over Security container object.