Last updated on SEPTEMBER 30, 2017
Applies to:Oracle Internet Directory - Version 220.127.116.11.0 and later
Information in this document applies to any platform.
Q. How to Change the orclcryptoversion From OID 18.104.22.168 Onwards.?
Background on what is orclcryptoversion:
Oracle Internet Directory supports the following TLS/SSL protocols:
Oracle Internet Directory does not support SSLv2.
TLSv1 can use all of the cipher suites listed in Table 27-1 . per the below OID Admin Document link. SSLv3 and SSLv3 with SSLv2 Hello can use the first 10 cipher suites listed in Table 27-1 of below doc link,
They cannot use the AES ciphers.SL_RSA_WITH_AES_128_CBC_SHA or SSL_RSA_WITH_AES_256_CBC_SHA.
27.1.2 Supported Protocol Versions
From 11g (22.214.171.124) onward, you can specify the SSL/TLS version using the
orclcryptoversion attribute allows you to enable more than one protocol by specifying the corresponding value and populating the attribute.
Table 27-2 lists the protocol mapping with its corresponding value in above OID Admin Document link.
Challenge: The above document talks about orclcryptoversion , but not mentions on how to modify it in OID. However, we cannot locate any documentation on where to set it and id does not appear as an option on existing oid instances. Where can this be defined?
This Article answers this query.
Sign In with your My Oracle Support account
Don't have a My Oracle Support account? Click to get started
My Oracle Support provides customers with access to over a
Million Knowledge Articles and hundreds of Community platforms