Content Management and Capture

 View Only
  • 1.  LDAP Migration

    Posted Mon August 22, 2022 06:19 AM
    Our customer uses IBM FileNet Content Engine 5.5.4 with IBM Process Engine Workflows and IBM Content Navigator 3.0.7 (upgrade to 5.5.8/3.0.11 planned within the next 6 months) and WebLogic. For LDAP the system uses the old Oracle Directory Server 11g Enterprise Edition Release (Sun Java System Directory Server) on SLES11. Our customer wants to migrate this old LDAP system to a new supported LDAP.
    Customer is thinking about migrating to Microsoft AD LDS. Is this a good choice?
    Is there a documentation available which describes such a directory migration?
    Does anyone have experience with such a directory migration? Are there pitfalls?
    Is it necessary to involve IBM Labservices (or another IBM Unit) to support and attend the migration procedure?
    Thanks for feedback

    ------------------------------
    Paul de Jong
    DXC Switzerland GmbH
    ------------------------------


  • 2.  RE: LDAP Migration

    Posted Tue August 23, 2022 01:33 AM
    Edited by Pavel Silny Tue August 23, 2022 01:33 AM
    Hi Paul,

    for LDAP migration you have to involve IBM Lab Services. They have special tool which do necessary steps directly in the database.
    These tools are version specific, so you have to decide if do migration before or after upgrade.

    The procedure is straitforward, I did it already 2 times in one Swiss company :-)
    More complex will be probably to prepare LDAP itsels, migrate users groups and do the proper mapping where sometimes cuctom tools are need to build.

    Regarding selection of LDAP it is really up to you / customer - see supported LDAP servers - ADLDS is simple, can be easily maintained, but, according me , it is not the enterprise tool and have not so comfortable management as some others. On the other hand can be managed also by API and microsoft scripting ..

    BR
    Pavel Silny
    The Digital Content Professionals :-)




    ------------------------------
    Pavel Silny
    ------------------------------



  • 3.  RE: LDAP Migration

    Posted Tue August 23, 2022 10:08 AM
    Hi Pavel, thanks for your feedback. I just contacted local IBM Lab Services.

    ------------------------------
    Paul de Jong
    DXC Switzerland GmbH
    ------------------------------



  • 4.  RE: LDAP Migration

    Posted Tue August 23, 2022 12:43 PM
    Paul - both are used -- but you also might want to look at a new feature we introduced in 5.5.4 if the concern is around access by external users "Dynamic External User Registration". Take a look at this section in the documentation: https://www.ibm.com/docs/en/filenet-p8-platform/5.5.x?topic=authentication-oidc-oauth-identity-providers





    ------------------------------
    RUTH Hildebrand-Lund - rhildebr@us.ibm.com
    ------------------------------



  • 5.  RE: LDAP Migration

    Posted Tue August 23, 2022 08:28 AM

    Paul

    There isn't any specific type of LDAP we recommend, though many of our customers do use Active Directory.

    And, yes, you do require an Expert Services engagement for a directory migration. Please contact your local Expert Services team for help.



    ------------------------------
    RUTH Hildebrand-Lund
    ------------------------------