Updating the TDGSS Configuration - Advanced SQL Engine - Teradata Database

Security Administration

Product
Advanced SQL Engine
Teradata Database
Release Number
17.05
17.00
Published
September 2020
Language
English (United States)
Last Update
2021-01-23
dita:mapPath
ied1556235912841.ditamap
dita:ditavalPath
lze1555437562152.ditaval
dita:id
B035-1100
lifecycle
previous
Product Category
Teradata Vantageā„¢

After you store a certificate in site/ssl/certs/clientcert.pem and a paired key in site/ssl/certs/clientkey.pem for each LDAP client (on each database node or on each Unity server), update the TDGSS configuration to include values for the LdapClientTlsCert and LdapClientTlsKey properties. See Configuring TDGSS to Use Advanced Binding Options.

The Linux user under which Teradata Vantage runs (user teradata) must have read access to the directory specified in the LdapClientTlsCert and LdapClientTlsKey properties. For sites that configured this property before Release 14.0, the permission is granted automatically by a script upon upgrade to Release 14.0. For sites that configure these properties on Release 14.10 or later, you must grant the permission manually. See Working with OS-Level Security Options.