Instance stops when nCipher cryptographic hardware client is restarted
IBM® Security Verify Directory, Version 6.2 or later instance stops when nCipher cryptographic hardware client is restarted.
- Scenario
- The following steps describe the situation in which a directory
server instance might stop.
- Start a directory server instance. The instance is configured over SSL with server client authorization to use PKCS#11 in key storage and accelerator mode.
- Perform search operation by using an LDAP client in SSL mode.
- Restart the cryptographic hardware used.
- Perform search operation by using an LDAP client in SSL mode.
- Reason
- You must not restart the cryptographic hardware if IBM Security Verify Directory, Version 6.2 or later instance uses PKCS#11 in key storage or accelerator mode. If the cryptographic hardware that is used by a server instance for cryptographic operations is reset, then the instance stops logging appropriate messages in trace file.