The following installation tasks must be completed in the order that they are listed. If a step is not necessary for your setup, you can skip it.
If you want to set up your own CA in order to configure SSL on ADAM (AD LDS), you need to install Internet Information Services (IIS).
On your Windows Server 2003 machine, access the Control Panel, then click
.In the left pane, select
.Select
, then click .Select
, then click .Verify that at least the following are selected:
Click
twice, then click to complete the installation.You might be prompted to insert your original installation media for Windows Server 2003.
On your Windows Server 2003 machine, access the Control Panel, then click
.In the left pane, select
.Select to
, then click to complete the installation.On your Windows Server 2003 machine, access the Control Panel, then click
.In the left pane, select
.Select
, then click .Select
, then click .Click
to complete the installation.The Active Directory driver doesn't currently have a way to change the port when making a connection, so you need to use the defaults. If the values default to something else, you probably already have a service using those ports, and you might need to disable or uninstall the other service.
Click
.Select
to create an application directory partition, unless you plan on doing it later.Specify the DN of the location where you'd like to synchronize users. For example, CN=People,DC=adamtest1,DC=COM.
Click
.Leave the default locations for data files and data recovery files, then click
.Select an account for the ADAM service, then click
.If you are installing ADAM on a server that is not already part of a domain, you might get a warning at this point. This is usually not a problem with ADAM, and you should continue with the installation.
Click
to assign the current user (the one you are logged in as) rights to administrate ADAM.Select
.Select
, then click .Click
.Review the installation summary, then click
.If you are installing AD LDS, use the steps given at http://technet.microsoft.com/en-us/library/cc754486%28WS.10%29.aspx, then follow the installation instructions from Step 6 to Step 16 from the Installing ADAM section.
On the server where you installed IIS and Certificate Services, specify the following address in a Web browser: http://localhost/certsrv.
You should see a welcome message from Certificate Services. If you do not, go back and make sure you have IIS and Certificate Services both installed.
The steps for requesting and installing a certificate are found at [.NET] Using SSL with ADAM.
On your ADAM (AD LDS) server, make sure you have the certificate installed in the following location in MMC: Certificates - Service (adaminstance) on Local Computer\ADAM_adaminstance\Personal.
On the Identity Manager server (or the Remote Loader computer) where the driver is running, make sure that you have only the CA certificate and make sure it is in Certificates - Current User\Trusted Root Certificates.
See Active Directory Application Mode: Frequently Asked Questions for additional resources.