Configuration prerequisites, Managing ldap servers, Viewing the ldap server list – H3C Technologies H3C Intelligent Management Center User Manual

Page 85

Advertising
background image

76

Configuration prerequisites

Before you configure LDAP settings in TAM, obtain the following information about the LDAP server:

LDAP protocol version: version 2 or version 3.

Server IP address or domain name, which must be accessible to TAM.

Windows AD server or not.

DNs and sub-DNs for storing device user information. For example,
cn=xxx;ou=yyy;dc=h3c;dc=com.

Absolute path of the LDAP administrator. For example, cn=Manager;dc=h3c;dc=com.

Password of the LDAP administrator.

Attribute name that corresponds to the account names for device user logins. For example,
sAMAccountname.

Attribute name that corresponds to the password for device user logins. For example, userPassword.

Attribute name that corresponds to the user names of device users. For example, sn.

Attribute name that corresponds to the expiration dates of device users. For example,
accountExpires.

If an SSL connection is required for TAM to communicate with the LDAP server, obtain the root
certificate associated with the LDAP server certificate.

If a backup LDAP server exists, obtain the IP address or domain name of the backup LDAP server.

Managing LDAP servers

An LDAP server stores user data and verifies user identities in LDAP authentication.

Viewing the LDAP server list

To view the LDAP server list:

1.

Click the User tab.

2.

On the navigation tree, select Device User Policy > LDAP Service > LDAP Servers.
The LDAP Server list displays all LDAP servers. It includes the following columns:

{

Server Name—LDAP server name. Click the name of an LDAP server to view its details.

{

Version—Version of the LDAP protocol running on the LDAP server. TAM supports LDAPv2 and

LDAPv3.

{

IP Address—IP address of the LDAP server.

{

Server Type—Type of the LDAP server: Microsoft AD or General.

{

Test—Click Test to test connectivity to the LDAP server. Connection failures might be caused by

network problems or LDAP server configuration errors in TAM.

{

Status—Connectivity state of the LDAP server: Connected or Disconnected.
For an LDAP server in the Connected state, TAM forwards authentication requests from LDAP

users to the server. Operators can click the Connected icon for the server to manually
disconnect it from TAM.

Advertising