Specifications

Chapter 8 Advanced Directory Client Settings 141
10 To change the following default settings for this LDAP conguration, click Edit to
display the options for the selected LDAP conguration, make changes, and click OK
when you nish editing the LDAP conguration options:
Click Connection to set timeout options, specify a custom port, ignore server Â
referrals, or force use of the LDAPv2 (read-only) protocol. For more information,
see “Changing the Connection Settings for an LDAP Directory on page 143.
Click Search & Mappings to set up searches and mappings for an LDAP server. For Â
more information, see “Setting Up Trusted Binding for an LDAP Directory on page 14 9.
Click Security to set up an authenticated connection (instead of trusted binding) Â
and other security policy options. For more information, see “Changing the Security
Policy for an LDAP Connection on page 145.
Click Bind to set up trusted binding, or click Unbind to stop trusted binding. (You Â
might not see these buttons if the LDAP directory doesn’t permit trusted binding.) For
more information, see “Setting Up Trusted Binding for an LDAP Directory on page 14 9.
11 To nish changing the conguration to access an LDAP directory, click OK.
Duplicating a Conguration for Accessing an LDAP Directory
You can use Directory Utility to duplicate a conguration that species how Mac OS X
accesses an LDAPv3 or LDAPv2 directory. After duplicating an LDAP directory
conguration, you can change its settings to make it dierent from the original
conguration.
To duplicate a conguration for accessing an LDAP directory:
1 Open System Preferences and click Accounts.
2 If the lock icon is locked, unlock it by clicking it and entering the name and password
of an administrator.
3 Click Login Options, then click Edit.
4 Click Open Directory Utility.
5 If the lock icon is locked, unlock it by clicking it and entering the name and password
of an administrator.
6 Click Services.
7 In the list of services, select LDAPv3 and click the Edit (/) button.
8 If the list of server congurations is hidden, click Show Options.
9 In the list, select a server conguration and then click Duplicate.
10 Change the duplicate conguration’s settings:
 Enable: Click a checkbox to enable or disable access to an LDAP directory server.
 Conguration Name: Double-click a conguration name to edit it.
 Server Name or IP Address: Double-click a server name or IP address to change it.