Owner's Manual

184 Using the CMC Web Interface
Configuring and Managing Generic Lightweight
Directory Access Protocol Services
You can use the Generic Lightweight Directory Access Protocol (LDAP)
Service to configure your software to provide access to CMC. LDAP allows
you to add and control the CMC user privileges of your existing users.
NOTE: To configure LDAP settings for CMC, you must have Chassis Configuration
Administrator privilege.
To view and configure LDAP:
1
Log in to the Web interface.
2
Click the
User Authentication
tab, and then click the
Directory Services
subtab. The
Directory Services
page appears.
3
Click the radio button associated with Generic LDAP.
4
Configure the options shown and click
Apply
.
Table 5-47 lists the available configuration options.
Table 5-47. Common Settings
Setting Description
Generic LDAP
Enabled
Enables the generic LDAP service on CMC.
Use Distinguished
Name to Search
Group Membership
Specifies the distinguished name (DN) of LDAP groups
whose members are allowed access to the device.
Enable SSL
Certificate Validation
If checked, CMC uses the CA certificate to validate the
LDAP server certificate during SSL handshake.
Bind DN Specifies the distinguished name of a user used to bind to the
server when searching for the login user's DN. If not provided
an anonymous bind is used.
Password A bind password to use in conjunction with the bind DN.
NOTE: The bind password is sensitive data, and must be protected.
Base DN to Search The DN of the branch of the directory where all searches
must start from.