User guide
Configuring Authorization and Authentication (AA) Services
144
primaryldap
secondaryldap
radius primaryradius
secondaryradius
tacacsplus primarytacacs
secondarytacacs
Note:
WhenconfiguringtheLDAPserver,thequerystringformatontheserver
shouldcontainthenameofagroupconfiguredontheSX.
WhenconfiguringtheRadiusserver,theFilter‐IDformatfortheuserson
theservershouldhavethefollowingformat
“raritan:G{GroupOnSX}:D{DialbackNumber}“.
WhenconfiguringtheTACACS+server,theuser‐groupform
atforthe
userontheservershouldcontainthenameofagroupconfiguredonthe
DSX.
Ifyouuseolder(SX2.5andolderrelease)formatsofʺop:1:2:4ʺor“a:*”,
thesystemwillallowyoutologinandwillrestricttheportsaccessibility
accordingtousertypesan
dtheirlim
itations.TheDSXwillnothaveany
databaseinformationaboutgroupsatthistimeandwillthereforedisplay
thefollowingmessageinthebannerafterlogin.
Error:Cannotgetgroupinformation
Theportdisplaywillshowallportsbecausethereisnowayfortheclient
toknowwhichportlim
itationsexist.
LDAP Configuration Menu
Theldapconfigurationmenuprovidesaccesstosettingupldapand
ldaps.
Theldapisenteredbytypingldapatthefollowingprompt:
admin > Config > Authentication > ldap
Theldapcommandoptionsaredescribed inthefollowingtable.