ZyXEL Communications ZyWall ATP series User Manual page 643

Table of Contents

Advertisement

Table 275 Configuration > Object > AAA Server > Active Directory (or LDAP) > Add (continued)
LABEL
DESCRIPTION
Port
Specify the port number on the AD or LDAP server to which the Zyxel Device sends
authentication requests. Enter a number between 1 and 65535.
This port number should be the same on all AD or LDAP server(s) in this group.
Base DN
Specify the directory (up to 127 alphanumerical characters). For example,
c=US
This is only for LDAP.
Use SSL
Select Use SSL to establish a secure connection to the AD or LDAP server(s).
Search time limit
Specify the timeout period (between 1 and 300 seconds) before the Zyxel Device
disconnects from the AD or LDAP server. In this case, user authentication fails.
Search timeout occurs when either the user information is not in the AD or LDAP server(s) or
the AD or LDAP server(s) is down.
Case-sensitive User
Select this if the server checks the case of the usernames.
Names
Bind DN
Specify the bind DN for logging into the AD or LDAP server. Enter up to 127 alphanumerical
characters.
For example,
Password
If required, enter the password (up to 15 alphanumerical characters) for the Zyxel Device to
bind (or log in) to the AD or LDAP server.
Retype to Confirm
Retype your new password for confirmation.
Login Name
Enter the type of identifier the users are to use to log in. For example "name" or "email
Attribute
address".
Alternative Login
If there is a second type of identifier that the users can use to log in, enter it here. For example
Name Attribute
"name" or "email address".
Group
An AD or LDAP server defines attributes for its accounts. Enter the name of the attribute that
Membership
the Zyxel Device is to check to determine to which group a user belongs. The value for this
Attribute
attribute is called a group identifier; it determines to which group a user belongs. You can
add ext-group-user user objects to identify groups based on these group identifier values.
For example you could have an attribute named "memberOf" with values like "sales", "RD",
and "management". Then you could also create a ext-group-user user object for each
group. One with "sales" as the group identifier, another for "RD" and a third for
"management".
Domain
Select the Enable checkbox to enable domain authentication for MSChap.
Authentication for
This is only for Active Directory.
MSChap
User Name
Enter the user name for the user who has rights to add a machine to the domain.
This is only for Active Directory.
User Password
Enter the password for the associated user name.
This is only for Active Directory.
Retype to Confirm
Retype your new password for confirmation.
This is only for Active Directory.
Realm
Enter the realm FQDN.
This is only for Active Directory.
NetBIOS Name
Type the NetBIOS name. This field is optional. NetBIOS packets are TCP or UDP packets that
enable a computer to connect to and communicate with a LAN which allows local
computers to find computers on the remote network and vice versa.
Chapter 34 Object
.
cn=zywallAdmin
ZyWALL ATP Series User's Guide
643
specifies
as the user name.
zywallAdmin
o=Zyxel,

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Atp500Atp200Atp800

Table of Contents