Ldap; Ldap Server List; Ldap Server Options - Fortinet FortiGate FortiGate-500A Administration Manual

Fortinet fortigate fortigate-500a: user guide
Hide thumbs Also See for FortiGate FortiGate-500A:
Table of Contents

Advertisement

Users and authentication

LDAP

LDAP server list

LDAP server options

FortiGate-500A Administration Guide
If you have configured LDAP support and a user is required to authenticate using an
LDAP server, the FortiGate unit contacts the LDAP server for authentication. To
authenticate with the FortiGate unit, the user enters a user name and password. The
FortiGate unit sends this user name and password to the LDAP server. If the LDAP
server can authenticate the user, the user is successfully authenticated with the
FortiGate unit. If the LDAP server cannot authenticate the user, the connection is
refused by the FortiGate unit.
The FortiGate unit supports LDAP protocol functionality defined in RFC2251 for
looking up and validating user names and passwords. FortiGate LDAP supports all
LDAP servers compliant with LDAP v3.
FortiGate LDAP support does not extend to proprietary functionality, such as
notification of password expiration, that is available from some LDAP servers.
FortiGate LDAP support does not supply information to the user about why
authentication failed.
Figure 116:LDAP server list
Create New
Add a new LDAP server.
Server Name/IP The domain name or IP address of the LDAP server.
Port
The port used to communicate with the LDAP server.
Common Name
The common name identifier for the LDAP server. 20 characters maximum.
This is the
Identifier
Distinguished
The distinguished name used to look up entries on the LDAP server. It
reflects the hierarchy of LDAP database object classes above the Common
Name
Name Identifier.
The Delete and Edit icons.
Figure 117:LDAP server configuration
01-28006-0100-20041105
LDAP
241

Advertisement

Table of Contents
loading

Table of Contents