Configuring The Ldap Authentication Client - Alcatel-Lucent OmniSwitch 6850-48 Network Configuration Manual

Software release 6
Hide thumbs Also See for OmniSwitch 6850-48:
Table of Contents

Advertisement

Managing Authentication Servers
The bop-loggedusers attribute is a formatted string with the following syntax:
loggingMode : accessType ipAddress port macAddress vlanList userName
The fields are defined here:
Field
loggingMode
accessType
ipAddress
port
macAddress
vlanList
userName
For example:
"ASA
0

Configuring the LDAP Authentication Client

Use the
aaa tacacs+-server
server name, host name or IP address, distinguished name, password, and the search base name are
required for setting up the server. Optionally, a backup host name or IP address may be configured, as
well as the number of retransmit tries, the timeout for authentication requests, and whether or not a secure
Socket Layer (SSL) is enabled between the switch and the server.
Note. The server should be configured with the appropriate schema before the aaa ldap-server command
is configured.
The keywords for the aaa ldap-server command are listed here:
Required for creating:
host
dn
password
base
OmniSwitch AOS Release 6 Network Configuration Guide
Possible Values
ASA x—for an authenticated user session, where x is the num-
ber of the session
AVLAN—for Authenticated VLAN session in single authority
mode
AVLAN y—for Authenticated VLAN session in multiple
authority mode, where y is relevant VLAN
Any one of the following: CONSOLE, MODEM, TELNET,
HTTP, FTP, XCAP
The string IP followed by the IP address of the user.
(For Authenticated VLAN users only.) The string PORT fol-
lowed by the slot/port number.
(For Authenticated VLAN users only.) The string MAC fol-
lowed by the MAC address of the user.
(For Authenticated VLAN users only.) The string VLAN fol-
lowed by the list of VLANs the user is authorized (for single-
mode authority).
The login name of the user.
:
CONSOLE IP 65.97.233.108
command to configure LDAP authentication parameters on the switch. The
optional:
type
retransmit
timeout
port
ssl
Jones"
September 2009
LDAP Servers
page 35-27

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents