Connecting To A Posixaccount External Ldap Directory; Step 1: Selecting The Directory; Step 2: Accessing The Directory; External Ldap Directory Screen - Stormshield SN series Configuration Manual

Hide thumbs Also See for SN series:
Table of Contents

Advertisement

Connecting to a PosixAccount external LDAP directory

Step 1: Selecting the directory

Select the LDAP base of your choice. This is the first step in the configuration of this directory.
Select the option Connect to a PosixAccount external LDAP directory and click on Next.

Step 2: Accessing the directory

Name
Server
Port
Root domain (Base
DN)
Anonymous
connection
Username
Password
Connections to a PosixAccount external directory must be carried out in read-only mode.
Users or groups therefore cannot be created from the firewall's web administration
interface.
Click on Finish to display the external LDAP directory screen.

External LDAP directory screen

Once the configuration of the LDAP directory is complete, you will arrive at the external LDAP
screen which sets out the following items:
Page 103/448
Name enabling the identification of the external LDAP directory when several
directories have been defined on the firewall.
Select an object corresponding to your LDAP server from the drop-down list. This
object has to be created prior to this step and must reference the IP address of your
LDAP server.
Enter the listening port of your LDAP server. The default port is: TCP/389 (ldap object).
Enter the root domain (DN) of your directory. The DN represents the name of an entry,
in the form of a path to it, from the top to the bottom of the tree structure. The field
can be entered using the name of the Root Domain (DN).
Example of a DN
AD domain is "company.com" so my Root domain (Base DN) should be
"dc=company,dc=com"
If this option is selected, the connection to the LDAP directory will not require the use
of an identifier and its associated password. In this case, the identifier and password
fields will be grayed out.
An administrator account allowing the firewall to connect to your LDAP server and
make changes (reading and writing privileges) to certain fields.
We recommend that you create a specific account for the firewall and assign
privileges to it only in the necessary fields.
Example
cn=id
The password associated with the ID for you to connect to the LDAP server.
NOTE
The key icon (
is correct.
REMARK
SNS - USER CONFIGURATION MANUAL V.3
) allows you to view the password in plaintext to check that it
sns-en-user_configuration_manual-v3 - Copyright © Stormshield 2016
DIRECTORIES CONFIGURATION

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents