Connecting To A Microsoft Active Directory; Step 1: Selecting The Directory; Step 2: Accessing The Directory - Stormshield SN series Configuration Manual

Hide thumbs Also See for SN series:
Table of Contents

Advertisement

SSHA
SMD5
CRYPT
None
User branch
Group branch
Certification authority
branch
Click on Apply to confirm your configuration.

Connecting to a Microsoft Active Directory

Like the internal and external directories, Active Directory offers the same user management
features that have been developed by Microsoft, using a Windows OS.

Step 1: Selecting the directory

Select the directory of your choice. This is the first step in the configuration of this directory.
Select the option Connect to a Microsoft Active Directory and click on Next.

Step 2: Accessing the directory

Name
Page 106/448
"Salt Secure Hash Algorithm". Based on the same principle as SHA, but contains a
password salting function in addition, which consists of adding a bit sequence to the
data entered in order to make them less legible.
NOTE
This variant of SHA uses a random value to diversify the password's fingerprint.
Two identical passwords will therefore have two different fingerprints.
The encryption method is the most secure and you are strongly advised to use it.
"Salt Message Digest". Based on the same principle as MD5, with the addition of the
password salting function.
The password is protected by the CRYPT algorithm, derived from the DES algorithm
which allows block encryption using 56-bit keys.
This method is not highly advised, as it has a relatively low level of security.
No password encryption, meaning it is stored in plaintext.
Warning
This method is not recommended, as your data will not be protected.
For PosixAccount external directories, this field is not available.
For PosixAccount external directories, this field is not available.
This field defines the location of the CA on the external LDAP base. This location is
used especially when searching for the CA used in SSL.
NOTE
Configuring this field is not absolutely necessary but in this case, in order for
the SSL authentication method to work the CA has to be specified in the list of
trusted CAs in the configuration of the SSL method.
(See menu Users\Authentication module\Available methods tab: the
authentication method Certificate (SSL) has to be added and the CA indicated
in the right column "Certificate authorities (C.A)" )
Name enabling the identification of the Microsoft Active Directory when several
directories have been defined on the firewall.
SNS - USER CONFIGURATION MANUAL V.3
sns-en-user_configuration_manual-v3 - Copyright © Stormshield 2016
DIRECTORIES CONFIGURATION

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents