Configuring The Ldap Search Filter Attribute - AudioCodes Mediant 800B User Manual

Media gateway & enterprise session border controller (e-sbc)
Hide thumbs Also See for Mediant 800B:
Table of Contents

Advertisement

The following procedure describes how to configure DNs per LDAP server through the
Web interface. You can also configure it through ini file (LdapServersSearchDNs) or CLI
(configure voip/ldap/ldap-servers-search-dns).
To configure an LDAP base path per LDAP server:
1.
Open the LDAP Configuration table (Configuration tab > VoIP menu > Services >
LDAP > LDAP Configuration Table).
2.
In the table, select the row of the LDAP server for which you want to configure DN
base paths, and then click the LDAP Servers Search DNs link, located below the
table; the LDAP Server Search Base DN table opens.
3.
Click Add; the following dialog box appears:
Figure 15-14: LDAP Search Base DN Table - Add Row Dialog Box
4.
Configure an LDAP DN base path according to the parameters described in the table
below.
5.
Click Add, and then save ("burn") your settings to flash memory.
Table 15-10: LDAP Server Search Base DN Table Parameter Descriptions
Parameter
Index
set internal-index
[LdapServersSearchDNs_Index]
Base Path
set base-path
[LdapServersSearchDNs_Base_Path]

15.4.6 Configuring the LDAP Search Filter Attribute

When the LDAP-based login username-password authentication succeeds, the device
searches the LDAP server for all groups of which the user is a member. The LDAP query is
based on the following LDAP data structure:
Search base object (distinguished name or DN, e.g.,
"ou=ABC,dc=corp,dc=abc,dc=com"): The DN defines the location in the directory
from which the LDAP search begins and is configured in ''Configuring LDAP DNs
(Base Paths) per LDAP Server'' on page 249.
Filter (e.g., "(&(objectClass=person)(sAMAccountName=johnd))"): This filters the
search in the subtree to include only the login username (and excludes others). This is
configured by the 'LDAP Authentication Filter' parameter, as described in the following
procedure. You can use the dollar ($) sign to represent the username. For example,
User's Manual
Defines an index number for the new table row.
Note: Each row must be configured with a unique index.
Defines the full path (DN) to the objects in the AD where the
query is done.
The valid value is a string of up to 256 characters.
For example: OU=NY,DC=OCSR2,DC=local. In this example,
the DN path is defined by the LDAP names, OU
(organizational unit) and DC (domain component).
250
Mediant 800B Gateway and E- SBC
Description
Document #: LTRT-10296

Advertisement

Table of Contents
loading

Table of Contents