Enabling The Ldap Service; Enabling Ldap-Based Web/Cli User Login Authentication And Authorization; Configuring Ldap Server Groups - AudioCodes Mediant 4000 SBC User Manual

Session border controllers
Hide thumbs Also See for Mediant 4000 SBC:
Table of Contents

Advertisement

CHAPTER 16    Services

Enabling the LDAP Service

Before you can configure LDAP support, you need to enable the LDAP service.
To enable LDAP:
1.
Open the LDAP Settings page (Setup menu > IP Network tab > RADIUS & LDAP folder >
LDAP Settings).
2.
From the 'LDAP Service' drop-down list, select Enable.
3.
Click Apply, and then reset the device with a save-to-flash for your settings to take effect.
Enabling LDAP-based Web/CLI User Login Authentication and
Authorization
The LDAP service can be used for authenticating and authorizing device management users (Web
and CLI) based on the user's login username and password (credentials). At the same, it can also
be used to determine users' management access levels (privileges). Before you can configure
LDAP-based login authentication, you must enable this type of LDAP service.
If you enable LDAP- based user login authentication, when users with Security
Administrator privilege level log in to the device's CLI, they are automatically given
access to the CLI privileged mode ("#"). For all other user privilege levels, the user
needs to run the enable command and then enter the password to access the CLI
privileged mode.
To enable LDAP-based login authentication:
1.
Open the Authentication Server page (Setup menu > Administration tab > Web & CLI folder
> Authentication Server).
2.
Under the LDAP group, from the 'Use LDAP for Web/Telnet Login' drop-down list, select
Enable.
3.
Click Apply, and then reset the device with a save-to-flash for your settings to take effect.

Configuring LDAP Server Groups

The LDAP Server Groups table lets you configure up to 250 LDAP Server Groups. An LDAP Server
Group is a logical configuration entity that contains up to two LDAP servers. LDAP servers are
assigned to LDAP Server Groups in the LDAP Servers table (see
use a configured LDAP server, you must assign it to an LDAP Server Group. You can configure the
following types of LDAP Server Groups (configured by the 'Type' parameter described below):
Control: To use an LDAP server for call routing, you need to configure the LDAP Server Group
as a Control type, and then assign the LDAP Server Group to a Routing Policy. The Routing
Policy in turn needs to be assigned to the relevant routing rule(s). You can assign a Routing
Policy to only one LDAP Server Group. Therefore, for multi-tenant deployments where multiple
Routing Policies are employed, each tenant can be assigned a specific LDAP Server Group
through its unique Routing Policy.
- 217 -
Mediant 4000 SBC | User's Manual
Configuring LDAP
Servers). To

Advertisement

Table of Contents
loading

Table of Contents