Ldap Configuration Information - IBM 2073-700 Quick Installation Manual

Table of Contents

Advertisement

Table 15. LDAP CONFIGURATION INFORMATION
Field
Value
LDAP SERVER IP
ADDRESS
SECURITY METHOD [ ] Off
[ ] SSL (Secure Sockets Layer)
[ ] TLS (Transport Layer Security)
Certificate Path
User Suffix
Group Suffix
Bind Distinguished
Name
Bind Password
Kerberos Server Name
Kerberos Realm
Kerberos Keytab File
52
Storwize V7000 Unified: Quick Installation Guide
_____._____._____._____
_____._____._____._____
Note
This is the numeric IP address of the remote
LDAP server on the customer's network.
The communications link between the IBM
SONAS and the customer's LDAP server may be
open (unencrypted), or may be secured
(encrypted). If secured, one of two methods is
used: SSL or TLS.
Note: When SSL or TLS is used, a security
certificate file must be copied from the
customer's LDAP server to the IBM SONAS
Management Node.
If the SSL method is Off, leave this field blank. If
the SSL method is SSL or TLS, record the path on
the IBM SONAS Management Node where you
copy the Certificate file. As an example, if the
Certificate File is cacert.pem and you store it in a
directory called /certificates, then record
/certificates/cacert.pem.
Specifies the LDAP user suffix to be used.
Specifies the LDAP group suffix to be used.
This is the bind distinguished name from the
/etc/openldap/slapd.conf file on the customer's
LDAP server. In the example following note 1
below, the bind distinguished name is
cn=Manager,dc=sonasldap,dc=com
This is the bind password from the
/etc/openldap/slapd.conf file on the customer's
LDAP server. In the example following note 1
below, the bind password is secret.
If you checked Kerberos in the Options field of
Table 13 on page 50, then you must complete this
field. If you did not check Kerberos, leave this
field blank. This field is the name of the
Kerberos server used with your LDAP
environment.
If you checked Kerberos in the Options field of
Table 13 on page 50, then you must complete this
field. If you did not check Kerberos, leave this
field blank. This field is the Realm for the
Kerberos server used with your LDAP
environment.
If you checked Kerberos in the Options field of
Table 13 on page 50, then you must complete this
field. If you did not check Kerberos, leave this
field blank. This field is the file name for the
Kerberos KeyTab file.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Storwize v7000 unified2076

Table of Contents