Configuring An Ldap Authentication Server - Juniper NETWORK AND SECURITY MANAGER 2010.4 - ADMININISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Copyright © 2010, Juniper Networks, Inc.
Supported Users
A SecurID Ace server supports the following types of users and authentication features:
Auth users
L2TP users (user authentication; L2TP user receives default L2TP settings from the
security device)
XAuth users (user authentication; no support for remote setting assignments)
Admin users (user authentication; administrator user receives default privilege
assignment of read-only)
A SecurID ACE server can store L2TP, XAuth, and device administrator user accounts for
authentication purposes; but it cannot assign L2TP, XAuth remote settings, or device
administrator privileges.

Configuring an LDAP Authentication Server

Lightweight Directory Access Protocol (LDAP) a protocol for organizing and accessing
information in a hierarchical structure resembling a branching tree. LDAP is used to locate
resources, such as organizations, individuals, and files on a network, and helps
authenticate users attempting to connect to networks controlled by directory servers.
To create an LDAP authentication server object, configure the following:
LDAP Server Port: The port number on the LDAP server to which the security device
sends authentication requests. The default port number is 389.
Common Name Identifier: The identifier used by the LDAP server to identify the
individual entered in a LDAP server. For example, an entry of "uid" means " user ID" and
"cn" for " common name."
Distinguished Name (dn): The path used by the LDAP server before using the common
name identifier to search for a specific entry. (For example, c=us;o=juniper, where "c"
stands for "country," and "o" for "organization.")
Supported Users
An LDAP server supports the following types of users and authentication features:
Auth users
L2TP users (user authentication; L2TP user receives default L2TP settings from the
security device)
XAuth users (user authentication; no support for remote setting assignments)
Admin users (user authentication; administrator user receives default privilege
assignment of read-only)
LDAP servers cannot assign L2TP or XAuth remote settings.
Chapter 8: Configuring Objects
403

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.4

Table of Contents