Chapter 11
6. Add rules to the
For information about the format of the
7. Save and close the
8. Run the command
Configuring LDAP-based proxy authentication
Traffic Server enables you to leverage existing directory services by supporting asynchronous match and bind
requests to LDAP servers, thereby supporting policies that require users to log in and be authenticated by the
proxy. You can use results from this authentication to enforce rules related to whether users have the authority
to go out onto the Internet.
Traffic Server uses a local database to improve the performance of LDAP authentications and, upon
completion, logs successfully authenticated users.
To configure LDAP-based proxy authentication:
1. Telnet into the HP web cache appliance and select Shell Access as described in
Methods‚ on page
2. Open the
records.config
3. Edit the following variables:
Variable
proxy.config.ldap.auth.enabled
proxy.config.ldap.proc.ldap.server.name
proxy.config.ldap.proc.ldap.server.port
proxy.config.ldap.proc.ldap.base.dn
4. Save and close the
5. Restart Traffic Server with the command
start_traffic_server
Configuring LDAP Authentication Bypass
You can enable Traffic Server clients to access specific sites on the Internet without being authenticated by
the LDAP server.
To enable clients to access specific sites without LDAP authentication:
1. Telnet into the HP web cache appliance and select Shell Access as described in
Methods‚ on page
2. Open the
records.config
file.
splitdns.config
splitdns.config
file.
splitdns.config
to apply the configuration changes.
traffic_line -x
7.
file located in Traffic Server's
file.
records.config
7.
file located in Traffic Server's
file, see
page
directory with Vi.
config
Description
Set this variable to 1 to enable LDAP-based proxy
authentication.
Set this variable to specify the name of the LDAP server.
Set this variable to specify the LDAP port number.
The default port number is 389.
Set this variable to specify the name of the base
Distinguished Name (DN). Obtain this value from your
LDAP administrator.
You must specify a correct base DN otherwise LDAP
authentication will fail to operate.
directory with Vi.
config
Security Options
217.
Overview of Access
Overview of Access
92
Need help?
Do you have a question about the P4535A - Web Cache Server Appliance and is the answer not in the manual?
Questions and answers