Western Telematic RSM-16DC, RSM-32DC, RSM-8 Group Membership Value Type Default = DN, Ldap Group

Page 59

Configuration

User Search Base DN: Sets the directory location for user searches. (Default = undefined.)

User Search Filter: Selects the attribute that lists the user name. Note that this attribute should always end with "=%S" (no quotes.) (Default = undefined.)

Group Membership Attribute: Selects the attribute that list group membership(s). (Default = undefined.)

Group Membership Value Type: (Default = DN.)

Fallback: Enables/Disables the LDAP fallback feature. When enabled, the RSM will revert to it's own internal user directory (see Section 5.5) if no defined users are found via the LDAP server. In this case, port access rights will then be granted as specified in the default LDAP group. (Default = Off.)

5.8.7.1. Adding LDAP Groups

Once you have defined several users and passwords via your LDAP server, and assigned those users to LDAP Groups, you must then grant command and port access rights to each LDAP Group at each individual RSM unit.

To add LDAP groups to your RSM unit, access the command mode using a port and password that permit access to Supervisor Level commands, and then proceed as follows:

Text Interface: Type /N and press [Enter] to display the Network Parameters Menu (Figure 5.9.) At the Network Parameters Menu, type 27 and press [Enter] to display the LDAP parameters menu (Figure 5.22), then type 13 and press [Enter] to display the LDAP Group Menu (Figure 5.24.) At the LDAP Group Menu, type 2 and press [Enter] to display the Add LDAP Group menu (Figure 5.25.)

Web Browser Interface: At the RSM Home Screen, click on the Network Configuration link to display the Network Configure menu (Figure 5.10,) and then click on the LDAP Parameters link to display the LDAP Parameters menu (Figure 5.23.) At the LDAP Parameters menu, click on the LDAP Group Configuration link to display the LDAP Group Configuration menu, then click the Add LDAP Group link to display the Add LDAP Group menu (Figure 5.26.)

LDAP GROUP:

1.View LDAP Groups

2.Add LDAP Group

3.Modify LDAP Group

4.Delete LDAP Group

Enter: #<CR> to select,

<ESC> for previous menu ...

Figure 5.24: LDAP Group Configuration (Text Interface)

5-40

Image 59
Contents RSM Series Secure Racking Shock Hazard Do Not Enter Lithium BatteryDisconnect Power Agency Approvals Table of Contents Configuration Table of Contents List of Figures Capture Buffer Security and Collocation FeaturesIntroduction Intelligent Port SelectionBold Font Configuration BackupRSM-8, RSM-16, RSM-16DC, RSM-32 and RSM-32DC Units Typographic ConventionsFront Panel Unit DescriptionInstrument Back Panel Model RSM-8 Back Panel Power On/Off Switch Connect your Control Device to the RSM Quick Hardware InstallationApply Power to the RSM Getting StartedCommunicating with the RSM Port Status Screen Text Interface RSM-8 Shown Getting Started DC Powered Units Hardware InstallationConnecting Power to the RSM Unit Connecting Devices to the RSM Connecting the Network CableText Interface ConfigurationCommunicating with the RSM Unit Configuration Home Screen Web Browser Interface Web Browser InterfaceConfiguration Menus System SetUp PortsSystem Parameters Defining System ParametersConfiguration Real Time Clock and Calendar Invalid Access Lockout Feature Audit Log Callback Security Configuration User Accounts Supervisor AccessPort Access Viewing User Accounts Managing User AccountsAdd User Menu Text Interface RSM-8 Shown Adding User AccountsConfiguration Deleting User Accounts Modifying User Accounts1. RS232 Port Modes RS232 Port ConfigurationPort Configuration Menu Text Interface Communication Settings 2. RS232 Port Configuration MenusGeneral Parameters AT&C1&D2S0=1&B1&H1&R2 Port Mode ParametersNetwork Services Configuring the Internal Modem Servers and Clients Network ConfigurationConfiguration 11 Network Parameters Menu Web Browser Interface Network Parameters12 Network Port Parameters Menu Web Browser Interface Network Port ParametersConfiguration IP Security IP SecurityConfiguration Configuration Net/Mask Pairs ExceptConfiguration 15 Static Route Menu Text Interface Static Route17 Nomain Name Server Menu Text Interface Domain Name ServerSnmp Parameters 19 Snmp Access Menu Text InterfaceConfiguration Ldap Ldap ParametersConfiguration Ldap Group Group Membership Value Type Default = DN25 Add Ldap Group Menu Text Interface RSM-8 Shown 27 View Ldap Group Menu Text Interface RSM-8 Shown 29 Modify Ldap Group Menu Text Interface RSM-8 Shown 31 Delete Ldap Group Menu Web Browser Interface 32 Ldap Kerberos Set Up Menu Text Interface Configuration 34 The Tacacs Parameters Menu Text Interface Tacacs ParametersConfiguration 36 The Radius Parameters Menu Text Interface Radius ParametersConfiguration 38 The Copy Port Parameters Menu CP 3,5,7-9 Enter Save User Selected ParametersStatus Screens Status Screens Port Status Screen /SPort Diagnostics Screen RSM-8 Shown Port Diagnostics Screen /SDPorttcp Portstatus Username Network Status Screen /SNPort Parameters Screen RS232 Port Shown Port Parameters Screens /WXx Enter Port Connection and Disconnection Any-to-Any ModeOperation Operation Operation Enter 4 EnterHunt Group Example Defining Hunt GroupsPassive Mode Reading Data from Buffer Mode Ports Buffer ModePort Buffers Modem Mode SSH Encryption Telnet & SSH FunctionsNetwork Port Numbers Standard Telnet Protocol, SSH and Raw Socket Direct Connect FeatureConfiguration Telnet & SSH Functions RSM-32 & RSM-32DC Standard Telnet Direct Connection without Password RSM-8SSH Direct Connection with Password RSM-8 RSM-16 & RSM-16DCConnection Example Raw Socket Direct Connection with Password RSM-8Raw Socket Direct Connection without Password RSM-8 Terminating a Direct Connect Session Configuration Syslog FeatureCriteria for Generating a Syslog Message Test Menu Text Interface, Supervisor Mode Only Testing Syslog Configuration10-1 Snmp TrapsSnmp Contact Optional Snmp Location Optional How and When Snmp Traps are SentSnmp Trap Message Testing the Snmp Trap Function Sending Parameters to a File Saving and Restoring Configuration ParametersRestoring Saved Parameters 12-1 Upgrading RSM Firmware12-2 Command Conventions Command Reference GuideCommand Summary Audit Log Command SetResident Disconnect Sequence Format /CP Enter ConnectFormat /C x x Enter CP Copy RS232 Port ParametersErase Buffer Third Party DisconnectFormat /D/Y x x Enter 2 Enter or /D/Y 3 EnterDisplay Site ID Reboot System DefaultSet System Parameters HelpSet RS232 Port Parameters Send SSH KeySet Network Port Parameters Display Port Status PW Change PasswordSD Display Port Diagnostics Read BufferSave Parameters UF Upgrade FirmwareUL Unlock Port Invalid Access Lockout Test Test Network ParametersFormat /X Enter Exit Command ModeDisplay Port Parameters Who Format /W x EnterAppendix A. RS232 Port Interface When connectedWhen not connected Models RSM-32 and RSM-32DC Appendix B. SpecificationsRS232 Port Interface Connectors Physical / Environmental PowerAppendix C. Customer Service Trademarks Used in this Manual Trademark and Copyright InformationTacacs Dhcp IndexIndex-2 Index-3 Index-4