84 DSView 3 Software Installer/User Guide
12. Click Finish. The User Authentication Services window will open with the new service listed.
To change connection settings for the LDAP external authentication service:
1. Click the Users tab.
2. Click Authentication Services in the top navigation bar. The User Authentication Services
window will open.
3. Click the name of the LDAP service. The side navigation bar will change to include the name
of the LDAP service at the top and, below the name, the information you may define.
4. Click Connection in the side navigation bar. The Authentication Service Connection Settings -
LDAP window will open.
5. Type a name in the Service Name field to change the name of the service that appears in the
Name column of the User Authentication Services window.
6. Type the address of the LDAP host, in dot notation format (xxx.xxx.xxx.xxx) in the Host
Address field.
7. Type the number of the port you wish to use for connecting to the LDAP host in the Port
Number field.
8. Specify a Secure Socket Layer (SSL) Encryption mode:
•Click Do Not Use SSL to have authentication performed using unencrypted clear text
instead of SSL encryption. This method is the least secure and automatically sets the Port
Number field to a default port number of 389.
•Click Use SSL in Trust All Mode to use SSL encryption for data transmission. All server
certificates will be trusted and automatically accepted by the DSView 3 software for
transmitting data. This SSL method provides medium security and automatically sets the
Port Number field to a default port number of 636.
This encryption mode is not recommended for wide area networks (WANs).
•Click Use SSL in Certificate-based Trust Mode to use SSL encryption for data
transmission. The DSView 3 software will approve the server and then the certificate
before transmitting data. This SSL method provides maximum security and automatically
sets the Port Number field to a default port number of 636.
9. Click Save to save your changes.
If you selected Use SSL in Certificate-based Trust Mode, the Certificates heading will appear
in the side navigation bar. Go to step 8.
If you selected Do Not Use SSL or Use SSL in Trust All Mode, go to step 15.
10. Click Certificates. The Authentication Service Certificate Management - LDAP window will
open and list all servers that belong to the domain. A status of Trusted indicates the certificate
is trusted, based on the certificate policy (see System certificate policy and trust store on
page 44); Untrusted indicates the certificate cannot be trusted.
11. To register certificates, click the checkbox to the left of the server IP address(es). To select all
server IP addresses on the page, click the checkbox to the left of the IP Address heading.