47
OmniView IP 5000 HQ
sections
table of contents 1 3 5 7 911 13 15 17 192 4 6 8 10 12 14 16 18 20 21
17
seTTInGs – aPPlICaTIOns
9.2.2.3 lDaP s ettings
1. Select the “Externa l Authentication” t ab and the LDAP se ttings
appear; see Figure 62.
Figure 62 LDAP settings
2. Select the “Use LDAP au thentication ser ver” check box.
3. Input details of the Ac tive Directory:
base Dn – Here you define the bas e object where th e search for use rs
begins. The search is performed onl y on this object and the objects
below it in the director y tree. The Bas e DN string has t he standard LDAP
syntax:CN=(CommonNa me…),OU=(OrganizationalUn it),DC=(Domain
Component). Base DN sho uld be in the follow ing format DC=d omain,
DC=tld. For example, for the domain kvm.belk in.org, the Base DN
should be DC=kvm,DC=belkin,DC=org.
Host – Type the host name or (p referably) the IP address of the Ac tive
Directory DC serve r.
Port – Type the LDAP port n umber. If left blan k, OmniView IP 50 00HQ
uses the default LDAP p ort 389 (which i s the default por t for most LDAP
servers including Mi crosoft Active Di rectory).
bind Dn – Also known as “User DN” or “Append”. The Bind DN is
a distinguished name of an LDAP object, w hich serves a g ateway
to the LDAP directory. Prio r to sending the a ccount/password pair,
OmniView IP 5000HQ in itiates a conversa tion handshake wit h LDAP.
This handshake protocol in general nee ds a “Bind DN/Bin d password”
pair to decide whether the OmniView IP 50 00HQ client is permitted to
query the LDAP directo ry server. (For exa mple, if we have use r John in
group Users in domain kvm.belkin.org, th e Bind DN should l ook like this:
Cn=John, Cn=us ers,DC=kv m,DC=belki n,DC=org).
Type the Active Directory objects you would l ike to search and t he user
account that will be us ed to perform t his operation.
Password – Type the password for the user accoun t given in the
Bind DN.
4. Click . The system que ries the Active D irectory.
(This may take some ti me.) The and buttons
become enabled.
9.2.2.4 Impo rting user s
To import users, press and the “Import User s” window
appears. Here you see all the groups in the Active Directo ry.
To display the users in a di rectory, expand the group.