Chapter 12 Configuring AAA Servers and User Accounts

Configuring an LDAP Attribute Map

Fields

Name—Displays the names of the LDAP attribute maps available for editing.

Attribute Map Name—Displays the mappings of customer attribute names to Cisco attribute names within each attribute map.

Add—Displays the Add LDAP Attribute Map dialog box.

Edit—Displays the Edit LDAP Attribute Map dialog box.

Delete—Deletes the selected LDAP Attribute Map.

Add/Edit LDAP Attribute Map

The Add/Edit LDAP Attribute Map dialog box lets you modify or delete an existing LDAP attribute map, add a new LDAP attribute map, and populate attribute maps with attribute name and value mappings.

Your typical steps to add a new attribute map using the LDAP Attribute Map dialog box would be as follows:

1.Create a new, unpopulated attribute map.

2.Populate the attribute map with name mappings that translate Cisco attribute names to customer, user-defined attribute names.

3.Populate the attribute map with value mappings that apply customer, user-defined attribute values to the customer attribute name and to the matching Cisco attribute name and value.

You would then bind the attribute map to an LDAP server when adding or editing the LDAP server using the Add/Edit AAA Server dialog box.

Fields

Name—Specifies the name of the LDAP attribute map you are adding or editing. If you are adding a new map, you enter the name of the map in this field. If you are editing a map that was selected in the LDAP Attribute Map pane, the name of the selected map displays as read-only text in this field. To change the map, you must return to the LDAP Attribute Map pane and choose the desired map.

Name Map—Displays the fields necessary for mapping customer attribute names to Cisco attribute names.

Value Map—Displays the fields necessary for mapping customer attribute values to customer attribute names and to the matching Cisco attribute name and value.

Add/Edit LDAP Attribute Map > Map Name Tab

The Add/Edit LDAP Attribute Map dialog box lets you modify or delete an existing LDAP attribute map, add a new LDAP attribute map, and populate attribute maps with attribute name and value mappings. See also Add/Edit LDAP Attribute Map.

Some fields vary depending upon whether you have selected the Map Name tab or the Map Value tab. When you click the Map Name tab, the following fields display.

 

ASDM User Guide

12-22

OL-12180-01

Page 22
Image 22
Cisco Systems OL-12180-01 manual Add/Edit Ldap Attribute Map Map Name Tab, 12-22