• If you want to use secure communications, create a trusted point containing the certificate of the root
certificateauthority (CA) ofthe LDAP server in Cisco UCS Manager.
Procedure
Step 1 Inthe Navigation pane, clickthe Admin tab.
Step 2 Onthe Admin tab, expand All >User Management>LDAP.
Step 3 Inthe Work pane, click the General tab.
Step 4 Inthe Actions area, clickCreate LDAP Provider.
Step 5 Onthe Create LDAP Provider page of the wizard, do the following:
a) Complete the following fields with information about the LDAP service you want to use:
DescriptionName
Thehostname or IP address onwhich the LDAP provider resides. If
SSLis enabled, this field must exactly match a Common Name (CN)
inthe security certificate of the LDAP database.
Ifyou use a hostname ratherthan an IP address, you must
configurea DNS server in Cisco UCS Manager.
Note
Hostnamefield
Theorder in which Cisco UCS uses this provider to authenticate
users.
Enteran integer between 1 and 16, or enter lowest-available or 0
(zero)if you want Cisco UCS to assign the next available order based
onthe other providers defined in this Cisco UCS domain.
Orderfield
Thedistinguished name (DN) for an LDAP database account that has
readand searchpermissions for all objects under the base DN.
Themaximum supported stringlength is 127 ASCII characters.
BindDN field
Thespecific distinguished name inthe LDAP hierarchy where the
servershould begin a search when a remote user logs in and the
systemattempts to get the user's DN based on their username. The
maximumsupported string lengthis 127 characters.
Thisvalue is requiredunless a default base DN has been set on the
LDAPGeneral tab.
BaseDN field
Theport through which Cisco UCS communicates with the LDAP
database.The standard port number is 389.
Portfield
Ifchecked, encryption is required for communications with the LDAP
database.If unchecked,authentication information willbe sentas
cleartext.
LDAPuses STARTTLS.This allows encrypted communicationusing
port389.
EnableSSL check box
Cisco UCS Manager GUI Configuration Guide, Release 2.0
136 OL-25712-04
Configuring LDAP Providers