LDAP is a standard, extensible directory-access protocol. It is a common language that LDAP clients and servers use to communicate with each other. LDAP is a message-oriented protocol. The client constructs a message that contains a request and sends it to the server. The server processes the request and sends back the result in a series of LDAP messages. LDAP is also a connection-oriented protocol. The client opens a connection and performs any number of operations on the same connection.

For the LDAP server bind method, LDAP authentication uses either the Simple or the Simple over SSL method. See Table 3-12 Authentication bind methods on page 53.

Figure 3-15LDAP authentication

1.User credentials (DSMP-encrypted)

6.Authenticated user’s e-mail addresses

Encrypted using SSL

2.User credentials (simple bind)

3.Authentication result

4.LDAP query

5.Query results

HP DSS

LDAP

server

server

Microsoft Windows

Figure 3-16Authentication tab – Microsoft Windows

1

2

3

48 Chapter 3 Installation and configuration

ENWW