The following table shows the arguments for the options.
Option | Description  | Values  | 
  | 
  | 
  | 
User authentication  | Local only, LDAP only, local first then LDAP, LDAP first  | |
  | method  | then local  | 
  | 
  | 
  | 
Binding method  | Anonymous, bind w/ClientDN and password, user  | |
  | 
  | principal bind (UPN)  | 
  | 
  | 
  | 
Client distinguished  | String of up to 63 characters for client_dn  | |
  | name  | 
  | 
  | 
  | 
  | 
Search domain  | String of up to 31 characters for search_domain  | |
  | 
  | 
  | 
Group filter  | String of up to 63 characters for group_filter  | |
  | 
  | 
  | 
Group search attribute  | String of up to 63 characters for group_search_attr  | |
  | 
  | 
  | 
Login permission  | String of up to 63 characters for string  | |
  | attribute  | 
  | 
  | 
  | 
  | 
Domain source  | Extract search domain from login ID, use only  | |
  | 
  | configured search domain, try login first then  | 
  | 
  | configured value  | 
  | 
  | 
  | 
Service name  | String of up to 15 characters for service_name  | |
  | 
  | 
  | 
Client password  | String of up to 15 characters for client_pw  | |
  | 
  | 
  | 
Confirm client  | String of up to 15 characters for confirm_pw  | |
  | password  | Command usage is: ldap   | 
  | 
  | |
  | 
  | This option is required when changing the client  | 
  | 
  | password. It compares the confirm_pw argument with  | 
  | 
  | the client_pw argument and the command will fail if  | 
  | 
  | they do not match.  | 
  | 
  | 
  | 
Root entry  | String of up to 63 characters for root_dn  | |
  | distinguished name  | 
  | 
  | (DN)  | 
  | 
  | 
  | 
  | 
s1ip  | Server 1 host name/IP  | String up to 63 characters or an IP address for host  | 
  | address  | name/ip_addr | 
  | 
  | 
  | 
s2ip  | Server 2 host name/IP  | String up to 63 characters or an IP address for host  | 
  | address  | name/ip_addr  | 
  | 
  | 
  | 
s3ip  | Server 3 host name/IP  | String up to 63 characters or an IP address for host  | 
  | address  | name/ip_addr  | 
  | 
  | 
  | 
s1pn  | Server 1 port number  | A numeric port number up to 5 digits for port_number.  | 
  | 
  | 
  | 
s2pn  | Server 2 port number  | A numeric port number up to 5 digits for port_number.  | 
  | 
  | 
  | 
s3pn  | Server 3 port number  | A numeric port number up to 5 digits for port_number.  | 
  | 
  | 
  | 
UID search attribute  | String of up to 23 characters for search_attrib  | |
  | 
  | 
  | 
Get LDAP server  | Off, on  | |
  | address via DNS  | 
  | 
  | 
  | 
  | 
Allows wildcards in the  | Off, on  | |
  | group name  | 
  | 
  | 
  | 
  | 
Displays the command  | 
  | |
  | usage and options  | 
  | 
  | 
  | 
  | 
Chapter 6.