The following table shows the arguments for the options.
Option | Description | Values |
|
|
|
User authentication | Local only, LDAP only, local first then LDAP, LDAP first | |
| method | then local |
|
|
|
Binding method | Anonymous, bind w/ClientDN and password, user | |
|
| principal bind (UPN) |
|
|
|
Client distinguished | String of up to 63 characters for client_dn | |
| name |
|
|
|
|
Search domain | String of up to 31 characters for search_domain | |
|
|
|
Group filter | String of up to 63 characters for group_filter | |
|
|
|
Group search attribute | String of up to 63 characters for group_search_attr | |
|
|
|
Login permission | String of up to 63 characters for string | |
| attribute |
|
|
|
|
Domain source | Extract search domain from login ID, use only | |
|
| configured search domain, try login first then |
|
| configured value |
|
|
|
Service name | String of up to 15 characters for service_name | |
|
|
|
Client password | String of up to 15 characters for client_pw | |
|
|
|
Confirm client | String of up to 15 characters for confirm_pw | |
| password | Command usage is: ldap |
|
| |
|
| This option is required when changing the client |
|
| password. It compares the confirm_pw argument with |
|
| the client_pw argument and the command will fail if |
|
| they do not match. |
|
|
|
Root entry | String of up to 63 characters for root_dn | |
| distinguished name |
|
| (DN) |
|
|
|
|
s1ip | Server 1 host name/IP | String up to 63 characters or an IP address for host |
| address | name/ip_addr |
|
|
|
s2ip | Server 2 host name/IP | String up to 63 characters or an IP address for host |
| address | name/ip_addr |
|
|
|
s3ip | Server 3 host name/IP | String up to 63 characters or an IP address for host |
| address | name/ip_addr |
|
|
|
s1pn | Server 1 port number | A numeric port number up to 5 digits for port_number. |
|
|
|
s2pn | Server 2 port number | A numeric port number up to 5 digits for port_number. |
|
|
|
s3pn | Server 3 port number | A numeric port number up to 5 digits for port_number. |
|
|
|
UID search attribute | String of up to 23 characters for search_attrib | |
|
|
|
Get LDAP server | Off, on | |
| address via DNS |
|
|
|
|
Allows wildcards in the | Off, on | |
| group name |
|
|
|
|
Displays the command |
| |
| usage and options |
|
|
|
|
Chapter 6.