250Chapter 6 Configuring authentication

where auth ID is an integer in the range 1 to 63 that uniquely identifies the authentication method in the Nortel SNAS 4050 domain. If you do not specify the auth ID in the command, you are prompted for it.

When you first create the method for the domain, you must enter the authentication ID. After you have created the method and defined a name for it, you can use either the ID or the name to access the method for configuration.

You can perform the following configuration tasks:

“Adding the LDAP authentication method using the CLI” on page 250

“Modifying LDAP configuration settings using the CLI” on page 252

“Managing LDAP authentication servers using the CLI” on page 256

“Managing LDAP macros using the CLI” on page 258

“Managing Active Directory passwords using the CLI” on page 260

Adding the LDAP authentication method using the CLI

The command to create the authentication ID launches a wizard. When prompted, enter the following information. For more information about the parameters, see page 253. You can later modify all settings for the specific LDAP configuration (see “Configuring authentication methods using the CLI” on page 239 and “Modifying LDAP configuration settings using the CLI” on page 252).

authentication type — options are radiusldaplocal. Enter ldap.

authentication method name (auth name) — a string that specifies a name for the method. After you have defined a name for the method, you can use either the method name or the auth ID to access the Authentication menu. In future releases of the Nortel SNAS 4050 software, you will be able to reference this string in a client filter, so that authentication to the server in question becomes a condition for access rights for a group.

IP address of the LDAP server.

port on which the LDAP server is listening — the port number configured on the LDAP server to specify the port used by the service. The default is 389.

search base entry — the Distinguished Name (DN) that points to one of the following:

the entry that is one level up from the user entries (does not require isdBindDN and isdBindPassword)

320818-A

Page 250
Image 250
Nortel Networks 4050 manual Adding the Ldap authentication method using the CLI