Chapter 3 Bulk Load Command 219

PAID_KEY: [Licensing key for the feature to be disabled]

END

Usage notes

Deletion of groups

The DELETE_GROUP and DELETE_BRANCHGROUP commands can cause the LDAP server in use by the switch to become unreachable while the group is being deleted. This can happen if the group being deleted has a large number of users or Branch Office connections defined (for example, more than 50). Deleting each user or Branch Office connection individually, using the DELETE_USER or DELETE_CONNECTION command lessens the load on the LDAP server, but it may increase the time required to execute the commands.

Required fields for user and branch records

You must specify an authentication method and details when using the ADD_CONNECTION and ADD_USER commands. Valid authentication information can be specified using any one of the following combinations of attributes:

Text Password

Subject Distinguished Name (DN), a valid issuer certificate authority (CA), and a valid server certificate

Subject Alternative Name, Subject Alternative Name Type, a valid issuer certificate authority (CA), and a valid server certificate

Note: Server certificates may be inherited from a user’s group for

ADD_USER.

Reference for the Contivity VPN Switch Command Line Interface

Page 219
Image 219
Nortel Networks Contivity1510D manual Usage notes, Deletion of groups, Required fields for user and branch records