Chapter 30 AAA Server

Table 147 ad-server Commands (continued)

COMMAND

DESCRIPTION

[no] ad-server binddn binddn

Sets the user name the ZyWALL uses to log into the default AD server. The no

 

command clears this setting.

[no] ad-server cn-identifier uid

Sets the unique common name (cn) to identify a record. The no command clears

 

this setting.

[no] ad-server host ad_server

Sets the AD server address. Enter the IP address (in dotted decimal notation) or

 

the domain name. The no command clears this setting.

[no] ad-server password password

Sets the bind password. This password will be encrypted when you use the show

 

ad-servercommand to display. The no command clears this setting.

[no] ad-server password-

Sets the encrypted password (less than 32 alphanumerical characters) in order to

encrypted password

hide the real password from people behind you when you are configuring AD server

 

password. This password is displayed as what you typed when you use the show

 

ad-server command.

[no] ad-server port port_no

Sets the AD port number. Enter a number between 1 and 65535. The default is

 

389. The no command clears this setting.

[no] ad-server search-time-limit

Sets the search timeout period (in seconds). Enter a number between 1 and 300.

time

The no command clears this setting.

[no] ad-server ssl

Enables the ZyWALL to establish a secure connection to the AD server. The no

 

command disables this feature.

30.2.2 ldap-server Commands

The following table lists the ldap-servercommands you use to set the default LDAP server.

Table 148 ldap-server Commands

COMMAND

DESCRIPTION

show ldap-server

Displays current LDAP server settings.

[no] ldap-server basedn basedn

Sets a base distinguished name (DN) for the default LDAP server. A base DN

 

identifies an LDAP directory. The no command clears this setting.

[no] ldap-server binddn binddn

Sets the user name the ZyWALL uses to log into the default LDAP server.

 

The no command clears this setting.

[no] ldap-server cn-identifier uid

Sets the unique common name (cn) to identify a record.

 

The no command clears this setting.

[no] ldap-server host ldap_server

Sets the LDAP server address. Enter the IP address (in dotted decimal

 

notation) or the domain name. The no command clears this setting.

[no] ldap-server password password

Sets the bind password. The no command clears this setting.

[no] ldap-server password-encrypted

Sets an encrypted bind password. The no command clears this setting.

password

 

[no] ldap-server port port_no

Sets the LDAP port number. Enter a number between 1 and 65535. The default

 

is 389. The no command clears this setting.

[no] ldap-server search-time-limit

Sets the search timeout period (in seconds). Enter a number between 1 and

time

300. The no command clears this setting.

[no] ldap-server ssl

Enables the ZyWALL to establish a secure connection to the LDAP server. The

 

no command disables this feature.

250

 

ZyWALL (ZLD) CLI Reference Guide