CHAPTER 16 Services
Mediant 4000 SBC | User's Manual
Enabling the LDAP Service
Before you can configure LDAP support, you need to enable the LDAP service.
➢
To enable LDAP:
1.
Open the LDAP Settings page (
Setup
menu >
IP Network
tab >
RADIUS & LDAP
folder >
LDAP Settings
).
2.
From the 'LDAP Service' drop-down list, select
Enable
.
3.
Click
Apply
, and then reset the device with a save-to-flash for your settings to take effect.
Enabling LDAP-based Web/CLI User Login Authentication and
Authorization
The LDAP service can be used for authenticating and authorizing device management users (Web
and CLI) based on the user's login username and password (credentials). At the same, it can also
be used to determine users' management access levels (privileges). Before you can configure
LDAP-based login authentication, you must enable this type of LDAP service.
If you enable LDAP- based user login authentication, when users with Security
Administrator privilege level log in to the device’s CLI, they are automatically given
access to the CLI privileged mode (“#”). For all other user privilege levels, the user
needs to run the
enable
command and then enter the password to access the CLI
privileged mode.
➢
To enable LDAP-based login authentication:
1.
Open the Authentication Server page (
Setup
menu >
Administration
tab >
Web & CLI
folder
>
Authentication Server
).
2.
Under the LDAP group, from the 'Use LDAP for Web/Telnet Login' drop-down list, select
Enable
.
3.
Click
Apply
, and then reset the device with a save-to-flash for your settings to take effect.
Configuring LDAP Server Groups
The LDAP Server Groups table lets you configure up to 250 LDAP Server Groups. An LDAP Server
Group is a logical configuration entity that contains up to two LDAP servers. LDAP servers are
assigned to LDAP Server Groups in the LDAP Servers table (see
). To
use a configured LDAP server, you must assign it to an LDAP Server Group. You can configure the
following types of LDAP Server Groups (configured by the 'Type' parameter described below):
■
Control:
To use an LDAP server for call routing, you need to configure the LDAP Server Group
as a
Control
type, and then assign the LDAP Server Group to a Routing Policy. The Routing
Policy in turn needs to be assigned to the relevant routing rule(s). You can assign a Routing
Policy to only one LDAP Server Group. Therefore, for multi-tenant deployments where multiple
Routing Policies are employed, each tenant can be assigned a specific LDAP Server Group
through its unique Routing Policy.
- 217 -
Summary of Contents for Mediant 4000 SBC
Page 1: ...User s Manual AudioCodes Series of Session Border Controllers SBC Mediant 4000 SBC Version 7 2...
Page 40: ...Part I Getting Started with Initial Connectivity...
Page 48: ...Part II Management Tools...
Page 113: ...Part III General System Settings...
Page 118: ...Part IV General VoIP Configuration...
Page 525: ...Part V Session Border Controller Application...
Page 654: ...Part VI Cloud Resilience Package...
Page 663: ...Part VII High Availability System...
Page 685: ...Part VIII Maintenance...
Page 759: ...Part IX Status Performance Monitoring and Reporting...
Page 844: ...Part X Diagnostics...
Page 888: ...Part XI Appendix...