Chapter 4: KX III Administrator Help
208
From LDAP/LDAPS
When an LDAP/LDAPS authentication is successful, the KX III
determines the permissions for a given user based on the permissions of
the user's group. Your remote LDAP server can provide these user group
names by returning an attribute named as follows:
rciusergroup
attribute type: string
This may require a schema extension on your LDAP/LDAPS server.
Consult your authentication server administrator to enable this attribute.
In addition, for Microsoft
®
Active Directory
®
, the standard LDAP
memberOf is used.
From Microsoft Active Directory
Note: This should be attempted only by an experienced Active Directory
®
administrator.
Returning user group information from Microsoft's
®
Active Directory for
Windows 2000
®
operating system server requires updating the
LDAP/LDAPS schema. See your Microsoft documentation for details.
1. Install the schema plug-in for Active Directory. See Microsoft Active
Directory documentation for instructions.
2. Run Active Directory Console and select Active Directory Schema.
Summary of Contents for dominion kx III
Page 12: ......
Page 103: ...Chapter 4 KX III Administrator Help 91 3 Click OK ...
Page 159: ...Chapter 4 KX III Administrator Help 147 ...
Page 283: ...Chapter 7 KX III Local Console KX III End User Help 271 ...
Page 391: ......