622
This section provides an LDAP example for illustrating the configuration
procedure using Microsoft Active Directory
®
(AD). To configure LDAP
authentication, four main steps are required:
a.
Determine user accounts and roles (groups) intended for the PX3
b.
Create user groups for the PX3 on the AD server
c.
Configure LDAP authentication on the PX3 device
d.
Configure roles on the PX3 device
Important: Raritan disables SSL 3.0 and uses TLS for releases 3.0.4,
3.0.20 and later releases due to published security vulnerabilities in
SSL 3.0. Make sure your network infrastructure, such as LDAP and
mail services, uses TLS rather than SSL 3.0.
In This Chapter
Step A. Determine User Accounts and Roles ......................................... 621
Step B. Configure User Groups on the AD Server .................................. 622
Step C. Configure LDAP Authentication on the PX3 Device ................... 623
Step D. Configure Roles on the PX3 Device ............................................ 624
Step A. Determine User Accounts and Roles
Determine the user accounts and roles (groups) that are authenticated
for accessing the PX3. In this example, we will create two user roles with
different permissions. Each role (group) will consist of two user accounts
available on the AD server.
User roles
User accounts (members)
usera
PX_User
pxuser2
userb
PX_Admin
pxuser
Group permissions:
The PX_User role will have neither system permissions nor outlet
permissions.
The PX_Admin role will have full system and outlet permissions.
Appendix H LDAP Configuration Illustration
Summary of Contents for PX3-1000 series
Page 5: ......
Page 92: ...Chapter 4 Connecting External Equipment Optional 70...
Page 668: ...Appendix J RADIUS Configuration Illustration 646 Note If your PX3 uses PAP then select PAP...
Page 673: ...Appendix J RADIUS Configuration Illustration 651 14 The new attribute is added Click OK...
Page 674: ...Appendix J RADIUS Configuration Illustration 652 15 Click Next to continue...