102
12.3.1
Settings
The configuration options in this menu are structured by topic. You can change between
the different screens by clicking on the tabs at the top.
12.3.1-A Active Directory link......................................................... 102
12.3.1-B Import of users and groups............................................. 104
12.3.1-C Synchronisation of passwords........................................ 107
12.3.1-A
Active Directory link
You can link SX-GATE with Microsoft's Active Directory. This feature can be used
to import users and groups once or sync them regularly. If SX-GATE's mail server
forwards inbound emails to an internal Exchange server, SX-GATE can verify recipient
addresses by looking them up in the Active Directory.
SX-GATE doesn't modify the contents of the Active Directory.
Read only access is sufficient.
Active Directory server
Enter the IP address of the Active Directory server which keeps the user information.
Usually this is the IP of the domain controller.
LDAP searchbase
Specify the LDAP path used by SX-GATE when binding to the Active Directory. All
relevant users and groups must be situated below this path in the LDAP hierarchy.
The simplest searchbase is the name of the Active Directory server
(e.g. ad.example.com). But you can also enter any Distinguished Name
(DN) like for example "CN=users,DC=ad,DC=example,DC=com" or "OU=internet-
users,DC=ad,DC=example,DC=com".
Login for searching in Active Directory
Leave this field empty if an anonymous search is allowed in the Active-Directory or
else specify the login of a user which has the required permissions (Bind DN). If the
user is a member of Active Directory container "users", entering the user name (e.g.
"searchuser") is sufficient. Otherwise you have to specify the complete DN here (e.g.
"CN=searchuser,OU=it,DC=ad,DC=example,DC=com").