Chapter 44 AAA Server
ZyWALL / USG (ZLD) CLI Reference Guide
294
44.2.6 aaa group server ldap Commands
The following table lists the
aaa group server ldap
commands you use to configure a group of
LDAP servers.
[no] server alternative-cn-
identifier
uid
Sets the second type of identifier that the users can use to log in if any. For
example “name” or “e-mail address”. The
no
command clears this setting.
[no] server basedn
basedn
Sets the base DN to point to the AD directory on the AD server group. The
no
command clears this setting.
[no] server binddn
binddn
Sets the user name the ZyWALL / USG uses to log into the AD server group.
The
no
command clears this setting.
[no] server cn-identifier
uid
Sets the user name the ZyWALL / USG uses to log into the AD server group.
The
no
command clears this setting.
[no] server description
description
Sets the descriptive information for the AD server group. You can use up to
60 printable ASCII characters. The
no
command clears the setting.
[no] server group-attribute
group-attribute
Sets the name of the attribute that the ZyWALL / USG is to check to
determine to which group a user belongs. The value for this attribute is
called a group identifier; it determines to which group a user belongs. You
can add ext-group-user user objects to identify groups based on these group
identifier values.
For example you could have an attribute named “memberOf” with values
like “sales”, “RD”, and “management”. Then you could also create an ext-
group-user user object for each group. One with “sales” as the group
identifier, another for “RD” and a third for “management”. The
no
command
clears the setting.
[no] server host
ad_server
Enter the IP address (in dotted decimal notation) or the domain name of an
AD server to add to this group. The
no
command clears this setting.
[no] server password
password
Sets the bind password (up to 15 alphanumerical characters). The
no
command clears this setting.
[no] server port
port_no
Sets the AD port number. Enter a number between 1 and 65535. The default
is 389. The
no
command clears this setting.
[no] server search-time-limit
time
Sets the search timeout period (in seconds). Enter a number between 1 and
300. The
no
command clears this setting and set this to the default setting
of 5 seconds.
[no] server ssl
Enables the ZyWALL / USG to establish a secure connection to the AD
server. The
no
command disables this feature.
Table 177
aaa group server ad Commands (continued)
COMMAND
DESCRIPTION
Table 178
aaa group server ldap Commands
COMMAND
DESCRIPTION
clear aaa group server ldap [
group-
name
]
Deletes all LDAP server groups or the specified LDAP server group.
Note: You can NOT delete a server group that is currently in use.
show aaa group server ldap
group-name
Displays the specified LDAP server group settings.
[no] aaa group server ldap
group-name
Sets a descriptive name for an LDAP server group. Use this command to
enter the sub-command mode.
The
no
command deletes the specified server group.
aaa group server ldap rename
group-
name group-name
Changes the descriptive name for an LDAP server group.
aaa group server ldap
group-name
Enter the sub-command mode.
Summary of Contents for ZyWALL USG Series
Page 19: ...19 PART I Introduction ...
Page 20: ...20 ...
Page 38: ...Chapter 2 User and Privilege Modes ZyWALL USG ZLD CLI Reference Guide 38 ...
Page 39: ...39 PART II Reference ...
Page 40: ...40 ...
Page 48: ...Chapter 4 Status ZyWALL USG ZLD CLI Reference Guide 48 ...
Page 52: ...Chapter 5 Registration ZyWALL USG ZLD CLI Reference Guide 52 ...
Page 128: ...Chapter 15 Route ZyWALL USG ZLD CLI Reference Guide 128 ...
Page 136: ...Chapter 17 Zones ZyWALL USG ZLD CLI Reference Guide 136 ...
Page 140: ...Chapter 18 DDNS ZyWALL USG ZLD CLI Reference Guide 140 ...
Page 148: ...Chapter 20 HTTP Redirect ZyWALL USG ZLD CLI Reference Guide 148 ...
Page 152: ...Chapter 21 ALG ZyWALL USG ZLD CLI Reference Guide 152 ...
Page 156: ...Chapter 22 UPnP ZyWALL USG ZLD CLI Reference Guide 156 ...
Page 159: ...Chapter 23 IP MAC Binding ZyWALL USG ZLD CLI Reference Guide 159 ...
Page 178: ...Chapter 25 Secure Policy ZyWALL USG ZLD CLI Reference Guide 178 ...
Page 218: ...Chapter 32 Application Patrol ZyWALL USG ZLD CLI Reference Guide 218 ...
Page 236: ...Chapter 34 IDP Commands ZyWALL USG ZLD CLI Reference Guide 236 ...
Page 246: ...Chapter 35 Content Filtering ZyWALL USG ZLD CLI Reference Guide 246 ...
Page 256: ...Chapter 36 Anti Spam ZyWALL USG ZLD CLI Reference Guide 256 ...
Page 262: ...Chapter 37 SSL Inspection ZyWALL USG ZLD CLI Reference Guide 262 ...
Page 268: ...Chapter 38 Device HA ZyWALL USG ZLD CLI Reference Guide 268 ...
Page 284: ...Chapter 41 Addresses ZyWALL USG ZLD CLI Reference Guide 284 ...
Page 288: ...Chapter 42 Services ZyWALL USG ZLD CLI Reference Guide 288 ...
Page 302: ...Chapter 46 Authentication Server ZyWALL USG ZLD CLI Reference Guide 302 ...
Page 338: ...Chapter 52 System Remote Management ZyWALL USG ZLD CLI Reference Guide 338 ...
Page 358: ...Chapter 53 File Manager ZyWALL USG ZLD CLI Reference Guide 358 ...
Page 372: ...Chapter 56 Session Timeout ZyWALL USG ZLD CLI Reference Guide 372 ...
Page 374: ...Chapter 57 Diagnostics ZyWALL USG ZLD CLI Reference Guide 374 ...
Page 384: ...Chapter 59 Maintenance Tools ZyWALL USG ZLD CLI Reference Guide 384 ...
Page 426: ...List of Commands Alphabetical ZyWALL USG ZLD CLI Reference Guide 426 ...