User Management
Configuring the User Authentication Settings
Cisco ISA500 Series Integrated Security Appliance Administrator Guide
284
9
•
Login Password:
If you choose
Give Login Name or Location in Tree
or
Give Bind Distinguished Name
as the login method, enter the password of
the account that can log into the LDAP server.
•
Protocol Version:
Choose either LDAP Version 2 or LDAP Version 3. Most
LDAP directories, including Active Directory, use LDAP Version 3.
STEP 5
In the
Schema
tab, enter the following information:
•
LDAP Schema:
Choose one of the following schemes:
-
Microsoft Active Directory
-
RFC2798 InetOrgPerson
-
RFC2307 Network Information Service
•
User Objects:
The selected predefined scheme will automatically populate
below fields with their correct values. The fields that are grayed out cannot
be edited, but you can manually specify some editable fields if you have
specific or proprietary LDAP scheme configurations.
-
Object Class:
The object class of the individual user account.
-
Login Name Attribute:
The user name that is used for login
authentication.
-
Qualified Login Name Attribute:
The attribute that sets an alternative
login name for the user in name@domain format.
-
User Group Membership Attribute:
The membership attribute that
contains information about the group to which the user object belongs.
This option is only available for Microsoft Active Directory.
-
Framed IP Address Attribute:
The attribute to retrieve a static IP
address that is assigned to a user in the directory.
•
User Group Objects:
The selected predefined scheme will automatically
populate below fields with their correct values.
-
Object Class:
The name associated with the group of attributes.
-
Member Attribute:
The attribute associated with a member.
STEP 6
In the
Directory
tab, enter the user direction information in the following fields:
•
Primary Domain:
Enter the user domain used by your LDAP implementation.
The domain components all use “dc=”, the domain is formatted as
“dc=ExampleCorporation,dc=com”.