10: User Authentication
SecureLinx SLC User Guide
109
Bind Name
The name for a non-anonymous bind to an LDAP server.
This item has the same format as LDAP Base. One
example is cn=administrator,cn=Users,dc=domain,dc=com
Bind Password
and Retype
Password
Password for a non-anonymous bind. This entry is
optional. Acceptable characters are
a-z
,
A-Z,
and
0-9
.
The maximum length is 127 characters.
Enable Active
Directory Support
Select to enable. Active Directory is a directory service
from Microsoft that is a part of Windows 2000 and later
versions of Windows. It is LDAP- and Kerberos- compliant.
Disabled by default.
Custom Menu
If custom menus have been created (see
Custom User
Menus
on page 125),
you can assign a default custom
menu to LDAP users.
Data Ports
The ports users are able to monitor and interact with using
the
connect direct
command.
Listen Port
The ports users are able to monitor using the
connect
listen
command.
Clear Port Buffers
The ports whose port buffer users may clear using the
set
locallog clear
command.
3. In the User Rights section, select the user group to which LDAP users will belong:
Group
Select the group to which the LDAP users will belong:
Default Users:
This group has only the most basic rights
(described above).
Power Users:
This group has the same rights as Default
Users plus
Networking
,
Date/Time
,
Reboot & Shutdown
,
and
Diagnostics & Reports
.
Administrators:
This group has all possible rights.
4. Select or clear the checkboxes for the following rights:
Full Administrative
Right to add, update, and delete all editable fields.
Networking
Right to enter Network settings.
Services
Right to enable and disable system logging, SSH and Telnet
logins, SNMP, and SMTP.
Date/Time
Right to set the date and time.
Local Users
Right to add or delete local users on the system.
Remote
Authentication
Right to assign a remote user to a user group and assign a
set of rights to the user.
SSH Keys
Right to set SSH keys for authenticating users.
User Menus
Right to create a custom user menu for the CLI for LDAP
users.