NETAVIS Observer 4.6 User Manual (October 2015)
Page 122 of 204
13 Active Directory Integration
You can configure your Observer server to import users from an Active Directory (AD)/LDAP server. In
this case the users are maintained in AD/LDAP and users are imported (mapped) to a user group in
Observer. The privileges and camera access rights of the users imported via Active Directory/LDAP can
be defined with the Observer user group they belong to.
When the Observer server connects the Active Directory/LDAP server for the first time, it loads all
matched users into the user group in Observer. These users are then cached in Observer (no user
passwords are stored in Observer). Every 2 minutes the list of users is reloaded from the Active
Directory/LDAP server.
Each time when a user that is defined in Active Directory/LDAP logs into Observer the password is
checked (authenticated) with the Active Directory/LDAP server. This means that at login time a
connection to the Active Directory/LDAP server has to be possible.
Note
: No Observer-specific information is stored in Active Directory/LDAP.
13.1 Configuring the users on the Active Directory server
All the users on the Active Directory server which should have access to
Observer
must be members of
the group which will be imported by
Observer
(though of course they can also be members of
additional other groups).
1.
Create a new Group with the desired Group Name (e.g.
Observer4
), Group Scope set to
Global
, and
the Group type set to
Security
.
2.
Add the desired users to the previously created group.