McAfee EPOCDE-AA-BA Product Guide - Page 97

Registering LDAP servers, LDAP Server

Page 97 highlights

Setting up registered servers Registering servers 9 Option Transfer systems Definition Specifies whether to enable or disable the ability to transfer systems for this server. When enabled, select Automatic sitelist import or Manual sitelist import. When choosing Manual sitelist import, it is possible to cause older versions of McAfee Agent (version 4.0 and earlier) to be unable to contact their Agent Handler. This may happen when • Transferring systems from this McAfee ePO server to the registered McAfee ePO server • and an Agent Handler name appears alpha-numerically earlier than the ePO Server name in the supplied sitelist • and the older Agents use that Agent Handler Use NTLMv2 User name 4 Click Save. Optionally choose to use NT LAN Manager authentication protocol. Select this option when the server you are registering employs this protocol. Specifies the user name for this server. Registering LDAP servers You must have a registered LDAP (Lightweight Directory Access Protocol) server to use Policy Assignment Rules, to enable dynamically assigned permission sets, and to enable Active Directory User Login. Task For option definitions, click ? in the interface. 1 Select Menu | Configuration | Registered Servers, then click New Server. 2 From the Server type menu on the Description page, select LDAP Server, specify a unique name and any details, then click Next. 3 Choose whether you are registering an OpenLDAP or Active Directory server in the LDAP server type list. The rest of these instructions will assume an Active Directory server is being configured. OpenLDAP-specific information is included where required. 4 Choose if you are specifying a Domain name or a specific server name in the Server name section. Use DNS-style domain names (e.g. internaldomain.com) and fully-qualified domain names or IP addresses for servers. (e.g. server1.internaldomain.com or 192.168.75.101) Using domain names gives fail-over support, and allows you to choose only servers from a specific site if desired. OpenLDAP servers can only use server names. They cannot be specified by domain. McAfee® ePolicy Orchestrator® 4.6.0 Software Product Guide 97

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328

Option
Definition
Transfer systems
Specifies whether to enable or disable the ability to transfer systems for this
server. When enabled, select
Automatic sitelist import
or
Manual sitelist import
.
When choosing
Manual sitelist import
, it is possible to cause older versions of
McAfee Agent (version 4.0 and earlier) to be unable to contact their Agent
Handler. This may happen when
Transferring systems from this McAfee ePO server to the registered
McAfee ePO server
and an Agent Handler name appears alpha-numerically earlier than
the ePO Server name in the supplied sitelist
and the older Agents use that Agent Handler
Use NTLMv2
Optionally choose to use NT LAN Manager authentication protocol. Select this
option when the server you are registering employs this protocol.
User name
Specifies the user name for this server.
4
Click
Save
.
Registering LDAP servers
You must have a registered LDAP (Lightweight Directory Access Protocol) server to use Policy
Assignment Rules, to enable dynamically assigned permission sets, and to enable Active Directory
User Login.
Task
For option definitions, click
?
in the interface.
1
Select
Menu
|
Configuration
|
Registered Servers
, then click
New Server
.
2
From the
Server type
menu on the
Description
page, select
LDAP Server
, specify a unique name and any
details, then click
Next
.
3
Choose whether you are registering an OpenLDAP or Active Directory server in the
LDAP server type
list.
The rest of these instructions will assume an Active Directory server is
being configured. OpenLDAP-specific information is included where
required.
4
Choose if you are specifying a Domain name or a specific server name in the
Server name
section.
Use DNS-style domain names (e.g. internaldomain.com) and fully-qualified domain names or IP
addresses for servers. (e.g. server1.internaldomain.com or 192.168.75.101)
Using domain names gives fail-over support, and allows you to choose only servers from a specific
site if desired.
OpenLDAP servers can only use server names. They cannot be specified
by domain.
Setting up registered servers
Registering servers
9
McAfee
®
ePolicy Orchestrator
®
4.6.0 Software Product Guide
97