Dell Powerconnect W-ClearPass Hardware Appliances W-ClearPass Policy Manager 6 - Page 132

Parameter, Description, Base Object Search, Subtree Search, One Level Search, Generic LDAP

Page 132 highlights

Parameter NetBIOS Domain Name Verify Server Certificate Base DN Description The AD domain name for this server. Policy Manager prepends this name to the user ID to authenticate users found in this Active Directory. NOTE: This setting is only available for Active Directory. Select this checkbox if you want to verify the Server Certificate as part of the authentication. Enter DN of the node in your directory tree from which to start searching for records. After you have entered values for the fields described above, click on Search Base DN to browse the directory hierarchy. The LDAP Browser is popped up. You can navigate to the DN that you want to use as the Base DN. Search Scope LDAP Referral Bind User Password Attribute (Available only for Generic LDAP directory) User Certificate Click on any node in the tree structure that is displayed to select it as a Base DN. Note that the Base DN is displayed at the top of the LDAP Browser. NOTE: This is also one way to test the connectivity to your LDAP or AD directory. If the values entered for the primary server attributes are correct, you should be able to browse the directory hierarchy by clicking on Search Base DN Scope of the search you want to perform, starting at the Base DN. l Base Object Search allows you to search at the level specified by the base DN. l Subtree Search allows you to search the entire subtree under the base DN (including at the base DN level). l One Level Search allows you to search up to one level below (immediate children of) the base DN. Enable this check box to automatically follow referrals returned by your directory server in search results. Refer to your directory documentation for more information on referrals. Enable to authenticate users by performing a bind operation on the directory using the credentials (user name and password) obtained during authentication. For clients to be authenticated by using the LDAP bind method, Policy Manager must receive the password in cleartext. Enter the name of the attribute in the user record from which user password can be retrieved. This is not available for Active Directory. Enter the name of the attribute in the user record from which user certificate can be retrieved. 132 Dell Networking W-ClearPass Policy Manager 6.0 | User Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372

132
Dell Networking W-ClearPass Policy Manager 6.0 | User Guide
Parameter
Description
NetBIOS Domain
Name
The AD domain name for this server. Policy Manager prepends this name to the user ID to
authenticate users found in this Active Directory.
NOTE:
This setting is only available for Active Directory.
Verify Server
Certificate
Select this checkbox if you want to verify the Server Certificate as part of the
authentication.
Base DN
Enter DN of the node in your directory tree from which to start searching for records.
After you have entered values for the fields described above, click on Search Base DN to
browse the directory hierarchy. The LDAP Browser is popped up. You can navigate to the
DN that you want to use as the Base DN.
Click on any node in the tree structure that is displayed to select it as a Base DN. Note that
the Base DN is displayed at the top of the LDAP Browser.
NOTE:
This is also one way to test the connectivity to your LDAP or AD directory. If the
values entered for the primary server attributes are correct, you should be able to browse
the directory hierarchy by clicking on Search Base DN
Search Scope
Scope of the search you want to perform, starting at the Base DN.
l
Base Object Search
allows you to search at the level specified by the base DN.
l
Subtree Search
allows you to search the entire subtree under the base DN (including
at the base DN level).
l
One Level Search
allows you to search up to one level below (immediate children of)
the base DN.
LDAP Referral
Enable this check box to automatically follow referrals returned by your directory server in
search results. Refer to your directory documentation for more information on referrals.
Bind User
Enable to authenticate users by performing a bind operation on the directory using the
credentials (user name and password) obtained during authentication.
For clients to be authenticated by using the LDAP bind method, Policy Manager must
receive the password in cleartext.
Password Attribute
(Available only for
Generic LDAP
directory)
Enter the name of the attribute in the user record from which user password can be
retrieved. This is not available for Active Directory.
User Certificate
Enter the name of the attribute in the user record from which user certificate can be
retrieved.