
4. Enter the data requested on the screen. See Editing Active Directory search context (page 56)
or Editing OpenLDAP search context (page 57) for more information.
5. Click Add to add the authentication directory service or click Add+ to add more directory
services.
Determining search context when editing a directory
To specify the search context on the Edit Security screen, it it helpful to know some details about
the internal structure of the LDAP server.
Browsing the LDAP server using an open source client can help you determine the search context,
as shown in the following figures.
Editing Active Directory search context
What should I specify for the
user identifier
(first text box) in the search context?
Typically, CN (common name) is the user identifier in Active Directory. Specify CN.
What should I specify for the
user search base
(second text box) in the search context?
The following figure shows the “Users” branch of an Active Directory server. “Users” is a container,
so in this example, you specify CN=Users.
Figure 7 User search base: CN=Users
The following figure shows the “Users3” branch of an Active Directory server. “Users3” is an OU
(organizational unit). In this example, you specify OU=Users3.
Figure 8 User search base: OU=Users3
56 Manage users and groups
Comentários a estes Manuais