User Guide

250 Chapter 6 Configuring authentication
320818-A
where auth ID is an integer in the range 1 to 63 that uniquely identifies the
authentication method in the Nortel SNAS 4050 domain. If you do not specify the
auth ID in the command, you are prompted for it.
When you first create the method for the domain, you must enter the
authentication ID. After you have created the method and defined a name for it,
you can use either the ID or the name to access the method for configuration.
You can perform the following configuration tasks:
Adding the LDAP authentication method using the CLI” on page 250
“Modifying LDAP configuration settings using the CLI” on page 252
“Managing LDAP authentication servers using the CLI” on page 256
“Managing LDAP macros using the CLI” on page 258
“Managing Active Directory passwords using the CLI” on page 260
Adding the LDAP authentication method using the CLI
The command to create the authentication ID launches a wizard. When prompted,
enter the following information. For more information about the parameters, see
page 253. You can later modify all settings for the specific LDAP configuration
(see “Configuring authentication methods using the CLI” on page 239 and
“Modifying LDAP configuration settings using the CLI” on page 252).
authentication type — options are
radius|ldap|local. Enter ldap.
authentication method name (
auth name) — a string that specifies a name
for the method. After you have defined a name for the method, you can use
either the method name or the
auth ID to access the Authentication menu.
In future releases of the Nortel SNAS 4050 software, you will be able to
reference this string in a client filter, so that authentication to the server in
question becomes a condition for access rights for a group.
IP address of the LDAP server.
port on which the LDAP server is listening — the port number configured on
the LDAP server to specify the port used by the service. The default is 389.
search base entry — the Distinguished Name (DN) that points to one of the
following:
the entry that is one level up from the user entries (does not require
isdBindDN and isdBindPassword)