Owner's Manual

Using the CMC Directory Service 315
LDAP Server Port — Port of LDAP over SSL, default to 636 if not
configured. Non-SSL port is not supported in CMC version 3.0 as the
password cannot be transported without SSL.
Use DNS to find LDAP Servers — Selecting this option causes LDAP to
use the search domain and the service name through DNS. You must
select Static or DNS.
The following DNS query is performed for SRV records:
_<Service Name>._tcp.<Search Domain>
where <Search Domain> is the root level domain to use within the query and
<Service Name> is the service name to use within the query. For example:
_ldap._tcp.dell.com
where ldap is the service name and dell.com is the search domain.
Managing LDAP Group Settings
The table in the Group Settings section lists role groups, displaying associated
names, domains, and privileges for any role groups that are already
configured.
To configure a new role group, click a role group name that does not have a
name, domain, and privilege listed.
To change the settings for an existing role group, click the role group
name.
When you click a role group name, the Configure Role Group page appears.
Help for that page is available through the Help link at the top right corner of
the page.
Managing LDAP Security Certificates
This sections displays the properties for the LDAP certificate recently
uploaded to CMC. If you uploaded a certificate, use this information to verify
that the certificate is valid and has not expired.
NOTE: By default, CMC does not have a certificate authority-issued server
certificate for Active Directory. You must upload a current, certificate authority-
signed server certificate.