Users Guide

Paramete
r
Description
Click on any node in the tree structure that is displayed to select it as a Base DN. Note
that the Base DN is displayed at the top of the LDAP Browser.
NOTE: This is also a method to test the connectivity to your LDAP or AD directory. If the
values entered for the primary server attributes are correct, you can browse the
directory hierarchy by clicking Search Base Dn.
Search
Scope
Select the scope of the search you want to perform, starting at the Base DN.
l Base Object Search allows you to search at the level specified by the base DN.
l One Level Search allows you to search up to one level lesser to the immediate
children of the base DN.
l Subtree Search allows you to search the entire subtree under the base DN
(including at the base DN level).
LDAP
Referral
Enable this check box to automatically follow referrals returned by your directory server
in search results. Refer to your directory documentation for more information on
referrals.
Bind User Enable this checkbox to authenticate users by performing a bind operation on the
directory using the credentials (user name and password) obtained during
authentication. For clients to be authenticated by using the LDAP bind method, Policy
Manager must receive the password in cleartext.
Password
Attribute
(Available
only for
Generic
LDAP)
Enter the name of the attribute in the user record from which user password can be
retrieved. This is not available for Active Directory.
Table 81:
Generic LDAPor Active Directory - Primary Tab Parameters (Continued)
Dell Networking W-ClearPass Policy Manager 6.4 | User Guide Authentication and Authorization | 159