HP Intelligent Management Center v5.1 TACACS+ Authentication Manager Administrator Guide
93
To view an LDAP user details in the all bound user list:
1. Click the User tab.
2. Select Device User View > LDAP Users from the navigation tree.
The All Bound User List displays all LDAP users.
3. Click the account name of an LDAP user whose detailed information you want to view.
Device user details contents
• Account Name—Account name of the LDAP user. When an LDAP user is blacklisted, the account
name of the user is followed by Blacklisted Users.
• User Name—Real name of the LDAP user.
• Device User Group—Device user group to which the LDAP user belongs.
• Status—LDAP user account state: Normal, or Cancelled. Normal indicates that the user account
can be used for device login. Cancelled indicates that the user account is already deleted and
cannot be used for device login.
• Group Authorization Policy—Authorization policy used by the device user group to which the user
belongs: an existing authorization policy, or CLI Access Not Supported. The former indicates the
user is controlled by the specified authorization policy. Click the name link of the policy to view its
details (see "
Viewing authorization policy details" for more information). The latter indicates device
users of the group can only log in to a device but cannot execute any command. If no authorization
policy is specified for the device user group, this field displays the authorization policy assigned to
its parent group.
• User Authorization Policy—Name of the authorization policy used by the user. Click the name link
of the policy to view its details (see "
Viewing authorization policy details" for more information). If
this field displays CLI Access Not Supported, the user can log in to the device but cannot execute
any command. If no authorization policy is specified for the user, the user will use the authorization
policy assigned to the device user group. If different authorization policies are assigned to the user
and the device user group to which the user belongs, the policy configured for the device user takes
effect.
• Creation Date—Date when the LDAP user was created, in the format of YYYY-MM-DD.
• Last Logoff—Date and time when the LDAP user last logged off, in the format of YYYY-MM-DD
hh:mm. If the user has never logged in to a device, this field displays the time when the user account
was created.
• Expiration Date—Date when the LDAP user expires and becomes invalid, in the format of
YYYY-MM-DD. An empty field indicates that the user will never be expired.
• Max. Online Users—Maximum number of online users allowed by an LDAP user account.
• Enable Privilege-Increase Password—Whether privilege-increase password is enabled, Yes or No.
Action
The Action menu is located on the upper right corner of the LDAP User Information page, and offers the
following options:
• Refresh—Click the link to refresh the LDAP User Information page.
• Modify—Click Modify to enter the page for modifying the LDAP user.
• Cancel Account—Click Cancel Account. A confirmation dialog box appears. Click OK to cancel the
LDAP user account.