HP Intelligent Management Center v5.1 TACACS+ Authentication Manager Administrator Guide
81
Testing connectivity to an LDAP server
To test the connectivity to an LDAP server:
1. Click the Service tab.
2. Select TACACS+ AuthN Manager > LDAP Service > LDAP Servers from the navigation tree.
The LDAP Server List displays all LDAP servers.
3. Click the Test link for the LDAP server.
The test result appears at the top of the page. If the LDAP server fails to be connected, follow the
displayed tips to check for LDAP server configuration errors.
Modifying LDAP server settings
To modify the settings of an LDAP server:
1. Click the Service tab.
2. Select TACACS+ AuthN Manager > LDAP Service > LDAP Servers from the navigation tree.
The LDAP Server List displays all LDAP servers.
3. Click the Modify icon for the LDAP server you want to modify.
The page for modifying LDAP servers appears.
4. Modify basic information about the LDAP server:
Server Name—Cannot be modified.
Version—Select an LDAP protocol version, 2 or 3 from the list. Make sure that the LDAP server
supports the selected protocol version. Otherwise, TAM cannot communicate with the LDAP
server.
IP Address—Enter the IP address of the LDAP server. If the LDAP server has more than one NIC,
enter the IP address of the NIC used for communicating with TAM.
Port—Enter the TCP port number on which the LDAP server listens for the packets from TAM. The
default port number is 389, which is used by most LDAP servers.
Server Type—Cannot be modified.
Service Sync Type—Cannot be modified.
Reconnect Interval—Select the time that TAM must wait before retrying to connect to the LDAP
server after a connection failure. As shown in Figure 19, without Reconnect Interval, a
requesting LDAP user must wait for a time specified by Connection Wait Timeout before being
told they have been rejected because the LDAP server cannot be reached. With this parameter
configured, each time TAM fails to connect the LDAP server, the specified Reconnect Interval
takes effect. During this interval, TAM directly rejects all authentication requests that must be
forwarded to the LDAP server. Select Disable Auto Connect to disable TAM from automatically
retrying to connect to the LDAP server after a connection failure. In this case, an operator must
manually connect the LDAP server to TAM. This operation is available on the LDAP Server List
page. For more information, see "Viewing the LDAP server."
Connection Wait Timeout—Enter the maximum duration of each connection attempt. If TAM
fails to connect to the LDAP server within this period, the connection attempt is considered
failed.
Sync Wait Timeout—Enter the maximum duration of each synchronization process. The sync
wait timer starts when TAM starts synchronizing user data from the LDAP server. When this timer