HP Intelligent Management Center v5.1 TACACS+ Authentication Manager Administrator Guide

93
To view an LDAP user details in the all bound user list:
1. Click the User tab.
2. Select Device User View > LDAP Users from the navigation tree.
The All Bound User List displays all LDAP users.
3. Click the account name of an LDAP user whose detailed information you want to view.
Device user details contents
Account NameAccount name of the LDAP user. When an LDAP user is blacklisted, the account
name of the user is followed by Blacklisted Users.
User NameReal name of the LDAP user.
Device User GroupDevice user group to which the LDAP user belongs.
StatusLDAP user account state: Normal, or Cancelled. Normal indicates that the user account
can be used for device login. Cancelled indicates that the user account is already deleted and
cannot be used for device login.
Group Authorization PolicyAuthorization policy used by the device user group to which the user
belongs: an existing authorization policy, or CLI Access Not Supported. The former indicates the
user is controlled by the specified authorization policy. Click the name link of the policy to view its
details (see "
Viewing authorization policy details" for more information). The latter indicates device
users of the group can only log in to a device but cannot execute any command. If no authorization
policy is specified for the device user group, this field displays the authorization policy assigned to
its parent group.
User Authorization PolicyName of the authorization policy used by the user. Click the name link
of the policy to view its details (see "
Viewing authorization policy details" for more information). If
this field displays CLI Access Not Supported, the user can log in to the device but cannot execute
any command. If no authorization policy is specified for the user, the user will use the authorization
policy assigned to the device user group. If different authorization policies are assigned to the user
and the device user group to which the user belongs, the policy configured for the device user takes
effect.
Creation DateDate when the LDAP user was created, in the format of YYYY-MM-DD.
Last LogoffDate and time when the LDAP user last logged off, in the format of YYYY-MM-DD
hh:mm. If the user has never logged in to a device, this field displays the time when the user account
was created.
Expiration DateDate when the LDAP user expires and becomes invalid, in the format of
YYYY-MM-DD. An empty field indicates that the user will never be expired.
Max. Online UsersMaximum number of online users allowed by an LDAP user account.
Enable Privilege-Increase Password—Whether privilege-increase password is enabled, Yes or No.
Action
The Action menu is located on the upper right corner of the LDAP User Information page, and offers the
following options:
RefreshClick the link to refresh the LDAP User Information page.
ModifyClick Modify to enter the page for modifying the LDAP user.
Cancel AccountClick Cancel Account. A confirmation dialog box appears. Click OK to cancel the
LDAP user account.