XYGATE User Authentication Reference Manual
XYGATE
®
 User Authentication
™
 (XUA) 1.85 Reference Manual 
Chapter 12. Configuring the LDAP Interface 
XYPRO Technology Corporation  75  Proprietary and Confidential 
enter as part of a prefix added to the password response when authenticating via 
LDAP in order to indicate which LDAP authentication point to use. 
LDAP_GROUP LD2 
What is the DNS name or IP Address of the LDAP server? ldap2.example.com 
What is the LDAP server version <3>?  
What is the LDAP server type (Windows or OpenLDAP) <WINDOWS>? OPENLDAP 
What is the TCPIP process name <$ZTC0>?  
What BIND name is used for the LDAP server <press Enter if none>?  
How many seconds should XUA wait for an LDAP response before timeout <5>?  
If you would like to encrypt communications between XUA and the LDAP 
server, specify the unqualified name of the certificate file. 
Enter unqualified certificate file name <press Enter if none>?  
What is the LDAP server port number <389>?  
LDAP_GROUP      LD2 
LDAP_HOST      ldap2.example.com 
LDAP_VERSION      3 
LDAP_TYPE      OPENLDAP 
LDAP_PROXY_IP_PROC    $ZTC0 
!LDAP_BIND_NAME 
LDAP_PROXY_TIMEOUT    5 
!LDAP_PROXY_CACERT    "ldapcert" 
LDAP_PORT      389 
LDAP_PROXY_LOG     /G/SYSTEM/XYGATEUA/zzldlg2 
LDAP_GROUP_DEFAULT     OFF 
!LDAP_LOOKUP      ON 
!LDAP_USERS_CONTAINER   "cn=users,dc=domain,dc=com" 
!LDAP_LOOKUP_ATTRIBUTE   "samaccountname" 
!LDAP_DN_ATTRIBUTE    "dn" 
!LDAP_SEARCH_USER    "cn=search-user,cn=users,dc=domain,dc=com" 
!LDAP_PROXY_ENV     "" 
!LDAP_PROXY_OPTIONS    "-mon -d" 
!LDAP_PROXY_HOMETERM    <telserv terminal> 
Would you like to add another LDAP Group (Y/N)? N 
(Item 13): 
LDAP_GROUP_CHARACTERS is the character sequence a user surrounds the 
LDAP GROUP value with when entering the LDAP GROUP as a password 
prefix to indicate which LDAP GROUP should be used. 
This value must contain between 1 and 10 characters without spaces and 
is required since more than one LDAP GROUP is configured. 
Enter value <"++">?  
This prompt will only appear if multiple LDAP authentication points are being 
configured. Enter a string of characters that users will surround the LDAP group with 
as a prefix to the password response, to indicate which LDAP group is to be used for 
authentication. That prefix should be composed of the LDAP group, surrounded by the 
LDAP_GROUP_CHARACTERS string. 










