XYGATE User Authentication Reference Manual
XYGATE
®
User Authentication
™
(XUA) 1.85 Reference Manual
Chapter 12. Configuring the LDAP Interface
XYPRO Technology Corporation 75 Proprietary and Confidential
enter as part of a prefix added to the password response when authenticating via
LDAP in order to indicate which LDAP authentication point to use.
LDAP_GROUP LD2
What is the DNS name or IP Address of the LDAP server? ldap2.example.com
What is the LDAP server version <3>?
What is the LDAP server type (Windows or OpenLDAP) <WINDOWS>? OPENLDAP
What is the TCPIP process name <$ZTC0>?
What BIND name is used for the LDAP server <press Enter if none>?
How many seconds should XUA wait for an LDAP response before timeout <5>?
If you would like to encrypt communications between XUA and the LDAP
server, specify the unqualified name of the certificate file.
Enter unqualified certificate file name <press Enter if none>?
What is the LDAP server port number <389>?
LDAP_GROUP LD2
LDAP_HOST ldap2.example.com
LDAP_VERSION 3
LDAP_TYPE OPENLDAP
LDAP_PROXY_IP_PROC $ZTC0
!LDAP_BIND_NAME
LDAP_PROXY_TIMEOUT 5
!LDAP_PROXY_CACERT "ldapcert"
LDAP_PORT 389
LDAP_PROXY_LOG /G/SYSTEM/XYGATEUA/zzldlg2
LDAP_GROUP_DEFAULT OFF
!LDAP_LOOKUP ON
!LDAP_USERS_CONTAINER "cn=users,dc=domain,dc=com"
!LDAP_LOOKUP_ATTRIBUTE "samaccountname"
!LDAP_DN_ATTRIBUTE "dn"
!LDAP_SEARCH_USER "cn=search-user,cn=users,dc=domain,dc=com"
!LDAP_PROXY_ENV ""
!LDAP_PROXY_OPTIONS "-mon -d"
!LDAP_PROXY_HOMETERM <telserv terminal>
Would you like to add another LDAP Group (Y/N)? N
(Item 13):
LDAP_GROUP_CHARACTERS is the character sequence a user surrounds the
LDAP GROUP value with when entering the LDAP GROUP as a password
prefix to indicate which LDAP GROUP should be used.
This value must contain between 1 and 10 characters without spaces and
is required since more than one LDAP GROUP is configured.
Enter value <"++">?
This prompt will only appear if multiple LDAP authentication points are being
configured. Enter a string of characters that users will surround the LDAP group with
as a prefix to the password response, to indicate which LDAP group is to be used for
authentication. That prefix should be composed of the LDAP group, surrounded by the
LDAP_GROUP_CHARACTERS string.