Specifications

Advanced Operations 97
Installation and Operations Manual
LDAP
The PT22 supports Lightweight Directory Access Protocol (LDAP) Version 3. This support enables
authentication with LDAP servers; user accounts do not need to be individually created locally on each
unit.
This allows administrators to pre-define and configure (in each PT22 and in the LDAP server) a set of
necessary LDAP Groups, and access rights for each. User’s access rights can then be assigned or
revoked simply by making the user a member of one-or-more pre-defined PT22 LDAP Groups. User
accounts can be added, deleted, or changed in the LDAP server without any changes needed on
individual PT22 units.
LDAP support has been tested in the following environments:
Microsoft Active Directory (MSAD)
Novell eDirectory (eDir)
OpenLDAP
LDAP Command Summary
Command Description
Add PorttoLDAP Grants an LDAP group access to one or more serial ports
Create LDAPGroup Adds an LDAP group name
Delete PortfromLDAP Removes access to one or more serial ports for an LDAP group
List LDAPGroup Displays all accessible ports for an LDAP group
List LDAPGroups Displays privilege levels for all LDAP groups
Ping Verifies proper DNS configuration by name resolution
Remove LDAPGroup Deletes an LDAP group name
Set Authorder Specifies the authentication order for each new session attempt
Set DNS Sets the IP address of the Domain Name System (DNS) server
Set LDAP Enables/disables LDAP support
Set LDAP Bind Specifies the LDAP bind request password type
Set LDAP BindDN Specifies the user account Fully-Qualified Distinguished Name (FQDN) for binds
Set LDAP BindPW Specifies the user account password for binds
Set LDAP GroupAttr Specifies user class distinguished name (DN) or user membership group names
Set LDAP GroupType Specifies the data type for the Set LDAP GroupAttr command
Set LDAP Host Sets the IP address or hostname of the Directory Services server
Set LDAP Port Sets the LDAP server port number
Set LDAP UserBaseDN Sets the base distinguished name (DN) for the username search at login
Set LDAP UserFilter Sets the filter used for the username search at login
Set LDAP UseTLS/SSL Enables/disables LDAP over TLS/SSL support
Set LDAPGroup Access Sets the access level for an LDAP group
Set LDAPGroup Envmon Grants or removes privileges to view input and environmental monitoring status
Show LDAP Displays LDAP configurations
Show Network Displays network configuration information for all IPv4 and IPv6 settings