User's Manual

User Management
662
SonicOS Enhanced 4.0 Administrator Guide
Note Use the user’s name in the Login user name field, not a username or login ID. For example,
John Doe would login as John Doe, not jdoe.
Step 6 Select the LDAP version from the Protocol version drop-down menu, either LDAP version 2 I
(LDAPv2) or LDAP version 3 (LDAPv3). Most implementations of LDAP, including AD, employ
LDAPv3.
Step 7 Check the Use TLS (SSL) box to use Transport Layer Security (SSL) to login to the LDAP
server. It is strongly recommended to use TLS to protect the username and password
information that will be sent across the network. Most implementations of LDAP server,
including AD, support TLS.
Step 8 Check the Send LDAP ‘Start TLS’ request to allow the LDAP server to operate in TLS and
non-TLS mode on the same TCP port. Some LDAP server implementations support the Start TLS
directive rather than using native LDAP over TLS. This allows the LDAP server to listen on one port
(normally 389) for LDAP connections, and to switch to TLS as directed by the client. AD does not
use this option, and it should only be selected if required by your LDAP server.