Management Functions
13WK-0H4
◼ Information Registered in User Authentication
Up to 5,001 users can be registered.
◼
Registering Department IDs
Up to 1,000 Department IDs can be registered.
◼
Authentication Functions
● When an Active Directory server is specied as an authentication server, the following system environment is
required.
Software (operating system):
Windows Server 2008 SP2
*1
/Windows Server 2008 R2 SP1/Windows Server 2012
*2
/
Windows Server 2012 R2
*2
*1 64-bit operating systems are not supported.
*2 Users cannot log in with Active Directory authentication if Kerberos armoring is enabled for KDC-related policies (group policies).
Make sure to disable Kerberos armoring.
● The current version of User Authentication supports 128-bit AES (Advanced Encryption Standard)
authentication and DES (Data Encryption Standard) as Kerberos encryption methods for the Active Directory
authentication. The encryption method that is used is automatically selected depending on the Active
Directory settings. When both of these methods are available, AES is used.
● When specifying an Active Directory server as an authentication server, use the following ports
*1
on the server.
To communicate with a DNS server:
port number 53
To communicate with a KDC (Key Distribution Center): port number 88
To communicate with a server for LDAP directory service (can be changed to an arbitrary port
number for the LDAP service):
port number 389
*1 The above port numbers are default values. These numbers may vary depending on the selected settings.
● When specifying an LDAP server as an authentication server, the following system environment is required.
Software:
eDirectory V8.8 SP7 for Windows and later
Domino V8.5 for Windows and later
Operating system: Requirements are pursuant to the product specications of the LDAP server.
Appendix
1062