Configuring the console switch 53
1.
Select Unit View>Appliance>Appliance Settings>User Accounts>LDAP>Query. The Appliance LDAP
Query page appears.
NOTE: The LDAP Search and Query parameters can only be configured if LDAP
Authentication is enabled on the LDAP Overview ("Configuring LDAP" on page 50) page.
2. Configure the Query Mode parameters for:
o Appliance—Used to authenticate administrators and users attempting to access the console
switch itself.
o Target Device—Used to authenticate users attempting to access attached target devices.
There are three different modes available:
o Basic—A username and password query for the user is sent to the directory service. Once
verified, the user is given access to the appliance and any attached target devices.
o User Attribute—A username, password, and Access Control Attribute query for the user is sent to
the directory service. The Access Control Attribute is read from the user object in Active
Directory. If no values are found, the user is given no access to the appliance or target devices,
unless the user has User Admin privileges to the appliance.
o Group Attribute—A username, password, and group query sent to the directory service for an
appliance and attached target devices when using Appliance query mode or for a selected
target device when using Target Device query mode. If a group is found containing the user and
appliance name, the user is given access to either the appliance or target devices when using
Appliance query mode. If a group is found containing the user and target device IDs, the user is
given access to the selected target device when using Target Device query mode.
3. Configure the Group Configuration parameters: