Zyxel NXC2500 [163/275] Aaa group server ldap commands

Zyxel NXC2500 [163/275] Aaa group server ldap commands
Chapter 26 AAA Server
NXC CLI Reference Guide
163
26.2.2 aaa group server ldap Commands
The following table lists the aaa group server ldap commands you use to configure a
group of LDAP servers.
[no] server domain-auth
activate
Activates server domain authentication. The no
parameter deactivates it.
server domain-auth domain-
name <netbios_name>
Adds the NetBIOS name of the AD server. The NXC
uses it with the user name in the format
NetBIOS\USERNAME to do authentication.
The NXC uses the format USERNAME@realm if you
do not configure the NetBIOS name.
server domain-auth username
[username] password
[password]
Sets the user name and password for domain
authentication.
server domain-auth realm
[realm]
Sets the realm for domain authentication.
[no] server port port_no Sets the AD port number. Enter a number between 1
and 65535. The default is 389. The
no command
clears this setting.
[no] server search-time-limit
time
Sets the search timeout period (in seconds). Enter a
number between 1 and 300. The
no command clears
this setting and set this to the default setting of 5
seconds.
[no] server ssl Enables the NXC to establish a secure connection to
the AD server. The
no command disables this feature.
Table 86 aaa group server ad Commands (continued)
COMMAND DESCRIPTION
Table 87 aaa group server ldap Commands
COMMAND DESCRIPTION
clear aaa group server ldap
[group-name]
Deletes all LDAP server groups or the specified LDAP
server group.
Note: You can NOT delete a server group
that is currently in use.
show aaa group server ldap group-
name
Displays the specified LDAP server group settings.
[no] aaa group server ldap group-
name
Sets a descriptive name for an LDAP server group.
Use this command to enter the sub-command mode.
The
no command deletes the specified server group.
aaa group server ldap rename
group-name group-name
Changes the descriptive name for an LDAP server
group.
aaa group server ldap group-name Enter the sub-command mode.
[no] server alternative-cn-
identifier uid
Sets the second type of identifier that the users can
use to log in if any. For example “name” or “e-mail
address”. The
no command clears this setting.
[no] server basedn basedn Sets a base distinguished name (DN) to point to the
LDAP directory on the LDAP server group. The
no
command clears this setting.

Содержание

Скачать