Add LDAP users

You can add existing lightweight directory access protocol (LDAP) users for login. LDAP permissions are defined based on the user group.

Make sure that you have:
  • The domain name (i.e., pre-Windows 2000 name), referred to as <domainname>
  • The domain distinguished name, referred to as <domainDN>
  • One or more domain controller internet protocol (IP) addresses, referred to as <domaincontrollerip>
The supported lightweight directory access protocol (LDAP) formats are:
  • v2
  • v3
  1. In the top navigation bar, select Administration icon - which looks like a gear cog
    The administration page opens.
  2. In the Settings section, select Users.
    The Users management page opens.
  3. In the top right section, select LDAP.
    The LDAP page opens.
  4. In the top right section, select +Add.
    A dialog shows.
  5. In the Username field, enter a username.

    Note: This requires an admin user with full LDAP server permission. The Username for the LDAP server should be a distinguished name (DN) that follows the LDAP standard. For example, cn=username,cn=group,dc=nozominetworks,dc=com.
  6. In the Password field, enter a password.
  7. In the Domain Controller IP/Hostname 1 section:
  8. Optional: If necessary, and you chose LDAPS, select Verify SSL.
    Note: By default, the server's secure sockets layer (SSL) certificate is not verified.
  9. If you chose LDAP, in the Port field, enter a 389. If you chose LDAPS, in the Port field, enter 636.
  10. To check that Active Directory is running correctly on the port, select Check connection.
  11. To add another domain controller IP address, select Add host.
  12. In the Distinguished name field, enter a value.
  13. Optional: If necessary, select Connection timeout, and enter a value in seconds.
  14. To save the changes and validate the data, select Save.
    Note: If there are errors, they will show next to the Status field.