LDAP Configuration entries < 11.5
These are the configuration entries that got used in version 11.4 and below.
For the new LDAP configuration entries got to Server Configuration File.
Web Setting | Config File Parameter | Config File Default Value | Config File Possible Values |
|---|---|---|---|
Enable LDAP authentication |
|
|
|
Allow users not existing in LDAP directory |
| false |
|
LDAP hostname |
|
| Examples: |
LDAP username |
|
| Examples:
|
Search context |
|
| Examples:
|
Search match criteria |
|
| Examples:
Enable access for users of a specific group only (the group cloudusers are used in the example below):
Also works with nested groups, but requires matching rule object identifier. |
Mail address mapping |
|
| Example:
ldap3.search.mail_addresses=mailAddresses |
Enable LDAP synchronization Since: 10.0 |
|
|
|
Type of LDAP synchronization Since: 10.6 |
| 0 |
|
Time interval for LDAP synchronization Since: 10.6 |
|
|
|
Search match criteria for groups Since: 10.0 |
|
| Examples:
|
Group member attribute Since: 10.0 |
|
| Examples:
|
Group and user "member of" attribute Since: 10.0 |
|
| Examples:
|
Organization mapping Since: 10.0 |
|
| Examples:
|
Enable ACL synchronization Since: 10.0 |
|
| Examples:
|
Match accounts by mail attribute Since: 10.1 |
|
|
|
Import match criteria Since: 10.1 |
|
|
|
Mapping of username Since: 10.2 |
|
|
|
Mapping of given name Since: 10.2 |
|
|
|
Mapping of common name Since: 10.2 |
|
|
|
Mapping of middle name Since: 10.2 |
|
|
|
Mapping of surname Since: 10.2 |
|
|
|
Mapping of the display name Since: 10.2 |
|
|
|
Mapping of telephone number Since: 10.2 |
|
|
|
Mapping of account expiration date Since: 10.2 |
|
| ISO-8601, unix timestamp or yyyyMMddHHmmss |
Mapping of date the account is valid from Since: 11 |
|
| ISO-8601, unix timestamp or yyyyMMddHHmmss |
Sync LDAP groups |
|
|
|
Sync LDAP groups expression |
|
|
|