
5-20
Cisco Wireless LAN Controller Configuration Guide
OL-13826-01
Chapter 5 Configuring Security Solutions
Configuring LDAP
Figure 5-13 LDAP Servers > New Page
Step 3
If you are adding a new server, choose a number from the Server Index (Priority) drop-down box to
specify the priority order of this server in relation to any other configured LDAP servers. You can
configure up to seventeen servers. If the controller cannot reach the first server, it tries the second one
in the list and so on.
Step 4 If you are adding a new server, enter the IP address of the LDAP server in the Server IP Address field.
Step 5 If you are adding a new server, enter the LDAP server’s TCP port number in the Port Number field. The
valid range is 1 to 65535, and the default value is 389.
Step 6 In the User Base DN field, enter the distinguished name (DN) of the subtree in the LDAP server that
contains a list of all the users. For example, ou=organizational unit, .ou=next organizational unit, and
o=corporation.com. If the tree containing users is the base DN, type o=corporation.com or
dc=corporation,dc=com.
Step 7 In the User Attribute field, enter the name of the attribute in the user record that contains the username.
You can obtain this attribute from your directory server.
Step 8 In the User Object Type field, enter the value of the LDAP objectType attribute that identifies the record
as a user. Often, user records have several values for the objectType attribute, some of which are unique
to the user and some of which are shared with other object types.
Step 9 If you are adding a new server, choose Secure from the Server Mode drop-down box if you want all
LDAP transactions to use a secure TLS tunnel. Otherwise, choose None, which is the default setting.
Step 10 In the Server Timeout field, enter the number of seconds between retransmissions. The valid range is 2
to 30 seconds, and the default value is 2 seconds.
Step 11 Check the Enable Server Status check box to enable this LDAP server or uncheck it to disable it. The
default value is disabled.
Step 12 Click Apply to commit your changes.
Step 13 Click Save Configuration to save your changes.
Step 14 Follow these steps to specify LDAP as the priority backend database server for local EAP authentication:
a. Click Security > Local EAP > Authentication Priority to open the Priority Order > Local-Auth
page (see Figure 5-17).
Komentáře k této Příručce