Cisco 4700M Configuration Manual page 92

Application control engine appliance security
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Configuring the AAA Server
The LDAP client and LDAP server initiate their interaction as follows:
Cisco 4700 Series Application Control Engine Appliance Security Configuration Guide
2-22
The LDAP client sends a bind request with the DN as the configured rootDN
and the password as the configured root password for the server group.
If the bind is successful, the LDAP client sends a search request that includes
the following:
baseDN—Configured baseDN
scope—Subtree
search filter—Configured filter with the $userid and $contextid replaced
with the actual username and context name, respectively
attributes—Configured attribute type for userprofile
If the search is successful, the LDAP server extracts the matched DN and user
profile attribute value from the search response where the matched DN is the
DN for the user.
Rebind as the user, which involves the LDAP client sending a bind request
with the DN as the user DN and the password as the user password.
If the bind is successful, the LDAP server returns an authentication PASS
message and also includes the user profile attribute value in this message.
The LDAP client sends an unbind request to the LDAP server.
Chapter 2
Configuring Authentication and Accounting Services
OL-16202-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents