Create an Active Directory Authentication Server
To create a new Active Directory (AD) authentication server, complete the following steps.
Some fields on the page are already populated with recommended settings. Required fields are marked with a red carat.
- On the toolbar, click Access > Authentication Servers.
- Click Create and then select Active Directory.
- General Properties section.
- In the Name box , type a unique name that identifies this authentication server.
- The Enabled check box is selected by default. This means that the server will be active.
- In the Host box, type either an IP address or DNS Name. Note: If you enter a DNS Name, the system will use DNS Name over IP address.
- In the Port box, type the port the remote server is listening. The default port for LDAP is 389 and for SSL is 636.
- Select an Encryption type from the list.
- None
- TLS/SSL
- TLS/SSL Without Certificate Verification
- StartTLS
- StartTLS Without Certificate Verification
- In the Server Retries box, type the number of times an attempt will be made to contact the remote server. The default is set to 3.
- In the Server Timeout (seconds) box, type the number of seconds to wait for a response from the remote server. The default is set to 10 seconds.
- Active Directory section.
- In the Domain box, type the domain the user will use to access Active Directory.
- In the Bind Distinguished Name box, type the user name of the administrative account that has permission to perform searches on the remote authentication. server.
- In the Bind Password box, type the administrative account password.
- Click Test to know if the AD server has been set up correctly.
- Click Save.
- You can now add User Group Mapping.