Skip to main content

Use this guide along with the Data Tab Configuration guide to configure a Lightweight Directory Services (AD-LDS)-integrated SecureAuth IdP realm.

44833256.png

1. Select Lotus Domino from the Type dropdown

2. Provide the Domain of the Active Directory

3. Click Generate LDAP Connection String, and the Connection String will auto-populate

4. Select True from the Anonymous LookUp dropdown if the directory can be searched without supplying the username

Select False if the username must be supplied to search the directory

5. Select the type of Connection Mode to be used from the dropdown

6. Provide the SecureAuth IdP Service Account username in the Distinguished Name (DN) format, e.g. cn=svc-account,DC=directory,DC=domain

7. Provide the Password that is associated with the Service Account

8. Provide the Search Attribute to be used to search for the user's account in the directory, e.g. uid

9. Click Generate Search Filter, and the searchFilter will auto-populate

The value that equals %v is what the end-user will provide on the login page, so if it is different from the Search Attribute, change it here

For example, if the Search Attribute is uid, but end-users will log in with their email addresses (field= mail), the searchFilter would be (&(mail=%v)((objectclass=dominoPerson)(objectclass=inetOrgPerson)))

10. Select True from the Advanced AD User Check to check for more information than just the username, such as if the account is locked

11. Select Search from the Validate User Type dropdown if SecureAuth IdP is to use the search function to find a username and password

Select Bind if SecureAuth IdP is to make a direct call to the directory to validate the username and password

12. Select Allow Access from the User Group Check Type to create a list of allowed user groups; select Deny Access to create a list of denied user groups

13. Provide the allowed or denied User Groups based on the selection in step 12, e.g. Admins

Leave this field blank if there is no access restriction

14. Check Include Nested Groups if the subgroups from the listed User Groups are to be allowed or denied access as well

15. Provide the Groups Field that contains users' groups, e.g. memberOf

16. Set the Max Invalid Password Attempts before a user's account is locked

17. Click Test Connection to ensure that the integration is successful

聚圣源健康码下载贵阳租房1908之钢铁雄心公司免费起名测名字打分测试2019年属猪起名禁忌宝宝起名软件大全明星给孩子起人名红色警戒2修改器鬼医圣手利用锦起名字oc起名网站中国移动app适合起名字的成语兄妹给企鹅起个名字汉堡包店起名k联赛李字起名女子女搞笑小说推荐多盈娱乐超市起名便利店公司怎么起英文名禽类养殖起名子起名云台山音乐节代理公司起名大全光谷电影院周易起名大全测名英文起名器周易起名网免费取名测名软件好运理发师淀粉肠小王子日销售额涨超10倍罗斯否认插足凯特王妃婚姻让美丽中国“从细节出发”清明节放假3天调休1天男孩疑遭霸凌 家长讨说法被踢出群国产伟哥去年销售近13亿网友建议重庆地铁不准乘客携带菜筐雅江山火三名扑火人员牺牲系谣言代拍被何赛飞拿着魔杖追着打月嫂回应掌掴婴儿是在赶虫子山西高速一大巴发生事故 已致13死高中生被打伤下体休学 邯郸通报李梦为奥运任务婉拒WNBA邀请19岁小伙救下5人后溺亡 多方发声王树国3次鞠躬告别西交大师生单亲妈妈陷入热恋 14岁儿子报警315晚会后胖东来又人满为患了倪萍分享减重40斤方法王楚钦登顶三项第一今日春分两大学生合买彩票中奖一人不认账张家界的山上“长”满了韩国人?周杰伦一审败诉网易房客欠租失踪 房东直发愁男子持台球杆殴打2名女店员被抓男子被猫抓伤后确诊“猫抓病”“重生之我在北大当嫡校长”槽头肉企业被曝光前生意红火男孩8年未见母亲被告知被遗忘恒大被罚41.75亿到底怎么缴网友洛杉矶偶遇贾玲杨倩无缘巴黎奥运张立群任西安交通大学校长黑马情侣提车了西双版纳热带植物园回应蜉蝣大爆发妈妈回应孩子在校撞护栏坠楼考生莫言也上北大硕士复试名单了韩国首次吊销离岗医生执照奥巴马现身唐宁街 黑色着装引猜测沈阳一轿车冲入人行道致3死2伤阿根廷将发行1万与2万面值的纸币外国人感慨凌晨的中国很安全男子被流浪猫绊倒 投喂者赔24万手机成瘾是影响睡眠质量重要因素春分“立蛋”成功率更高?胖东来员工每周单休无小长假“开封王婆”爆火:促成四五十对专家建议不必谈骨泥色变浙江一高校内汽车冲撞行人 多人受伤许家印被限制高消费

聚圣源 XML地图 TXT地图 虚拟主机 SEO 网站制作 网站优化