Cisco Systems OL-25712-04 Security Camera User Manual


 
lDAPDisplayName: CiscoAVPair
name: CiscoAVPair
objectCategory: CN=Attribute-Schema,CN=Schema,CN=Configuration,CN=X
LDAP Group Rule
The LDAP group rule is used to determine whether Cisco UCS should use LDAP groups when assigning user
roles and locales to a remote user.
Configuring LDAP Providers
Configuring Properties for LDAP Providers
The properties that you configure in this task are the default settings for all provider connections of this type
defined in Cisco UCS Manager. If an individual provider includes a setting for any of these properties, Cisco
UCS uses that setting and ignores the default setting.
Before You Begin
If you are using Active Directory as your LDAP server, create a user account in the Active Directory server
to bind with Cisco UCS. This account should be given a non-expiring password.
Procedure
Step 1
In the Navigation pane, click the Admin tab.
Step 2
On the Admin tab, expand All > User Management > LDAP.
Step 3
Complete the following fields in the Properties area:
DescriptionName
The length of time in seconds the system should spend trying to
contact the LDAP database before it times out.
Enter an integer from 1 to 60 seconds. The default value is 30
seconds.
This property is required.
Timeout field
An LDAP attribute that stores the values for the user roles and
locales. This property is always a name-value pair. The system
queries the user record for the value that matches this attribute
name.
If you do not want to extend your LDAP schema, you can configure
an existing, unused LDAP attribute with the Cisco UCS roles and
locales. Alternatively, you can create an attribute named
CiscoAVPair in the remote authentication service with the following
attribute ID: 1.3.6.1.4.1.9.287247.1
Attribute field
Cisco UCS Manager GUI Configuration Guide, Release 2.0
134 OL-25712-04
LDAP Group Rule