HP (Hewlett-Packard) 700wl Series Switch User Manual


 
Configuring Rights
an individual record for the MAC address. For example, suppose the record identified by cn=MACS
contained the following values for uniqueMember:
uniqueMember: cn=000122034a5b, o=XYZCorp, c=us
uniqueMember: cn=01234567891a, o=XYZCorp, c=us
uniqueMember: cn=22314a6721b7, o=XYZCorp, c=us
The value of cn will be taken as the actual MAC address, and added to the built-in database. The entire
string can be used as the search string to find the individual record for the MAC address that contains an
attribute that defines group membership for the MAC address user.
Group membership can be retrieved in one of two ways:
If the LDAP database contains individual records for each MAC address user, an attribute in those
records can define the groups to which the MAC address belongs.
Records can be used to represent groups, each of which contains a set of MAC addresses that are
members of that group.
Specifying an LDAP Service for MAC Address Retrieval
To set up MAC address retrieval from an LDAP service, do the following:
Step 1. From the main Identity Profiles page, click the MAC Address Retrieval link.
The MAC Address Retrieval page appears.
Figure 4-11 shows the MAC Address Retrieval page with several LDAP services that can be used
for MAC address retrieval.
Figure 4-11. MAC Address Retrieval, Selecting an LDAP Service
If there are any LDAP services configured that meet the requirements for use with this feature
(specifically, they are set for non-user binding) they are displayed in the list. If there are no services in this
list, you must configure at least one in order to use this feature.
HP ProCurve Secure Access 700wl Series Management and Configuration Guide 4-25