ProSecure Web/Email Security Threat Management (STM) Appliance Reference Manual
Managing Users, Groups, and Authentication 5-17
v1.0, September 2009
The List of LDAP table displays the following fields:
• Domain Name. The name of the STM’s domain to which the server has been assigned.
• Server. The IP address of the LDAP or Active Directory server.
• Action. The edit table button that provides access to the Edit LDAP screen and the delete
table button that allows you to delete the LDAP or Active Directory server.
2. Complete the fields and make your selections from the pull-down menu as explained in
Table 5-5.
Table 5-5. LDAP Settings
Setting Description
Domain A descriptive (alphanumeric) name of the LDAP or Active Directory authentication
server for identification and management purposes.
Server The server IP address or server host name of the LDAP or Active Directory
authentication server.
Port The port number for the LDAP or Active Directory authentication server. The default
port for the LDAP server is 389, which is generally the default port for TLS encryption
or no encryption. When the encryption is SSL, the default port is generally 636.
Bind DN The LDAP or Active Directory bind distinguished name (dn) that is required to access
the LDAP or Active Directory authentication server. This must be a user in the LDAP
or Active Directory directory that has read access to all the users that you would like
to import into the STM. The Bind DN field accepts three formats:
• A full user name. For example:
a username such as Jamie Hanson.
• A display name in the dn format. For example:
cn=Jamie Hanson,cn=users,dc=test,dc=com.
• A Windows logon account name in e-mail format. For example:
jhanson@testAD.com. This last type of Bind DN can be used only for a Windows
Active Directory server.
Bind Password The authentication secret or password that is required to access the LDAP or Active
Directory authentication server.
LDAP
Encryption
From the pull-down menu, select the encryption type for the connection between the
STM and the LDAP or Active Directory server:
• None. The connection is not encrypted. This is the default setting.
• TLS. The connection uses Transport Layer Security (TLS) encryption.
• SSL. The connection uses Secure Socket Layer (SSL) encryption.
Search Base The distinguished name (dn) at which to start the search, specified as a sequence of
relative distinguished names (rdn), connected with commas and without any blank
spaces. For most users, the search base is a variation of the domain name. For
example, if your domain is yourcompany.com, your search base dn might be as
follows: dc=yourcompany,dc=com.