8.7.8. Configuring the users and groups defined on LDAP / ActiveDirectory

8.7.8.1. Introduction

This procedure enables specifying the mapping of users and groups between the GCenter and the remote authentication server.

Note

This graphical interface is described in The `LDAP configuration` section of the `Accounts` submenu.


8.7.8.2. Prerequisites

  • User : member of Administrator group


8.7.8.3. Preliminary operations


8.7.8.4. Procedure to access to the `LDAP configuration` window for an administrator account

  • In the navigation bar, successively click on:

  • The `Admin` button

  • The `Gcenter` sub-menu

  • The `Accounts` command
    The `Accounts` window is displayed.
  • Click on the `LDAP configuration` heading.
    The `LDAP configuration` window is displayed.
    ../../_images/LDAP-01.PNG

8.7.8.5. Procedure to change the settings for the `LDAP users and groups mapping` area (7)

  • Expand the window to access the parameters using the arrows (8).

  • Enter the following parameters:

Field

Required

Description

Value

`User search scope`

Yes

Enables specifying where to search for users in the remote directory in the remote directory

by default:
DC=example, DC=com

`User search criteria`

Yes

Enables specifying the search criteria for users in the remote directory

by default: (|(uid=%(user)s)
(sAMAccountName=%(user)s))

`Group search scope`

Yes

Enables specifying where to search for groups in the remote directory

by default: DC=example, DC=com

`Group search criteria`

Yes

Enables specifying the search criteria for groups in the remote directory

by default:
(objectClass=organizationalUnit)

`LDAP to gcenter administrators group mapping`

Yes

Enables specifying which groups will have the "administrator" role

groups of administrators for example

`LDAP to gcenter operators group mapping`

Yes

Enables specifying which groups will have the "operator" role

groups of analysts for example

Note

The same group can be present in both the `LDAP to gcenter administrators group mapping` and `LDAP to gcenter operators group mapping` fields.

  • Save the changes with the `Save and apply` button.