8.7.8. Configuring the users and groups defined on LDAP / ActiveDirectory
8.7.8.1. Introduction
This procedure enables specifying the mapping of users and groups between the GCenter and the remote authentication server.
Note
This graphical interface is described in The `LDAP configuration` section of the `Accounts` submenu.
8.7.8.2. Prerequisites
User : member of Administrator group
8.7.8.3. Preliminary operations
Login to GCenter via a browser (see Connecting to the GCenter web interface via a web browser). with the prerequisite rights.
8.7.8.4. Procedure to access to the `LDAP configuration`
window for an administrator account
In the navigation bar, successively click on:
The
`Admin`
buttonThe
`Gcenter`
sub-menu The`Accounts`
commandThe`Accounts`
window is displayed.
- Click on the
`LDAP configuration`
heading.The`LDAP configuration`
window is displayed.
8.7.8.5. Procedure to change the settings for the `LDAP users and groups mapping`
area (7)
Expand the window to access the parameters using the arrows (8).
Enter the following parameters:
Field |
Required |
Description |
Value |
---|---|---|---|
|
Yes |
Enables specifying where to search for users in the remote directory in the remote directory |
by default:
DC=example, DC=com
|
|
Yes |
Enables specifying the search criteria for users in the remote directory |
by default: (|(uid=%(user)s)
(sAMAccountName=%(user)s))
|
|
Yes |
Enables specifying where to search for groups in the remote directory |
by default: DC=example, DC=com |
|
Yes |
Enables specifying the search criteria for groups in the remote directory |
by default:
(objectClass=organizationalUnit)
|
|
Yes |
Enables specifying which groups will have the "administrator" role |
groups of administrators for example |
|
Yes |
Enables specifying which groups will have the "operator" role |
groups of analysts for example |
Note
The same group can be present in both the `LDAP to gcenter administrators group mapping`
and `LDAP to gcenter operators group mapping`
fields.
Save the changes with the
`Save and apply`
button.