Add/Edit LDAP Server

By providing configuration information about the LDAP servers in your network, you can select the same LDAP servers for multiple post offices without needing to provide the same server configuration information multiple times.

Name
Enter a unique name by which the LDAP server will be known in your GroupWise® system. This name appears in the list of LDAP servers available for selection in each post office.

Description
Optionally, enter a description that provides additional information about the LDAP server.

Use SSL
Select Use SSL to indicate that the POA should use Secure Socket Layer (SSL) protocol when communicating with the LDAP server.

LDAP SSL Key File (*.der, *.pem)
Browse to and select the trusted root certificate file (often named rootcert.der) that contains the private key for the SSL connection, as provided by the LDAP server.

If you type the filename rather than using the Browse button to select it, use the full path if the key file is not located in the agent installation directory.

LDAP Server Address
Click Edit to provide the TCP/IP address and LDAP port number for the LDAP server that will authenticate GroupWise users to their mailboxes.

User Authentication Method

Bind
Select Bind if you want the POA to bind as the GroupWise user to the LDAP server in order to authenticate the user's password. Using Bind, most LDAP servers enforce password policies such as grace logins and intruder lockout, if such policies have been implemented for the LDAP server.

Compare
Select Compare if you want the LDAP server to compare the password offered by the POA with the user's password in the LDAP directory, then return the results of the comparison, in order to authenticate the user's password. Using Compare provides faster access because there is less overhead involved.

Select Post Offices
Click Select Post Offices to indicate which post offices you want to access the LDAP server whose configuration information you are providing.

If you select the same post office for multiple LDAP servers, you create a pool of LDAP servers that can authenticate GroupWise users. Whenever the POA needs to access an LDAP server, it contacts a different one. This provides load balancing and fault tolerance, so that GroupWise users can authenticate quickly and reliably to their GroupWise mailboxes.



 GroupWise Online Documentation

A trademark symbol (®, TM, etc.) denotes a Novell trademark. An asterisk (*) denotes a third-party trademark. For more information, see Legal Notices.