• SSL Communication
•
Authentication
Select either Kerberos, DIGEST, or Cleartext authentication.
• User Name
You do not have to enter the user name if the LDAP server supports "Anonymous
Authentication".
• Password
You do not have to enter the password if the LDAP server supports "Anonymous
Authentication".
• When you select Cleartext authentication, LDAP Simplified authentication is enabled. Simplified
authentication can be performed with a user attribute (such as cn, or uid), instead of the DN.
•
In LDAP simple authentication mode, authentication will fail if the password is left blank. To allow
blank passwords, contact your service representative.
• Under LDAP Authentication, if "Anonymous Authentication" in the LDAP server's settings is not set to
Prohibit, users who do not have an LDAP server account might still be able to gain access.
• If the LDAP server is configured using Windows Active Directory, "Anonymous Authentication"
might be available. If Windows authentication is available, we recommend you use it.
• The first time an unregistered user accesses the machine after LDAP authentication has been
specified, the user is registered in the machine and can use the functions available under "Available
Functions" during LDAP Authentication. To limit the available functions for each user, register each
user and corresponding "Available Functions" setting in the Address Book, or specify "Available
Functions" for each registered user. The "Available Functions" setting becomes effective when the
user accesses the machine subsequently.
• To enable Kerberos for LDAP authentication, a realm must be registered beforehand. The realm
must be programmed in capital letters. For details about registering a realm, see "Programming the
Realm", Network and System Settings Reference.
• The reference function is not available for SSL servers when a search for LDAP is in progress.
• p.64 "Creating the Server Certificate"
Specifying LDAP Authentication
Before beginning to configure the machine, make sure that administrator authentication is properly
configured under "Administrator Authentication Management".
This can be specified by the machine administrator.
3. Configuring User Authentication
68