AlterPath ACS Installation, Administration, and User’s Guide 231
configuration procedures for a TACACS+ authentication server refer to the
ACS Command Reference Guide, Chapter 3, Section 3.4 “Group
Authorization”.
T To Configure an LDAP Authentication Server
Perform the following procedure to configure an LDAP authentication server
when the ACS or any of its ports are configured to use the LDAP
authentication method or any of its variations (LDAP, LDAP/Local, or
LDAPDownLocal).
Before starting this procedure, find out the following information from the
LDAP server administrator:
• The distinguished name of the search base
• The LDAP domain name
• Whether to use secure LDAP
• The authentication server’s IP address
You can enter information in the following fields, but an entry is not required:
• LDAP User Name
• LDAP Password
• LDAP Login Attribute
Work with the LDAP server administrator to ensure that the following types
of accounts are set up on the LDAP server and that the administrators of the
ACS and the connected devices know the passwords assigned to the accounts:
• An account for “admin”
• If LDAP authentication is specified for the ACS, accounts for all users
who need to log into the ACS to administer connected devices.
• If LDAP authentication is specified for serial ports, accounts for users
who need administrative access to the connected devices.
1. Go to Security > Authentication > LDAP in Expert mode.
The “LDAP” form displays with “LDAP Server” and “LDAP Base” fields
filled in from with the current values in the /etc/ldap.conf file.