Name Type Description Mandatory Default
second_
expiration
_event
Positive integer Number of days
before expiration
of certificate to set
second alert
(severity: warning)
N 30/14/7 (third is
smallest)
third_
expiration
_event
Positive integer Number of days
before expiration
of certificate to set
third alert
(severity: warning)
N 30/14/7 (third is
smallest)
version Positive integer Version of LDAP
used (only version
3 is supported).
N3
xiv_user String XIV user to be
used for query the
LDAP
N none
xiv_
password
String XIV password to
be used for query
the LDAP
N none
server_
type
Enumeration Type of the LDAP
server.
N none
group_
search_
depth
Positive integer Depth of group
hierarchy to search
in.
N0
group_
search_
max_
queries
Positive integer Maximum number
of group queries to
perform per server.
N39
group_
search_
stop_when_
found
Boolean Stop the group
search when a
group match is
found.
N yes
This command configures general system parameters governing user
authentication against LDAP servers.
LDAP access permissions which are not enforced for XIV predefined users. These
XIV predefined users are authenticated by the IBM XIV Storage System and not by
LDAP even if LDAP authentication is enabled.
Predefined user names include the following:
v admin
v technician
v xiv_development
v xiv_maintenance
Whenever an LDAP user - with a user name identical to any of the predefined
names - tries to log into XIV (when LDAP authentication is enabled), that user will
normally be denied access, since it is not authenticated against LDAP (but rather
against XIV), and the user's (LDAP) password will likely not match the XIV
password. However, logging into XIV using the password of the corresponding
368 IBM XIV Storage System User Manual