Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

Set up LDAP authentication for users once a directory server is configured for user authentication.

Info

LDAP authentication must be switched on for users in the User Manager module to allow them to log in with their directory server credentials to CAE LearningSpace Experience.

...

info

LDAP authentication can be

...

switched on for one user at a time

...

or for a group of selected users:

Switch On LDAP for a User

  1. Open a user for editing. 

  2. Check Authenticate by LDAP server in the Account tab.

    Image Added


Switch on LDAP for Multiple Users

  1. Select users from the Users panel on the right.

    Info

    Click on the All users option on the left to display every user registered in your system or select a group to filter users. 


    Tip

    Use the select-all checkbox in the Users panel to select every user in one go. 


  2. Click Open on the right.

    Image Added
    The 'Edit Multiple User' pop-up will open where you can manage the settings of your selected users all at once.

  3. At 'Reset authentication method to:' open the drop-down.
  4. Select 'LDAP server authentication':

    Image Added


Once LDAP Authentication is switched on for users, fill in the Authentication ID inside their profiles. LDAP Login Settings in the Directory Access Settings tab determine the required Authentication ID for users. 

Info

If the Authentication ID has been set to Email in the Directory Access Settings, you do not have to add anything to the user's profile.


Warning
titleWarning
While the email address is not needed in a user's CAELearningSpace Essentials when LDAP Authentication is switched on, this also means that users cannot log in with their CAE LearningSpace email and password or modify their credentials.
  1. Open a user for editing. 
  2. If Fill in the appropriate Authentication ID field if you set up a full DN sequence for authentication:
    1. Provide the user's LDAP ID stored on your directory server in the corresponding field if the Authentication ID has been set to 'LDAP ID' in the Directory Access Settings tab. 



    2. Provide the user's UCID stored on your directory server in the corresponding field if the Authentication ID has been set to 'UCID' in the Directory Access Settings tab. 


      If the Authentication ID has been set to Email, you do not have to add anything to the user's profile.

      Warning
      titleWarning
      The email address in the user's CAELearningSpace Experience profile is not needed during LDAP Authentication. This also means that users cannot log in with their CAE LearningSpace email and password or modify their credentials.



  3. Provide the user's samAccountName if you set up the Resolve samAccountName method for authentication:

...