Page tree

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Configure LDAP login

can be configured

on

the  tab

tab of

the 

the System

 module.Once on the tab, use the drop-down below LDAP Server Settings to select or add a new LDAP

manager module.

Tip
iconfalse

Contact your organization’s network administrator or IT professional for the exact details of your directory server.

  1. Once
there is at least one available LDAP server, the LDAP Login Settings and the LDAP Synchronization Settings panels appear.
  • In the LDAP Login Settings panel, activate the Use for login switch. Switching this feature ON prompts the necessary data fields to be displayed.
  • Select the desired
    1. your connection is established with the directory server(s),  switch on the Use for login toggle to continue.  
    2. Select your preferred authentication mode:
      1. Use full DN

    - searches for the user directly by the user's full distinguished name (optionally specified by prefix and/ or postfix)

    Resolve sAMAccountName - authenticates the user through a specified query user (query user name, password and base can be determined), that is, no full DN has to be provided


      1. To identify users on your directory server, specify the Authentication ID, DN Prefixes and DN Postfixes. 

        Image Added

        Info

        Find out more about the full DN authentication method in this section.


      2. Resolve samAccountName: Provide the name and password of your directory server's query user and the query base.

        Image Added

        Info

        Find out more about the Resolve samAccountName method in this section.


    1. Click Test LDAP Login

    NoteNOTE: In this case, DN data is not stored in LearningSpace, but only the sAMAccountName which will first have to be resolved to the full DN by the query user.The specified query user needs to have permission to search within the query base.
  • Provide the DN or Query data respectively.
  • Click the Test LDAP Login button
    1. to check whether everything has been set up correctly.

    Image Removed

    If there is at least one LDAP server configured for login, LDAP authentication can be set up for users independently in the Edit User pop-up window:

    1. On the Accounts tab (displayed by default when the pop-up is opened), check the box at Authenticate by LDAP server.

    2. Type the server-side user ID in the LDAP ID field.

    Image Removed

    Similarly, if there is at least one LDAP server configured for login, LDAP synchronization can be enabled on the LDAP tab of the Edit Group pop-up window.

    Image Removed

    Warning
    1. Tip

      Every user who is a match for the request can log in to LearningSpace Enterprise with their credentials stored on the directory server.

    Info
    iconfalse
    titleRelated pages

    Content by Label
    showLabelsfalse
    showSpacefalse
    sorttitle
    excludeCurrenttrue
    cqllabel = "ldap"

    Info

    For further information, visit our System Manager pages

    IMPORTANT: If LDAP authentication is configured, users cannot change their passwords

    .