beautypg.com

Ldap-server – Brocade Mobility RFS Controller CLI Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 1099

background image

Brocade Mobility RFS Controller CLI Reference Guide

1091

53-1003098-01

19

ldap-query [self|through-controller]

Example

rfs7000-37FABE(config-role-policy-test)#ldap-query self

rfs7000-37FABE(config-role-policy-test)#

rfs7000-37FABE(config-role-policy-test)#show context

role-policy test

default-role use ip-access-list in test precedence 1

ldap-query self

ldap-deadperiod 100

rfs7000-37FABE(config-role-policy-test)#

Related Commands:

ldap-server

role-policy

Associates a specified LDAP server with this role policy. Use this command to configure the
credentials needed to bind with the LDAP server.

When enabled, LDAP service allows the AP or controller to bind with the LDAP server and retrieve
user details. This information is matched with the user-defined roles within the role policy. If a
match is made, the user is assigned the role and allowed or denied access to the controller
managed network.

You can associate two LDAP servers with a role policy, allowing failover in case the primary server is
unreachable.

Supported in the following platforms:

Access Points — Brocade Mobility 650 Access Point, Brocade Mobility 6511 Access Point,
Brocade Mobility 1220 Access Point, Brocade Mobility 71XX Access Point, Brocade
Mobility 1240 Access Point

Wireless Controllers — Brocade Mobility RFS4000, Brocade Mobility RFS6000, Brocade
Mobility RFS7000

Service Platforms — Brocade Mobility RFS9510

Syntax:

ldap-server <1-2> host [|] bind-dn base-dn

bind-password {port <1-65535>} {(server-type

[active-directory|

openldap])}

Parameters

self

Configures LDAP query mode as self. The AP directly queries the LDAP server for user information. Select
‘self’ to use local LDAP server resources configured using the

ldap-server

command.

through-controller

Configures LDAP query mode as through-controller. The AP queries the LDAP server, for user information,
through the controller.
Use this option when the AP is layer 2 adopted to the controller.

no

Disables LDAP service on this role policy