RapidIdentity Product Guides - 2019 Rolling Release

Configure LDAP Servers

Follow these 10 steps to configure additional LDAP servers:

  1. Access the Servers tab within RapidAppliance | Configuration | Core Configuration | LDAP.

    Legacy_LDAP.png

    LDAP Settings Servers/Server Sets tab field name descriptions are described the Core Configuration | LDAP content area.

  2. The server(s) displayed upon the first visit are those server(s) from the initial organization-specific RapidIdentity configuration. To configure additional LDAP servers, click the plus icon.

    Config_Addl_LDAP.png

    Unique ID numbers are assigned upon saving the newly configured server. The Server Address is the specific IP address of the additional LDAP server; similarly, the Port is the port number associated with that server. Administrators can configure the server to use LDAP over Secure Socket Layer (LDAPS), Transport Layer Security (StartTLS), or to not use either encryption method based on the current organization policies or procedures.

  3. Selecting LDAPS or StartTLS triggers the Trust all SSL Certificates field to appear (not shown). To trust all certificates, including Self-Signed Certificates, check the box (not shown).

  4. If the Distinguished Name (DN) or other LDAP object is unknown, administrators can click the magnifying class to locate the desired LDAP object(s).

    Distinguished_Name.png
  5. The LDAP directory tree structure is specific to each organization and is likely to appear different than what is shown above. The Select Object DN field configures the LDAP objects as they are selected automatically.

  6. Once the objects are found, click OK.

  7. Administrators can also configure timeout intervals, page size, and if the Follow Referrals box is checked, set the Referral Hop Limit.

  8. After clicking Save, click the Test Connection and Certificate Settings action button to verify setup.

  9. Clicking the Cancel action button triggers the following pop-up window.

    Reset_Values.png
  10. Clicking OK will delete the newly added server.