Introduction
This wiki page shows all the steps needed to configure an external LDAP resource identified by the following connection parameters:
Server host: localhost
Server port: 1389
Principal: cn=Directory Manager
Credentials: password
Root suffix: o=isp
In order to link an external LDAP resource there are pre-requisites and configuration steps to be satisfied.
Pre-Requisites
Configuration steps
Configure LDAP connector instance
Please, take a look at all configurable parameters at LDAP Connector Configuration and use this page as reference to provide your configuration.
- Open your browser and access to the Syncope administration console (http://host:port/syncope-console).
- Log into the interface by providing the following credentials:
- :Login: admin!Ldap_2.png|thumbnail,width=200px!;
- :Password: password.
- Click on the Resources tab.
- Click on the Connectors sub-tab.
- Click on Create new Connector button (configuration modal page appears).
- Click on tab General.
- :Provide Display name (e.g. 'Ldap demo connector') and the correct Bundle name (org.connid.bundles.ldap.${version}).
- Click on tab Configurations and provide connector instance configuration.
Principal: cn=Directory Manager
Password: password
Host: localhost
TCP Port: 1389
Account Object Classes: top person organizationalPerson inetOrgPerson
Password Attribute: userPassword
LDAP Filter for Retrieving Accounts: uid=*
Change Number Attribute: changeNumber
Uid Attribute: uid
Base Contexts: o=isp
Account User Name Attributes : uid
Change Log Block Size: 100 - Click on tab Capabilities.
- Check needed capabilities as shown at Connector instance configuration.
- Click on Save button.
Configure LDAP resource
- Click on the Resources tab.
- Click on the Resources sub-tab.
- Click on Create new Resource button (configuration modal page appears).
- Click on Resource Details tab.
- Choose from the list the correct Connector instance name.
- Provide the following information
Name: Ldap demo
Connector: Ldap demo connector - Click on Schema Mappings tab.
- Click on Add button to insert attributes mapping.
- Provide Account Link: 'uid=' + username + ',o=isp'
- Click on Save button.
Internal mapping types |
Internal mapping |
External Attributes |
Mandatory condition |
Account Id |
Password |
---|---|---|---|---|---|
Username |
|
|
true |
X |
|
Password |
|
|
true |
|
X |
UserSchema |
surname |
sn |
true |
|
|
UserSchema |
firstname |
cn |
true |
|
|