LDAP user synchronization
  • 03 Jan 2025
  • 1 Minute à lire
  • Sombre
    Lumière
  • PDF

LDAP user synchronization

  • Sombre
    Lumière
  • PDF

The content is currently unavailable in French. You are viewing the default English version.
Résumé de l’article

LDAP user synchronization is the process of synchronizing records from an LDAP Server, not the process of authenticating with an LDAP back-end server. For more information about LDAP back-end authentication, see  Back-end authentication.

Replication is the process of replicating data between separate OneSpan Authentication Server Appliance instances (see  Replication).

LDAP user synchronization can be configured in the Configuration Tool. It supports automatic creation and updating of user accounts on the OneSpan Authentication Server Appliance from records stored on an LDAP server. Apart from LDAP user synchronization, you can create user accounts using the Administration Web Interface, either manually or by importing user accounts, and via Dynamic User Registration (DUR). For more information, refer to the  OneSpan Authentication Server Appliance Product Guide.

LDAP user synchronization is not server-specific and must be configured particularly for different LDAP servers, e.g. for Microsoft Active Directory or for NetIQ eDirectory. To set up an LDAP synchronization requires manual configuration of a synchronization profile in the Configuration Tool. Once the appropriate settings and mappings have been configured, synchronization between the LDAP server and OneSpan Authentication Server Appliance occurs out automatically.

For more information about accessing and logging on to the OneSpan Authentication Server Appliance Configuration Tool, see  Administration interfaces for OneSpan Authentication Server Appliance.

The following topics explain:

  • How to create a synchronization profile in OneSpan Authentication Server Appliance.
  • How to configure synchronization for Microsoft Active Directory:

    • Example filter settings
    • Example attribute settings
    • Instructions about finding LDAP server attribute names with Active Directory
  • How to configure synchronization for NetIQ eDirectory:

    • Example filter settings
    • Example attribute settings
    • Instructions about finding LDAP server attribute names with NetIQ eDirectory
  • How to configure synchronization for other LDAP servers.

For more information about of the general concepts of LDAP synchronization, refer to the OneSpan Authentication Server Appliance Product Guide, Section "LDAP user synchronization".

User account settings are called source attributes in the LDAP server and destination properties in the OneSpan Authentication Server Appliance.

Authentication with LDAP server credentials for user accounts that have been synchronized requires a back-end server record to be configured. Back-end passwords are usually not synchronized due to LDAP server security restrictions. For more information, refer to the OneSpan Authentication Server Appliance Product Guide. For more information about configuring a back-end server record, see  Back-end authentication.

For more information about specific issues that may arise with LDAP user synchronization, see  LDAP user synchronization issues.


Cet article vous a-t-il été utile ?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.
ESC

Ozzy, facilitant la découverte de connaissances grâce à l’intelligence conversationnelle