17.2 Importing System Users from LDAP

Roles that Can Perform This Task: Cloud Administrator

The following steps explain how to create System users by importing information from your LDAP authentication source. For information about creating System users by manually entering information, see Manually Creating System and Organization Users.

  1. On the main navigation bar, click Configuration.

  2. Click the Users tab, click Members, then click Import.

  3. Authenticate to the LDAP directory:

    1. Click the LDAP tab.

    2. In the LDAP Location section, fill in the following fields:

      Host: Specify the FQDN (fully qualified domain name) or IP address of the host machine running the LDAP server. For example, ldap.mycompany.com or 123.45.67.8.

      Port: Specify the TCP port (on the host machine) where the LDAP server is listening for LDAP connections. The standard port for non-SSL connections is 389. The standard port for SSL connections is 636.

      Use SSL: If the Cloud Manager Application Server is configured for an SSL connection to the LDAP server, select this option to enable the secure connection.

    3. In the Search Bind Account section, fill in the following fields:

      DN: Specify the distinguished name of an account that has search rights to the directory location from which you want to import users. For example, cn=Administrator,cn=Users,dc=MyCompany,dc=com

      Password: Specify the password for the account.

      Confirm Password: Confirm the password for the account.

    4. Click Test Connection.

      If the connection is successful, the Test Status is displayed as Passed. If the connection is not successful, validate the connection information and try again.

  4. Import users:

    1. Click the Import tab.

    2. Click Add.

      When you click Add, a new import entry is added to the list. You use the fields below the list to define the entry.

    3. In the DN field, use standard LDAP notation (ou=provo,dc=netiq,dc=com) to specify the distinguished name for the target container or object, then click Validate.

      If you specify a container, all users located within the container are imported. If you only want to import one user, specify the DN of the user object.

    4. If you specified a container for import, select Users.

    5. If you specified a container for import, select Scan Tree if you want to import users located in its subcontainers.

    6. Click Import.

      The imported users are added to the Members list. Users are identified by the icon.

  5. Click OK to close the System Configuration dialog box.

  6. To assign roles to a user, see Assigning Roles to Users and Groups.