Cisco Cisco Email Security Appliance X1070 Betriebsanweisung
Chapter 3 LDAP Queries
3-22
Cisco IronPort AsyncOS 7.5 for Email Advanced Configuration Guide
OL-25137-01
The following table shows the required permissions to be applied to all of the
needed containers.
needed containers.
Step 2
Set Active Directory Permissions
–
Open ADSIEdit form the Windows 2000 Support Tools.
–
Locate the Domain Naming Context folder. This folder has the LDAP
path of your domain.
path of your domain.
–
Right click the Domain Naming Context folder, and then click
Properties.
Properties.
–
Click Security.
–
Click Advanced.
–
Click Add.
–
Click the User Object Everyone, and then click OK.
–
Click the Permission Type tab.
–
Click Inheritance from the Apply onto box.
–
Click to select the Allow check box for the Permission permission.
Step 3
Configure the IronPort Messaging Gateway
Use
ldapconfig
on the Command Line Interface (CLI) to create an LDAP
server entry with the following information.
–
Hostname of an Active Directory or Exchange server
–
Port 3268
–
Base DN matching the root naming context of the domain
User
Object
Object
Permissions
Inheritance
Permission
Type
Type
Everyone
List Contents
Container Objects
Object
Everyone
List Contents
Organizational Unit
Objects
Objects
Object
Everyone
Read Public
Information
Information
User Objects
Property
Everyone
Read Phone and Mail
Options
Options
User Objects
Property