Cisco Cisco Email Security Appliance C680 User Guide

Page of 1181
 
26-12
User Guide for AsyncOS 9.8 for Cisco Email Security Appliances
 
Chapter 26      LDAP Queries
  Working with LDAP Queries
Types of LDAP Queries
Acceptance queries. For more information, see 
Routing queries. For more information, see 
.
Certificate Authentication queries. For more information, see 
.
Masquerading queries. For more information, see 
.
Group queries. For more information, see 
Domain-based queries. For more information, see 
Chain queries. For more information, see 
You can also configure queries for the following purposes:
Directory harvest prevention. For more information, see 
.
SMTP authentication. For more information, see 
External authentication. For more information, 
Spam quarantine end-user authentication query. For more information, see 
Spam quarantine alias consolidation query. For more information, see 
.
The search queries you specify are available to all listeners you configure on the system. 
Base Distinguishing Name (DN)
The root level of the directory is called the base. The name of the base is the DN (distinguishing name). 
The base DN format for Active Directory (and the standard as per RFC 2247) has the DNS domain 
translated into domain components (dc=). For example, example.com's base DN would be: dc=example, 
dc=com. Note that each portion of the DNS name is represented in order. This may or may not reflect 
the LDAP settings for your configuration.
If your directory contains multiple domains you may find it inconvenient to enter a single BASE for your 
queries. In this case, when configuring the LDAP server settings, set the base to NONE. This will, 
however, make your searches inefficient.