Cisco Cisco Email Security Appliance C160 Mode D'Emploi

Page de 1197
 
26-7
User Guide for AsyncOS 9.7 for Cisco Email Security Appliances
 
Chapter 26      LDAP Queries
  Overview of LDAP Queries
Enabling LDAP Queries to Run on a Particular Listener
To allow the appliance to run LDAP queries when you receive or send messages, you must enable the 
LDAP query on the appropriate listener.
Related Topics
Configuring Global Settings for LDAP Queries
The LDAP global settings define how the appliance handles all LDAP traffic.
Procedure 
Step 1
On the System Administration > LDAP page, click Edit Settings.
Step 2
Select the IP interface to use for LDAP traffic. The appliance automatically chooses an interface by 
default.
Step 3
Select the TLS certificate to use for the LDAP interface (TLS certificates added via the Network > 
Certificates page or the 
certconfig
 command in the CLI are available in the list, see 
).
Step 4
Submit and commit your changes.
Example of Creating an LDAP Server Profile
In the following example, the System Administration > LDAP page is used to define an LDAP server for 
the appliance to bind to, and queries for recipient acceptance, routing, and masquerading are configured. 
Note
There is a 60 second connection attempt time-out for LDAP connections (which covers the DNS lookup, 
the connection itself, and, if applicable, the authentication bind for the appliance itself). After the first 
failure, AsyncOS immediately starts trying other hosts in the same server (if you specified more than 
one in the comma separated list). If you only have one host in the server, AsyncOS continues attempting 
to connect to it.