Cisco Cisco Email Security Appliance C170 Guia Do Utilizador

Página de 548
Chapter 3      LDAP Queries
3-186
Cisco IronPort AsyncOS 7.1 for Email Advanced Configuration Guide
OL-22164-02
Note
The variable names you enter for queries are case-sensitive and must match your 
LDAP implementation in order to work correctly. For example, entering 
mailLocalAddress
 at a prompt performs a different query than entering 
maillocaladdress
. IronPort Systems strongly recommends using the 
test
 
subcommand of the 
ldapconfig
 command to test all queries you construct and 
ensure the proper results are returned. 
Group Membership 
(Group, 
ldapgroup
)
Return “true” for message 
filter rules. 
Return “false” for message 
filter rules. 
SMTP Auth
(SMTP Authentication, 
smtpauth
)
A password is returned 
from the LDAP server and 
is used for authentication; 
SMTP Authentication 
occurs. 
No password match can 
occur; SMTP Authentication 
attempts fail. 
External 
Authentication 
(
externalauth
)
Individually returns a 
“match positive” for the 
bind, the user record, and 
the user’s group 
membership.
Individually returns a “match 
negative” for the bind, the 
user record, and the user’s 
group membership.
Spam Quarantine 
End-User 
Authentication 
(
isqauth
)
Returns a “match 
positive” for the end-user 
account.
No password match can 
occur; End-User 
Authentication attempts fail.
Spam Quarantine Alias 
Consolidation 
(
isqalias
)
Returns the email address 
that the consolidated 
spam notifications will be 
sent to.
No consolidation of spam 
notifications can occur.
Table 3-1
Testing LDAP Queries  (Continued)
Query type
If a recipient matches 
(PASS)...
If a recipient does not match 
(FAIL)...