

#LDAP ADDRESS BOOK SERVER WINDOWS PASSWORD#
In LDAP simple authentication mode, authentication will fail if the password is left blank.
#LDAP ADDRESS BOOK SERVER WINDOWS WINDOWS#
If Windows authentication is available, we recommend you use it.įor the characters that can be used for login user names and passwords, see Usable characters for user names and passwords. If the LDAP server is configured using Windows Active Directory, "Anonymous Authentication" might be available. Under LDAP authentication, if "Anonymous Authentication" in the LDAP server's settings is not set to Prohibit, users who do not have an LDAP server account might be able to access the server. If Active Directory in LDAP authentication is used when Kerberos authentication and SSL are set at the same time, e-mail addresses cannot be obtained. If you use double-byte characters, you cannot authenticate using Web Image Monitor. Under LDAP authentication, you cannot specify access limits for groups registered in the directory server.ĭo not use double-byte Japanese, Traditional Chinese, Simplified Chinese, or Hangul characters when entering the login user name or password. If user information on the server is changed, information registered in the machine may be overwritten when authentication is performed. For details about registering a realm, see "Programming the Realm", Connecting the Machine/System Settings.ĭuring LDAP authentication, the data registered in the LDAP server, such as the user's e-mail address, is automatically registered in the machine. A realm must be configured in capital letters. To enable Kerberos for LDAP authentication, a realm must be registered in advance. Simplified authentication can be performed with a user attribute (such as cn, or uid), instead of the DN. When you select Cleartext authentication, LDAP Simplified authentication is enabled. For details about specifying LDAP authentication using Web Image Monitor, see Web Image Monitor Help. Using Web Image Monitor, you can enable a function to check that the SSL server is trusted. SSL settings can be specified in the LDAP server setting. For details about creating a server certificate, see Creating the Server Certificate. To do this, you must create a server certificate for the LDAP server. You can specify on the LDAP server whether or not to enable SSL.

When using LDAP authentication, to prevent the password information from being sent over the network unencrypted, it is recommended to encrypt communication between the machine and LDAP server by using SSL. The Address Book stored in the LDAP server can be registered to the machine, enabling user authentication without first using the machine to register individual settings in the Address Book. Users cannot be authenticated if they do not have their accounts on the LDAP server. Specify this authentication method when using the LDAP server to authenticate users who have their accounts on the LDAP server.
