Legal Disclaimer: The resource assets in this website may include abbreviated and/or legacy terminology for HPE Aruba Networking products. See www.arubanetworks.com for current and complete HPE Aruba Networking product lines and names.
Configuring LDAP Authentication Server for a WLAN SSID Profile
To configure an LDAP Lightweight Directory Access Protocol. LDAP is a communication protocol that provides the ability to access and maintain distributed directory information services over a network. authentication server for the WLAN Wireless Local Area Network. WLAN is a 802.11 standards-based LAN that the users access through a wireless connection. SSID Service Set Identifier. SSID is a name given to a WLAN and is used by the client to access a WLAN network. profile, complete the following steps:
- To access the WLAN SSID configuration wizard for a new SSID profile or an existing SSID profile, see Configuring a WLAN SSID Profile in Bridge Mode or Configuring a WLAN SSID Profile in Tunnel and Mixed Mode.
- In the WLAN SSID configuration wizard, click the Security tab.
- In , select Enterprise.
- Perform one of the following actions:
To add a new external authentication server, click + next to Primary Server or Secondary Server.
The New Server pop-up window is displayed.
To edit an existing external authentication server, click the edit icon next to Primary Server or Secondary Server.
The Edit Server pop-up window is displayed.
- Configure the parameters described in Table 1.
- Click OK.
The following table describes the parameters to create LDAP authentication servers for a WLAN SSID profile.
Parameter
Description
Server Type
Select LDAP from the drop-down list.
Enter a name for the LDAP server.
Enter an IP address of the LDAP server.
Enter a distinguished name for the admin user with read and search privileges across all the entries in the LDAP database.
The admin user need not have write privileges, but the admin user must be able to search the database, and read attributes of other users in the database.
Enter a password for the admin user.
Enter a timeout interval within a range of 1–30 seconds for one RADIUS Remote Authentication Dial-In User Service. An Industry-standard network access protocol for remote authentication. It allows authentication, authorization, and accounting of remote users who want to access network resources. request.
The default value is 5.
Enter the maximum number of authentication requests that can be sent to the server group. You can specify a value within the range of 1–5.
The default value is 3.
Enter an authorization port number of the LDAP server.
The default value is 389.
Enter a distinguished name for the node that contains the entire user database.
Enter the filter to apply when searching for a user in the LDAP database.
The default filter string is .
Enter the attribute to use as a key while searching for the LDAP server.
