Administration > Tools
LDAP settings define how Network VirusWall Enforcer authenticates endpoint users for policy enforcement.
To configure LDAP server settings:
Click Administration. The drop-down menu displays
Click LDAP Settings from the drop-down menu. The LDAP Server screen displays.
Select Use Microsoft Active Directory or Use OpenLDAP.
Note: Network VirusWall Enforcer supports single sign-on (SSO) to the Internet, if you select Use Microsoft Active Directory.
Select the Authentication method. Network VirusWall Enforcer supports Simple, Kerberos, and Digest MD5.
Note: Kerberos authentication is not supported in IPv6 networks. When using Kerberos authentication, both the LDAP and the KDC server addresses must be IPv4 addresses.
Type the following:
LDAP server location—type an FQDN, such as www.trendmicro.com, or an IP address
LDAP server port—for example, 389
Base distinguished name—type the DN setting, for example, dc=trend, dc=com
KDC server location—type an FQDN, such as www.trendmicro.com, or an IP address
Default realm—for example, TREND.COM
Default domain—for example, trend.com
KDC principal name—KDC principal name. This setting is only used for Microsoft Active Directory 2008.
KDC server port as they apply—for example, 88
Depending on your security policies, select Enable single sign-on (SSO) to the Internet. This option is available only if you have selected Use Microsoft Active Directory.
Click Save.