Procedure
- Obtain the information required to configure LDAP integration from the server administrator.
- Go to .
- Do one of the following:
-
Click Add to add a new entry.
-
Click a name to change the server settings.
-
- Select to enable or disable the server.
- Select a server type.
- Specify the name of the server.
- Configure the server settings (server address, access
protocol, and port number).

Note
Trend Micro recommends using the following default ports:-
For Microsoft Active Directory, or OpenLDAP:
-
SSL: 636
-
STARTTLS: 389
-
-
For Microsoft AD Global Catalog:
-
SSL: 3269
-
STARTTLS: 3268
-
-
- Configure administrative settings for the LDAP server.The following table provides the configuration recommendations for each supported LDAP server type.LDAP Server TypeUser Name (example)Base Distinguished Name (example)Active Directoryuser1@domain.com (UPN)dc=domain, dc=comActive Directory Global Cataloguser1@domain.com (UPN)dc=domain, dc=comdc=domain1,dc=com (if multiple unique domains exist)OpenLDAPcn=manager, dc=test1, dc=comdc=test1, dc=com
- Type the base distinguished name.
- Select an email address attribute option to apply policy settings based on the address information.
- Type the user name.
- Type the password.
- (Optional) If your organization uses a CA certificate, select Use CA certificate and click Select to locate the CA certificate file.
- If the LDAP server uses filter settings other than the default, specify the User filter and Group filter.
- (Optional) Click Test Connection to verify that a connection to the LDAP server can be established using the specified information.
- Click Save.
