Groups tab

This tab maps groups to system access rights.
Figure 406.   Groups tab
Image

You access this tab by navigating to Controller (System) Setup > Remote Devices > Remote Drivers, double-clicking the LdapNetwork driver row in the table, clicking the Ldap Server tab, double-clicking the Ldap Server row, and clicking the Groups tab. To view the Discovered pane, click the discover control button (Image).

Discover groups window

Groups in the LDAP server equate to access rights in the system.

You access this view when you click the Groups tab in the Ldap Server view.

Figure 407.   Discover groups window
Image

This window opens when you click the Discover button (Image) on the Ldap Server Groups tab.

Property Value Description
Group Search Base text
Defines from which node in the LDAP server to begin searching for groups (access rights).
Group Search Filter domain components
For group records, defines the objectClass (metadata) associated with each record that identifies it as a group record versus a system or other record type in the server database.
Group Search Scope drop-down list
Defines how much of the LDAP server to search.

Object Scope

One Level Scope

Subtree Scope extends the scope to the child nodes of the node defined in the Group Search Base expression.

LDAP Group Manager pane

In addition to the standard control buttons (Delete, Filter, Refresh, and Learn Mode), these buttons serve LDAP functions.

  • Image Discover identifies the LDAP groups that are available for to be assigned to system access rights.

LDAP Group Manager columns

Column Description
GroupName Identifies the system name for this group.
AccessRight Identifies the system name for the assigned set of access rights.

Discovered Pane

In addition to the standard control buttons (Filter and Export), these buttons apply specifically to LDAP configuration:

  • Image Add moves the selected discovered group from the Discovered pane to the LDAP Group Manager pane.
  • Image Match associates the selected access right in the LDAP Group Manager pane with a discovered and selected LDAP group in the Discovered pane.

LDAP group Discovered columns

Column Description
distinguishedName Identifies the attribute in the LDAP server.
cn Indicates if the property is required by the LDAP server.
GroupExists Group exists defaults to false.