This plugin allows us to integrate CrushFTP with your LDAP server, such as the Microsoft Active Directory server, or OpenLDAP, etc.
The settings can br grouped into three major sections, based on functionality:
Connectivity and user lookup#
LDAP server URL, fully qualified user name and password of an LDAP account used for queries; the account needs read only access on the full LDAP tree. The plugin supports referral chasing, in case of multiple forests with trust relationship between, can allow this by setting the Follow referrals option. To use a secure LDAP (ldaps://) URL, set either the Accept any SSL certificate option or import the LDAP server public certificate into the Java trust store, cacerts.
Search base location needs to be pointed to the root of the LDAP tree or full path to some container OU. LDAP objects outside this path will not be visible to the plugin.
Search filter needs to be some unique LDAP attribute name, like sAMAccountName for plain username or userPrincipalName for the user FQDN as allowed username format. We can also automatically round robin between these if the On login, make two attempts... option is enabled. This field also allows more complex LDAP filter expressions , an example for enabled user accounts only
(&(objectClass=user)(objectCategory=person)(sAMAccountname=?)(!(UserAccountControl:1.2.840.113556.1.4.803:=2)))
Add new attachment
List of attachments
Kind | Attachment Name | Size | Version | Date Modified | Author | Change note |
---|---|---|---|---|---|---|
jpg |
Clipboard01.jpg | 219.8 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | uru |
png |
Clipboard01.png | 207.7 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
Notify_Locked_Account.png | 4.7 kB | 1 | 05-Dec-2023 05:32 | Halmágyi Árpád | |
png |
crushldapgroup1.png | 68.3 kB | 2 | 05-Dec-2023 05:32 | Ben Spink | |
png |
crushldapgroup2.png | 40.8 kB | 2 | 05-Dec-2023 05:32 | Ben Spink | |
png |
homedir0.png | 16.4 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
homedir1.png | 111.3 kB | 2 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
homedir2.png | 134.0 kB | 2 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
ldapconn1.png | 207.7 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
ldapconn2.png | 50.6 kB | 2 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
ldapconn3.png | 60.1 kB | 2 | 05-Dec-2023 05:32 | Ada Csaba | |
jpg |
ldaplookupsettings1.jpg | 66.1 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
mapping1.png | 25.1 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
roles1.png | 271.1 kB | 3 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
roles2.png | 6.2 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
trblshoot1.png | 144.8 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
trblshoot2.png | 113.0 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba | |
png |
trblshoot3.png | 230.8 kB | 1 | 05-Dec-2023 05:32 | Ada Csaba |