27.11.2012 Views

IronPort - advanced configuration guide

IronPort - advanced configuration guide

IronPort - advanced configuration guide

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Chapter 3 LDAP Queries<br />

Sample Active Directory Alias Consolidation Settings<br />

OL-25137-01<br />

This section shows sample settings for an Active Directory server and the alias consolidation query. This<br />

example uses anonymous authentication for the Active Directory server, a query string for alias<br />

consolidation for Active Directory servers, and the mail email attribute.<br />

Table 3-13 Example LDAP Server and Spam Quarantine Alias Consolidation Settings: Active<br />

Directory<br />

Authentication Method Anonymous<br />

Server Type Active Directory<br />

Port 3268<br />

Base DN [Blank]<br />

Connection Protocol Use SSL<br />

Query String (|(mail={a})(mail=smtp:{a}))<br />

Email Attribute mail<br />

Sample OpenLDAP Alias Consolidation Settings<br />

This section shows sample settings for an OpenLDAP server and the alias consolidation query. This<br />

example uses anonymous authentication for the OpenLDAP server, a query string for alias consolidation<br />

for OpenLDAP servers, and the mail email attribute.<br />

Table 3-14 Example LDAP Server and Spam Quarantine Alias Consolidation Settings: OpenLDAP<br />

Authentication Method Anonymous<br />

Server Type OpenLDAP<br />

Port 389<br />

Base DN [Blank] (Some older schemas will want to use a specific<br />

Base DN.)<br />

Connection Protocol Use SSL<br />

Query String (mail={a})<br />

Email Attribute mail<br />

the Email Security appliance must include the complete distinguished names for the message senders<br />

when it sends DLP incident data to Enterprise Manager. To acquire the sender name for Enterprise<br />

Manager, create a user distinguished name query for your LDAP server and add the query to the listeners<br />

that send outgoing messages on your Email Security appliance. The Email Security appliance only uses<br />

this query when RSA Enterprise Manager is enabled for DLP. Otherwise, it does not appear as an option<br />

for the server profile.<br />

Cisco <strong>IronPort</strong> AsyncOS 7.6 for Email Advanced Configuration Guide<br />

3-45

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!