Setting Up External Authentication with LDAP
3 min
to set up users for authentication via the , refer to setting up itsm users for authentication via the neurons platform docid\ wnkkhhscs2a4b5njr5ng4 and authentication https //help ivanti com/ht/help/en us/cloud/vnow/authentication htm this feature is early access only and may not be available in your environment for more information, please contact your customer success manager setting up authentication for ldap docid\ mbqsm7enlcwhf rlk20qrusing ldap synchronization docid\ mbqsm7enlcwhf rlk20qr setting up authentication for ldap use port 389 for ldap (or port 636 for ldaps) the protocol for ldap is tcp from the configuration console, click configure > security controls > authentication providers to open the authentication providers workspace from the new record menu drop down list, select new ldap new ldap provider page enter data into the fields field description default specifies if this authentication provider is called automatically set by the application you change this in the list to make this authentication provider the default, you must first change the default setting for all other authentication providers to false and then change the default setting for this authentication provider to true disabled specifies if this authentication provider is disabled name the ldap server name or alias ldap server name or ip address of the ldap server used for authentication if a non standard ldap port is used add it to the server name with a colon (servername\ port) sort order specifies the sort order of this provider in relation to other providers assigned to a user a value of 1 means that this provider is used first for authentication when logging in if a login failure occurs (such as a server failure or incorrect password), the application uses the next provider in the sort order the last successfully authenticated login is highlighted in the enable external auth area of the employee record use this field only if multiple authentication providers are configured connect to edirectory open ldap server connects to edirectory and the open ldap server use ssl connection allows a connection to a ldaps server the target ldap server should also be configured correctly as a trusted certificate authority if using an ldaps server that is not a trusted certificate authority, use the browse button to locate a certificate file, which should contain the fully qualified domain name path of the ldap profile expiration date specifies the date that the certificate expires this field merely stores the date so that you can see when the current one expires and get another certificate before or when it expires auto provision role only displays if you check auto provisioning the role associated with the new user auto provision status only displays if you check auto provisioning the status of the new user auto provision team only displays if you check auto provisioning the team associated with the new user auto provision user business object only displays if you check auto provisioning the type of user record to create can be either employee or external contact click save log in to the service desk console open the employee workspace the application displays a list of employees open the employee record to set up authentication for from the employee record, reference the newly created authentication provider ensure the following the value of the login id field should be the id to access ldap (required) the enable external auth field is checked the login for external auth field is populated and references the newly created authentication provider edit external login window using ldap synchronization if you enable external authentication, you must synchronize employee profiles from the ldap directory server for more information about ldap synchronization, refer to configuring ldap settings docid\ cu xe1esqwc mz5p2w2ce
