
If you also have user group objects in another OU named groups, with user accounts in an OU named accounts, and your domain name is, use the search base dc=example,dc=com. Any user or group you use in the Firebox configuration must be within this OU. To restrict the LDAP search to the Organizational Unit (OU) named as accounts, you can use the search base ou=accounts,dc=example,dc=com. If your domain name is, you can use the search base dc=example,dc=com. When you configure the LDAP authentication method, you set a search base to specify where in the authentication server directories the Firebox can search for an authentication match. Active Directory Global Catalog queries - 3269.You can specify the IP address or the DNS name of your LDAP server. For more information, see Configure Active Directory Authentication.

LDAP is an open-standard protocol for use with online directory services.īefore you configure your Firebox for LDAP authentication, review the documentation for your LDAP server to determine whether your installation supports the memberOf (or equivalent) attribute.įor authentication to an Active Directory server, WatchGuard recommends that you configure Active Directory authentication on the Firebox rather than LDAP authentication. You can use an Lightweight Directory Access Protocol (LDAP) authentication server to authenticate users with your Firebox.
