LDAP Attribute Mapping

LDAP address list configuration relies on attribute mapping to manage settings, such as name and email address, on generated certificates. When configuring the attribute fields, you will need to specify the name of the LDAP attribute that the field should reference. For example, you might enter an LDAP attribute of mail into the Email field, instead of manually entering an email address. The attribute you enter into the fields can be any of those configured in your LDAP server.

For a number of optional LDAP attribute mapping fields, you can leave the fields blank and specify a default in the Certificate Details panel on the Trust Center Configuration page. These defaults will be used for any certificateClosed A digital means of proving your identity. When you send a digitally-signed message, you are sending your certificate and public key. Certificates are issued by a certification authority and can expire or be revoked. attributes for which the LDAP address list mapping returns an empty value.

Configure a Trust Center to reference LDAP address lists

 

As described in the Required information when configuring the Trust Center section, information you need to provide may vary, depending on the product type you have with SwissSign.

  1. Navigate to System > Encryption > Trust Center Configuration. The Trust Center Configuration page is displayed.

  2. In the LDAP Address Lists panel, click Add. The Add LDAP Address List dialog is displayed.

  3. In the Address List section, select an LDAP address list from the drop-down menu. Alternatively, create a new list.

  4. In the LDAP Attribute Mapping section, specify the following fields.

    Email

    Common Name

    Given Name

    Surname

    Pseudonym

    Company

    Department

    State

    Country

  5. Click Add.

  6. Apply the configuration.

Edit, remove, copy, enable or disable an LDAP address list settings

 

These actions are to modify the settings of an LDAP address list for the Trust Center usage.

To modify fundamental configurations of the LDAP address list (e.g. server details), navigate to Policy > Policy References > Email Addresses.

  1. Navigate to System > Encryption > Trust Center Configuration. The Trust Center Configuration page is displayed.

  2. In the LDAP Address Lists panel, select the list.

  3. Click the action you require:

    Edit

    Remove

    Copy

    Enable

    Disable

     

    If you wish to temporarily stop the Gateway from using a particular LDAP address list, disable it rather than removing, and re-enable it when required.

  4. Modify the setting and save or confirm the action.

  5. Apply the configuration.

 

If you change any configuration or policy settings, you must Apply Configuration for the new settings to take effect. You can do this either from the Changes Made panel, or System > ConfigurationApply Configuration. See Apply new configuration for more information.

If you use Peer Gateways (i.e. when multiple Gateways are peered), any configuration changes from a local Gateway can then be applied to all the peers at the same time. See Configure Peer Gateways for more information.

See also...