立即保护您的LDAP

  • 2020年7月14日
  • 0答复
  • 484意见

UserLevel 6
徽章 +5

微软已于今年3月在Active Directory Windows Servers Architecture中启用了LDAP通道绑定和LDAP签名。Nutanix建议将PRISM身份验证从389端口的LDAP更改为端口636或SSL加密端口3269的LDAP。

该过程需要注意的两件事是:

  • 仅更改端口号是不够的,因为LDAP协议也需要更改为LDAP
  • 棱镜自签名证书与LDAP一起工作,因此没有额外的麻烦

该过程很简单,仅需要在棱镜设置中更改URL语法。

有关说明和验证步骤,请参见:
KB-9029更改LDAP端口389身份验证以保护LDAP(LDAP)端口636或3269。

有关LDAP的更多信息:
KB-3363 Prism:故障排除LDAP和AD问题以登录Prism

有关Microsoft Change的更多信息:
2020 LDAP通道绑定和Windows的LDAP签名要求。


该主题已关闭以供评论
Learn more about our cookies.<\/a>","cookiepolicy.button":"Accept cookies","cookiepolicy.button.deny":"Deny all","cookiepolicy.link":"Cookie settings","cookiepolicy.modal.title":"Cookie settings","cookiepolicy.modal.content":"We use 3 different kinds of cookies. You can choose which cookies you want to accept. We need basic cookies to make this site work, therefore these are the minimum you can select. Learn more about our cookies.<\/a>","cookiepolicy.modal.level1":"Basic
Functional","cookiepolicy.modal.level2":"Normal
Functional + analytics","cookiepolicy.modal.level3":"Complete
Functional + analytics + social media + embedded videos"}}}">
Baidu