Directory assistance - LDAP

I have set up directory assistance to authenticate users in AD to access Domino application.

Following are the steps performed.

Created Directory assistance Database.

Enabled Directory Assistance in Server doc.

Created document in Directory assistance with the domain type as LDAP.

Restarted the server.

“Show xdir” shows the domain I have created in Directory assistance.

When I try to add a user in AD to a Database ACL, I’m unable to find the Directory assistance to select the name.

Could someone tell me how this directory will list to select (Search and add) AD users in the ACL.

As a work arond I’m able to create an Account in Local addressbook and populate that account in ACL to search and add names. It works fine. However the issue is that I have to create an account in every work station to do this.

Subject: AD entries don’t appear

HiGenerally speaking I don’t think you’ll ever see the AD entries when setting the ACL. You have to manually add them (eg */OU=SubDept/OU=Departments/DC=uk/DC=Company/DC=local), but once done the user can then login with their AD account name and password (this is on the web yes?)

Ian

Subject: DA name picker

you’ll only get the browseable name picker with DA if you specify a pubnames based address book in directory assistance

LDAP DA entries will still work for nameresolution, but you wont see a picker

Subject: Creating Local account

Ian, following the below step, you can search and select the AD name without entering manually in the ACL. issue is that you have to create account in every user’s local addres book.

Creating new Account in Local Address Book for LDAP search

Open Local Address Book.

Click on New > Account

Enter the required information in the new window.

Under Basics Tab, enter the following information

Account Name : Enter the account name of your choice. Eg : LDAP

Account Server Name: Enter the IP address or fully qualified name of AD server.

Login Name: Enter fully qualified user name in AD. Eg: CN=Administrator, DC=Users, DC=Sobis, DC=Com

Password: Enter the AD user password.

Find the below screen shot for example.

Click on Protocol Configuration tab.

Enter the following information.

Search Base: AD search base. Eg: DC=Sobis, DC=Com

Under advanced tab, enter port number as 389.

Click on Save and Close button.

Right click on a Database icon where user have manager access.

Click on Application > Access Control List

Click on Add.

Click on person icon in Add user window.

Under Directory field click on the drop down list to list the directories.

Select the account name you have created.

Enter the name of the person you are looking for and hit search.

Select the name and click on Add.

Click on OK to all the windows.