{"id":41418,"date":"2024-03-19T06:22:03","date_gmt":"2024-03-19T05:22:03","guid":{"rendered":"https:\/\/kb.apptec360.com\/manual\/knowledgebase\/ldap-overview\/"},"modified":"2024-12-04T05:35:27","modified_gmt":"2024-12-04T04:35:27","slug":"ldap-overview","status":"publish","type":"knowledgebase","link":"https:\/\/kb.apptec360.com\/manual\/lt\/knowledgebase\/general-settings\/ldap-configuration\/ldap-overview\/","title":{"rendered":"LDAP ap\u017evalga"},"content":{"rendered":"\n<p>\u010cia galite u\u017emegzti ry\u0161\u012f su &#8222;Active Directory&#8221; per LDAP ir masi\u0161kai importuoti naudotojus ir grupes. Sinchronizavim\u0105 reikia atlikti rankiniu b\u016bdu. Galite sukonfig\u016bruoti kelis LDAP ry\u0161ius su skirtingomis sistemomis arba su skirtingomis konfig\u016bracijomis \/ filtrais.  <\/p>\n\n<table id=\"tablepress-13\" class=\"tablepress tablepress-id-13\">\n<caption style=\"caption-side:bottom;text-align:left;border:none;background:none;margin:0;padding:0;\"><a href=\"https:\/\/kb.apptec360.com\/manual\/wp-admin\/admin.php?page=tablepress&#038;action=edit&#038;table_id=13\" rel=\"nofollow\">Redaguoti<\/a><\/caption>\n<tbody class=\"row-hover\">\n<tr class=\"row-1 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Serverio pavadinimas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Serverio rodomas vardas<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-2 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Tipas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>\u0160iuo metu palaikomi tik LDAP palaikantys &#8222;Active&#8221; katalogai<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-3 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>LDAP domenas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Pagrindinis LDAP domenas (pvz., example.com)<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-4 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>LDAP prieglobstis<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>B\u016btinas tik tuo atveju, jei LDAP prieglobstis nepasiekiamas pagal nurodyt\u0105 LDAP domen\u0105.<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-5 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Uostas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Palikite tu\u0161\u010di\u0105, jei norite naudoti standartin\u012f prievad\u0105 (389 arba 636 SSL)<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-6 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Vartotojo vardas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Pvz., CN=John,OU=Users,DC=EXAMPLE,DC=COM Pastaba: Dauguma sistem\u0173 reikalauja tokio formato vartotojo vardo ir nepriima &#8222;John&#8221; kaip vartotojo vardo.<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-7 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Slapta\u017eodis<\/p><br\/>\n      <\/td><td class=\"column-2\"><\/td>\n<\/tr>\n<tr class=\"row-8 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Patvirtinti slapta\u017eod\u012f<\/p><br\/>\n      <\/td><td class=\"column-2\"><\/td>\n<\/tr>\n<tr class=\"row-9 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Ry\u0161io saugumas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Pastaba: naudojant SSL arba TLS, bus tikrinamas &#8222;Active Directory&#8221; sertifikatas. Jei jis yra pasira\u0161ytas paties naudotojo, turite prid\u0117ti \u0161aknin\u012f CA prie &#8222;OnPremise&#8221; ma\u0161inos pasitik\u0117jimo saugyklos. Jei esate debesyje, &#8222;Active Directory&#8221; turi pateikti patikim\u0105 sertifikat\u0105, kitaip ry\u0161ys veiks tik be \u0161ifravimo  <\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-10 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Automatinis sinchronizavimas.<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>\u012ejungiamas automatinis LDAP katalogo sinchronizavimas per laiko interval\u0105, nurodyt\u0105 bendruosiuose LDAP nustatymuose.<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-11 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Bazinis DN<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Jei nenorite sinchronizuoti viso katalogo, \u010dia galite nurodyti OU.Pvz., OU=AndroidUsers,OU=Users,DC=EXAMPLE,DC=COM<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-12 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Narys<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Visi importuoti naudotojai bus \u012ftraukti \u012f pasirinkt\u0105 grup\u0119<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-13 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Tik aktyvuoti naudotojai?<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Kai \u012fjungta, bus atsi\u017evelgiama \u012f atribut\u0105 userAccountControl, vartotojai be \u0161io atributo nebus importuojami.<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-14 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>LDAP filtras<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Naudodami LDAP filtr\u0105 galite filtruoti importuojamus naudotojus.<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-15 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>&#8222;Regex&#8221; filtras<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Galite naudoti &#8222;Regex&#8221; filtr\u0105, kad i\u0161filtruotum\u0117te importuojamus vartotojus<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-16 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Bandomasis prijungimas<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Testuoja ry\u0161\u012f i\u0161saugant konfig\u016bracij\u0105<\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-17 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Sinchronizuojant i\u0161 naujo nustatyti katalog\u0173 strukt\u016br\u0105?<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Jei tiesa, visi LDAP \u012fra\u0161ai bus perkelti atgal \u012f pradin\u0119 viet\u0105 LDAP medyje. Rekomenduojama \u012fjungti. <\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-18 even\">\n\t<td class=\"column-1\"><br\/>\n        <p>Pakartotinai importuoti i\u0161trintus naudotojus ir grupes?<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Kai \u0161i funkcija \u012fjungta, i\u0161trinti naudotojai ir grup\u0117s bus sukurti i\u0161 naujo. Rekomenduojama \u012fjungti. <\/p><br\/>\n      <\/td>\n<\/tr>\n<tr class=\"row-19 odd\">\n\t<td class=\"column-1\"><br\/>\n        <p>Sinchronizavimo i\u0161trynimai?<\/p><br\/>\n      <\/td><td class=\"column-2\"><br\/>\n        <p>Kai \u0161i funkcija \u012fjungta, grup\u0117s ir naudotojai bus i\u0161trinti, kai jie bus i\u0161trinti LDAP serveryje. Taip pat bus i\u0161trinti i\u0161trint\u0173 naudotoj\u0173 \u012frenginiai. <\/p><br\/>\n      <\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n\n<p>Po LDAP konfig\u016bracij\u0173 s\u0105ra\u0161u galite nustatyti laikotarp\u012f, kuriuo sistema sinchronizuojama automati\u0161kai. Automatiniam sinchronizavimui naudojamos tik tos LDAP konfig\u016bracijos, kuriose \u012fjungta atitinkama parinktis. <\/p>\n\n<div class=\"pagebreak-after\"><\/div>\n","protected":false},"parent":41419,"menu_order":0,"template":"","class_list":["post-41418","knowledgebase","type-knowledgebase","status-publish","hentry"],"acf":[],"_links":{"self":[{"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/knowledgebase\/41418","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/knowledgebase"}],"about":[{"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/types\/knowledgebase"}],"version-history":[{"count":2,"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/knowledgebase\/41418\/revisions"}],"predecessor-version":[{"id":44607,"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/knowledgebase\/41418\/revisions\/44607"}],"up":[{"embeddable":true,"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/knowledgebase\/41419"}],"wp:attachment":[{"href":"https:\/\/kb.apptec360.com\/manual\/lt\/wp-json\/wp\/v2\/media?parent=41418"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}