Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation

active-directory-access

Syntax

active-directory-access {domain domain-name {user username;password password;domain-controller domain-controller-name {address domain-controller-address;}ip-user-mapping {discovery-method {wmi {event-log-scanning-interval seconds;initial-event-log-timespan hours;}}}user-group-mapping {ldap {authentication-algorithm {simple;}ssl;base base;user name {password password;}address ip-address {port port;}}}}}

Hierarchy Level

[edit services user-identification]

Release Information

Statement introduced in Junos OS Release 12.1X47-D10.

Description

Identify the domain and domain controllers where the integrated user firewall feature is implemented; configure the IP address-to-user mapping information and the user-to-group mapping information for accessing the LDAP server.

Options

domain domain-name

Required. Name of the domain; the length of the name ranges from 1 through 64 characters. The SRX Series device can have the integrated user firewall feature configured in a maximum of two domains.

user username

Required. Active Directory account name.

Range: 1 through 64 characters.

password password

Required. Password of the Active Directory account.

Range: 1 through 128 characters.

domain-controller domain-controller-name

Required. Name of the domain controller; the length of the name can range from 1 through 64 characters. A maximum of 10 domain controllers can be configured.

address domain-controller-address

Required. IP address of the domain controller.

The remaining statements are explained separately. See CLI Explorer.

Required Privilege Level

security—To view this statement in the configuration.

security-control—To add this statement to the configuration.

Published: 2014-05-13