STATE_DISABLEDSTATE_ENABLEDLDAP_SSL_OPTION_NONELDAP_SSL_OPTION_ONLDAP_SSL_OPTION_UNKNOWNLDAP_SEARCH_SCOPE_BASELDAP_SEARCH_SCOPE_ONE_LEVELLDAP_SEARCH_SCOPE_SUBTREELDAP_SEARCH_SCOPE_UNKNOWN
Gets a list of all LDAP configurations.
Creates the specified LDAP configurations.
Creates the default authentication LDAP configuration.
Creates the default authentication Active Directory configuration.
Deletes the specified LDAP configurations.
Deletes all LDAP configurations.
Sets the states indicating whether syslog debugging is enabled/disabled.
Gets the states indicating whether syslog debugging is enabled/disabled.
Sets the states indicating whether to ignore errors when authentication information is unavailable.
Gets the states indicating whether to ignore errors when authentication information is unavailable.
Sets the states indicating whether to enabled/disable warning messages.
Gets the states indicating whether to enabled/disable warning messages.
Sets the ports used by the LDAP servers to listen for requests.
Gets the ports used by the LDAP servers to listen for requests.
Sets the LDAP SSL options used by the LDAP configurations.
Gets the LDAP SSL options used by the LDAP configurations.
Sets the states indicating whether to require and verify server certificate.
Gets the states indicating whether to require and verify server certificate.
This method has been deprecated due to the switch to use file
objects. See set_ssl_ca_certificate_file_v2.
Sets the CA certificates used in server certificate verification.
This method has been deprecated due to the switch to use file
objects. See get_ssl_ca_certificate_file_v2.
Gets the CA certificates used in server certificate verification.
Sets the CA certificate file objects used in server certificate
verification for a set of LDAP authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Gets the CA certificate file object names used in server
certificate verification for a set of LDAP authentication
configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Sets the SSL cipher suite used by the LDAP configurations.
Gets the SSL cipher suite used by the LDAP configurations.
This method has been deprecated due to the switch to use file
objects. See set_ssl_client_key_v2.
Sets the client keys used by the LDAP configurations.
This method has been deprecated due to the switch to use file
objects. See get_ssl_client_key_v2.
Gets the client keys used by the LDAP configurations.
Sets the client key file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Gets the client key file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
This method has been deprecated due to the switch to use file
objects. See set_ssl_client_certificate_v2.
Sets the client certificates used by the LDAP configurations.
This method has been deprecated due to the switch to use file
objects. See get_ssl_client_certificate_v2.
Gets the client certificates used by the LDAP configurations.
Sets the client certificate file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Gets the client certificate file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Sets the distinguished names of the search bases used by the LDAP configurations.
Gets the distinguished names of the search bases used by the LDAP configurations.
Sets the LDAP versions to use by the LDAP configurations.
Gets the LDAP versions to use by the LDAP configurations.
Sets the distinguished names used to bind to the servers. Default is to bind anonymously.
Gets the distinguished names used to bind to the servers. Default is to bind anonymously.
Sets the credentials used to bind to the servers. Default is to bind with no credentials.
Gets the credentials used to bind to the servers. Default is to bind with no credentials.
Sets the search scopes used by the LDAP configurations.
Gets the search scopes used by the LDAP configurations.
Sets the search time limits in seconds. This is the time to wait for the search to complete.
Gets the search time limits in seconds. This is the time to wait for the search to complete.
Sets the bind time limits in seconds. This is the time to wait for the bind to complete.
Gets the bind time limits in seconds. This is the time to wait for the bind to complete.
Sets the idle time limits in seconds. This client will close connections if the server has not
been contacted for the number of seconds specified by this value.
Gets the idle time limits in seconds. This client will close connections if the server has not
been contacted for the number of seconds specified by this value.
Sets the filter strings used by the specified LDAP configurations.
Gets the filter strings used by the specified LDAP configurations.
Sets the states indicating whether to check the 'host' attribute for access control. Default is no;
if set to yes, and user has no value for the host attribute, and pam_ldap is configured for account
management (authorization) then the user will not be allowed to login.
Gets the states indicating whether to check the 'host' attribute for access control. Default is no;
if set to yes, and user has no value for the host attribute, and pam_ldap is configured for account
management (authorization) then the user will not be allowed to login.
Sets the states indicating whether to check the membership
attribute in groups given in remote-role definitions for
access control. Default is no; if set to yes, and user does
not belong to any groups given in the remote-role
definitions, and pam_ldap is configured for account
management (authorization) then the user will only be able
to log in using the default remote-role, which can be set
to deny access.
Gets the states indicating whether to check the membership
attribute in groups given in remote-role definitions for
access control.
Sets the group distinguished names used to enforce membership.
Gets the group distinguished names used to enforce membership.
Sets the group member attributes for the specified LDAP configurations.
Gets the group member attributes for the specified LDAP configurations.
Sets the login attributes used by the specified LDAP configurations.
Gets the login attributes used by the specified LDAP configurations.
Gets the lists of servers the specified LDAP configurations are associated with.
Adds/associates servers to the specified LDAP configurations.
Removes servers from the specified LDAP configurations.
Sets the user templates used by the specified LDAP configurations.
Gets the user templates used by the specified LDAP configurations.
Sets the description for a set of LDAP configurations.
This is an arbitrary field which can be used for any purpose.
Gets the descriptions for a set of LDAP configurations.
Gets the version information for this interface.
Gets a list of all LDAP configurations.
Creates the specified LDAP configurations.
Creates the default authentication LDAP configuration.
Creates the default authentication Active Directory configuration.
Deletes the specified LDAP configurations.
Deletes all LDAP configurations.
Sets the states indicating whether syslog debugging is enabled/disabled.
Gets the states indicating whether syslog debugging is enabled/disabled.
Sets the states indicating whether to ignore errors when authentication information is unavailable.
Gets the states indicating whether to ignore errors when authentication information is unavailable.
Sets the states indicating whether to enabled/disable warning messages.
Gets the states indicating whether to enabled/disable warning messages.
Sets the ports used by the LDAP servers to listen for requests.
Gets the ports used by the LDAP servers to listen for requests.
Sets the LDAP SSL options used by the LDAP configurations.
Gets the LDAP SSL options used by the LDAP configurations.
Sets the states indicating whether to require and verify server certificate.
Gets the states indicating whether to require and verify server certificate.
This method has been deprecated due to the switch to use file
objects. See set_ssl_ca_certificate_file_v2.
Sets the CA certificates used in server certificate verification.
This method has been deprecated due to the switch to use file
objects. See get_ssl_ca_certificate_file_v2.
Gets the CA certificates used in server certificate verification.
Sets the CA certificate file objects used in server certificate
verification for a set of LDAP authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Gets the CA certificate file object names used in server
certificate verification for a set of LDAP authentication
configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Sets the SSL cipher suite used by the LDAP configurations.
Gets the SSL cipher suite used by the LDAP configurations.
This method has been deprecated due to the switch to use file
objects. See set_ssl_client_key_v2.
Sets the client keys used by the LDAP configurations.
This method has been deprecated due to the switch to use file
objects. See get_ssl_client_key_v2.
Gets the client keys used by the LDAP configurations.
Sets the client key file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Gets the client key file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
This method has been deprecated due to the switch to use file
objects. See set_ssl_client_certificate_v2.
Sets the client certificates used by the LDAP configurations.
This method has been deprecated due to the switch to use file
objects. See get_ssl_client_certificate_v2.
Gets the client certificates used by the LDAP configurations.
Sets the client certificate file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Gets the client certificate file objects used by a set of LDAP
authentication configurations.
See the Management::KeyCertificate interface for certificate file
object management.
Sets the distinguished names of the search bases used by the LDAP configurations.
Gets the distinguished names of the search bases used by the LDAP configurations.
Sets the LDAP versions to use by the LDAP configurations.
Gets the LDAP versions to use by the LDAP configurations.
Sets the distinguished names used to bind to the servers. Default is to bind anonymously.
Gets the distinguished names used to bind to the servers. Default is to bind anonymously.
Sets the credentials used to bind to the servers. Default is to bind with no credentials.
Gets the credentials used to bind to the servers. Default is to bind with no credentials.
Sets the search scopes used by the LDAP configurations.
Gets the search scopes used by the LDAP configurations.
Sets the search time limits in seconds. This is the time to wait for the search to complete.
Gets the search time limits in seconds. This is the time to wait for the search to complete.
Sets the bind time limits in seconds. This is the time to wait for the bind to complete.
Gets the bind time limits in seconds. This is the time to wait for the bind to complete.
Sets the idle time limits in seconds. This client will close connections if the server has not
been contacted for the number of seconds specified by this value.
Gets the idle time limits in seconds. This client will close connections if the server has not
been contacted for the number of seconds specified by this value.
Sets the filter strings used by the specified LDAP configurations.
Gets the filter strings used by the specified LDAP configurations.
Sets the states indicating whether to check the 'host' attribute for access control. Default is no;
if set to yes, and user has no value for the host attribute, and pam_ldap is configured for account
management (authorization) then the user will not be allowed to login.
Gets the states indicating whether to check the 'host' attribute for access control. Default is no;
if set to yes, and user has no value for the host attribute, and pam_ldap is configured for account
management (authorization) then the user will not be allowed to login.
Sets the states indicating whether to check the membership
attribute in groups given in remote-role definitions for
access control. Default is no; if set to yes, and user does
not belong to any groups given in the remote-role
definitions, and pam_ldap is configured for account
management (authorization) then the user will only be able
to log in using the default remote-role, which can be set
to deny access.
Gets the states indicating whether to check the membership
attribute in groups given in remote-role definitions for
access control.
Sets the group distinguished names used to enforce membership.
Gets the group distinguished names used to enforce membership.
Sets the group member attributes for the specified LDAP configurations.
Gets the group member attributes for the specified LDAP configurations.
Sets the login attributes used by the specified LDAP configurations.
Gets the login attributes used by the specified LDAP configurations.
Gets the lists of servers the specified LDAP configurations are associated with.
Adds/associates servers to the specified LDAP configurations.
Removes servers from the specified LDAP configurations.
Sets the user templates used by the specified LDAP configurations.
Gets the user templates used by the specified LDAP configurations.
Sets the description for a set of LDAP configurations.
This is an arbitrary field which can be used for any purpose.
Gets the descriptions for a set of LDAP configurations.
Gets the version information for this interface.
The LDAPConfiguration interface enables you to manage LDAP PAM configuration.