Recently Viewed Topics
LDAP Servers with Multiple OUs
Tenable’s SecurityCenter LDAP configuration does not currently support the direct addition of multiple Organizational Units (OUs) in the LDAP configuration screen. Two deployment options are possible for those with multiple OUs.
Option 1 (Recommended)
Ad a container (e.g., group) only for SecurityCenter users and allow existing Active Directory users to become members of the newly created group. Use the Distinguished Name (DN) of this group as the Search Base. For example:
Save the changes and new users who are members of this group will be able to log in. No restart is required.
- Log in as an admin user.
Click System > Configuration > LDAP.
- Log out as the admin user and then log in as the organizational user who will be managing the user in question.
Create the new user. Type the LDAP Search String as =*.
Use a high level Search Base in the LDAP configuration. For example:
The example above could be used along with a Search String for global usage. This search string, when used in the configuration, will apply to all LDAP searches.
Note: This option is currently limited to 128 characters; we will extend the viewable window and increase the allowed length going forward.