About enabling LDAP authentication for clusters that run in secure mode

Symantec Product Authentication Service (AT) supports LDAP (Lightweight Directory Access Protocol) user authentication through a plug-in for the authentication broker. AT supports all common LDAP distributions such as Sun Directory Server, Netscape, OpenLDAP, and Windows Active Directory.

For a cluster that runs in secure mode, you must enable the LDAP authentication plug-in if the VCS users belong to an LDAP domain.

See Enabling LDAP authentication for clusters that run in secure mode.

If you have not already added VCS users during installation, you can add the users later.

See the Veritas Cluster Server User's Guide for instructions to add VCS users.

Figure: Client communication with LDAP servers depicts the VCS cluster communication with the LDAP servers when clusters run in secure mode.

Figure: Client communication with LDAP servers

Client communication with LDAP servers

See the Symantec Product Authentication Service Administrator's Guide.

The LDAP schema and syntax for LDAP commands (such as, ldapadd, ldapmodify, and ldapsearch) vary based on your LDAP implementation.

Before adding the LDAP domain in Symantec Product Authentication Service, note the following information about your LDAP environment: