Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Setting up attribute matching
Security Manager Help | Web, Data, and Email Protection Solutions | v8.4.x
Use the Global Settings > General > Two-Factor Auth > Configure Attribute Matching page to define the administrator LDAP property that matches against a property in the certificate provided.
1.
Under Administrator Property, select a property from the administrator user directory to use to match against the administrator's certificate. This can be:
*
The administrator Email address (local and network accounts)
*
LDAP distinguished name (network accounts only)
*
User name (local and network accounts)
*
A Custom LDAP field (network accounts only)
 
Note 
2.
If you have defined a custom LDAP field, click Verify Administrator Property to confirm that the property exists in your user directory. Select a network administrator account to verify against.
 
Note 
When you save the settings on this page, the custom property is imported for all applicable accounts (network only, or local and network accounts) in the Security Manager. To change this field at a later date, click Update Property to import the new attribute matching value.
3.
Under Certificate Property, select the property in the administrator's logon certificate to match against the LDAP property that you defined:
*
*
*
4.
Click OK.
The properties that you selected are displayed in the Certificate Matching area on the General > Two-Factor Auth page.

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Copyright 2017 Forcepoint. All rights reserved.
View all fonts in this project