To enable the iOS MDM device user to access corporate contacts on the LDAP server, add the LDAP account.
To add the LDAP account of the iOS MDM device user:
In the console tree, in the Managed devices folder, select the administration group to which the iOS MDM devices belong.
In the workspace of the group, select the Policies tab.
Open the policy properties window by double-clicking any column.
Complete the following steps within 15 minutes. Otherwise, you may face an error when saving changes to the policy.
In the policy Properties window, select the LDAP section.
Click the Add button in the LDAP accounts section.
The LDAP account window opens.
In the Description field, enter a description of the user's LDAP account. You can use macros from the Macros available drop-down list.
In the Account Name field, enter the account name for authorization on the LDAP server. You can use macros from the Macros available drop-down list.
In the Password field, enter the password of the LDAP account for authorization on the LDAP server.
In the Server address (cannot be left blank) field, enter the name of the LDAP server domain. You can use macros from the Macros available drop-down list.
To use the SSL (Secure Sockets Layer) data transport protocol to secure the transmission of messages, select the Use SSL connection check box.
Compile a list of search queries for the iOS MDM device user access to corporate data on the LDAP server:
Click the Add button in the Search settings section.
A blank row appears in the table with search queries.
In the Name column, enter the name of a search query.
In the Search scope column, select the nesting level of the folder for the corporate data search on the LDAP server:
Base – search in the base folder of the LDAP server.
One level – search in folders on the first nesting level counting from the base folder.
Subtree – search in folders on all nesting levels counting from the base folder.
In the Search base column, enter the path to the folder on the LDAP server with which the search begins (for example: "ou=people", "o=example corp").
Repeat steps a-d for all search queries that you want to add to the iOS MDM device.
Click OK.
The new LDAP account appears in the list.
Click the Apply button to save the changes you have made.
As a result, once the policy is applied, LDAP accounts from the compiled list will be added on the user's mobile device. The user can access corporate contacts in the standard iOS apps: Contacts, Messages, and Mail.