LDAP user group credentials are stored on the remote server. If you want users in the LDAP user group to be able to log in to the orchestrator web interface using their credentials, you must first create an LDAP connection that the orchestrator uses to connect to the remote server, and then create your LDAP users or LDAP user groups.
If the user is a member of multiple LDAP user groups on the remote server, we recommend creating only one of those LDAP user groups in the orchestrator web interface. If multiple LDAP user groups have been created in the orchestrator web interface, a user that is a member of all of these LDAP user groups logs in to the orchestrator web interface as a member of that LDAP user group which was created first.
To create an LDAP user group:
The user management page is displayed. The Users tab, which is selected by default, displays the table of users.
A table of LDAP user groups is displayed.
user@domain
or domain\user
format.When two-factor authentication is enabled for a group of LDAP users, authenticated LDAP users are displayed in the table of users. You can disable two-factor authentication for an LDAP user by editing the user.
You cannot enable two-factor authentication for an LDAP user group if two-factor authentication is disabled for all users.
The LDAP user group is created and displayed in the table.
Page top