Statement introduced
in Release 8.5 of JUNOS software.
Description
Specify the base distinguished name
(DN), which can be used in one of the following ways:
If you are using the assemble statement so that
the user's distinguished name is being assembled, the base distinguished
name is appended to a username to generate the user's distinguished
name. The resulting distinguished name is used in the LDAP bind call.
If you are using the search statement so that
the user's distinguished name is found by a search, the search is
restricted to the subtree of the base distinguished name.
This statement is supported on J-series and SRX-series
devices.
Options
base-distinguished-name—Series of basic properties that define the user. For
example in the base distinguished name o=juniper, c=us, where c stands for country, and o for organization.
Usage Guidelines
For configuration
instructions and examples, see the JUNOS Software Security Configuration Guide.
Required Privilege Level
access—To view this statement
in the configuration.
access-control—To add this statement to the
configuration.