The LDAP - TLS Profile is used to add the Domain Controller root certificate to the SBC.
set profiles security ldapTlsProfile <Profile Name> ldapCaCerts <PkiRootCertificateFile Name>
delete profiles security ldapTlsProfile defaultLdapTlsProfile ldapCaCerts <Certificate Name>
The parameters ldapTlsProfile and ldapCaCerts are as shown below:
Parameter | Length/Range | Default | Description | M/O |
---|---|---|---|---|
ldapTlsProfile | N/A | defaultLdapTlsProfile | The name of LDAP-TLS profile | M |
ldapCaCerts | N/A | N/A | The name of CA certificate referred by LDAP-TLS profile | M |
Ensure you perform the following steps before you perform the configuration.
set system security pki certificate PkiCert type remote fileName ldapFirst.der state enabled
set profiles security ldapTlsProfile defaultLdapTlsProfile ldapCaCerts PkiCert
delete profiles security ldapTlsProfile defaultLdapTlsProfile ldapCaCerts PkiCert