Add LDAP users and groups

Use one of the following methods to add LDAP users:

Create an LDAP user

Procedure

  1. From the left navigation pane, select Users > LDAP Users or Users > LDAP Users > User group name.

  2. Click Create User .

  3. Select Add New User, and then click Next.

  4. Configure basic parameters and extension parameters for the user, and then click Next.

  5. Configure third-party login, phone number, DingTalk account, WeCom account, QuantumCTek authentication, and Google authenticator as needed, and then click Next

  6. Verify that the configuration is correct.

  7. Click OK.

Parameters

Import LDAP users

As a best practice, download the LDAP user template file, add LDAP user information to the template file, and then upload the file back to the Space Console.

Procedure

  1. From the left navigation pane, select Users > LDAP Users or Users > LDAP Users > User group name.

  2. Click Create User.

  3. Select Import Users from File.

  4. Click Download Template and add LDAP user information to the downloaded template file.

  5. Upload the file back to the Space Console and configure other import parameters.

  6. Click Next.

  7. Verify that the configuration is correct.

  8. Click OK.

Parameters

Synchronize users from a third-party server

Perform this task to manually synchronize user accounts on a third-party platform to Space Console. The system automatically synchronizes user accounts on a third-party platform to Space Console at 3:40 every day. The third-party platforms include JIT, IDLINK, and China Bank's Identity Management Platform. Before configuring this feature, complete third-platform settings from the System > Auth Collaboration > Account Collaboration > Third-Party Account Docking page.

To synchronize user accounts:

  1. From the left navigation pane, select Users > LDAP Users or Users > LDAP Users > User group name.

  2. Click Create User.

  3. Select Sync Users from Third-Party Server, click Next.

  4. Confirm the third-party server information, select a local group (only supported by JIT) ,and then click OK.

Import third-party system accounts

Perform this task to import third-party system accounts, and set up mapping entries between these accounts and existing users on Space Console. This task is not supported in the education scenario.

You can configure this feature only for DingTalk or WeCom accounts of existing users on Space Console, and the system will update DingTalk or WeCom accounts for these users based on the imported file. You cannot configure this feature for users that do not exist on Space Console.

To import third-party accounts:

  1. From the left navigation pane, select Users > LDAP Users or Users > LDAP Users > User group name.

  2. Click Create User.

  3. Select Import Third-Party System Accouts, click Next.

  4. Click Download Template, enter user information in the template, click Select File, select the template, and then click Next.

  5. Verify that the configuration is correct, and click OK.

Create an LDAP user group

Procedure

  1. From the left navigation pane, select Users > LDAP Users or Users > LDAP Users > OU name.

  2. Click Create User Group.

  3. In the dialog box that opens, configure LDAP user group parameters.

  4. Click OK.

Parameters

Create a grade level (education scenario)

In the current software version, ARM hosts do not support grade level management.

Procedure

  1. From the left navigation pane, select Users > LDAP Users.

  2. Click Manage Grade Levels in the upper-right corner of the page.

  3. Click Create.

  4. In the dialog box that opens, configure the grade level name and the lower-level grade.

  5. Click OK.

    The new grade level is displayed in the Manage Grade Levels dialog box, and you can delete an existing grade level.

Parameters