Disabling LDAP

If you choose to disable external LDAP support, ensure you either delete or back up all the user directories. Ensure none of the existing LDAP users are logged in.

About this task

Attention: Once you disable the external LDAP support from the appliance, you may need to re-create the required users as local appliance users.

Procedure

  1. Log in to the first (node0101) or second (node0102) node of IAS as apuser.
  2. All users must be removed from the ibmapusers and ibmapadmin groups:
    ap_external_ldap.pl usermod --group none <user>
  3. Run the following command to disable external LDAP authentication for platform users:
    ap_external_ldap.pl disable