Connect to the Outbound SFTP Node Using Information Stored in LDAP
About this task
If you store user credentials in an LDAP database, use this procedure to configure Secure Proxy to use these credentials to connect to the secure outbound server.
Before you configure this option:
- Configure a SSH key authentication definition in Sterling External Authentication Server and obtain the name of the Sterling External Authentication Server definition.
- Configure the Sterling External Authentication Server to allow connections from Secure Proxy.
- Ensure that the public keys for Secure Proxy have been sent to the Sterling External Authentication Server and imported into the Sterling External Authentication Server trust store.
- Configure Secure Proxy for user authentication through Sterling External Authentication Server. Refer to Strengthen the SFTP User Authentication Using Sterling External Authentication Server .
To configure the use of a password or a key from the LDAP database:
Procedure
- From IBM Sterling Secure Proxy, select Configuration from the left hand-side navigation panel.
- Click Policies, then click View all Policies to display the list of created policies.
- Choose the policy you wish to edit, then click on the Edit icon.
- On the Policy Configuration panel, click the Advanced tab.
- Select From External Authentication in the User Mapping:Internal User ID section.
- Click Save.