Configuring Active Directory

Configuring Active Directory

To bind to a directory service:

  1. Click Directory Services.

  2. In the Active Directory Configuration panel, enter the connection settings of your directory service.

    • Hostname: The IP address or DNS name of your directory service.

    • Port: Enter the LDAP connection port (the default port is 389).

    • If SSL is required, select the Use SSL option and update the port accordingly (the default port for LDAP using SSL is 636).

    • LDAP Bind Username: Enter a username that has permission to query the directory service.

      Enter the username as one of the following:

      • domain\user. Example: mycompany\jsmith

      • user@realm. Example: jsmith@mycompany.com

      • The fully qualified LDAP distinguished name (DN). Example: cn=jsmith,cn=users,dc=MYCOMPANY,dc=COM

    • Password: The password for the LDAP Bind Username.

    • Synchronize Daily: Select this option to have Portfolio automatically synchronize mappings with the LDAP server once a day. If you do not enable this option, synchronization is only performed manually.

      User authentication is performed each time a user logs in, so synchronization is not necessary for Portfolio accounts that are created for LDAP users.

  3. Click Apply to bind your directory service to Portfolio.

After successfully binding to the LDAP service, you can map users and groups to specific catalogs; see Mapping users from Active Directory.

Synchronizing Portfolio with the directory service

If you are mapping directory service accounts to Portfolio catalogs, you need to periodically synchronize Portfolio with the directory service.

If you want to apply new or changed mappings, or import directory service changes to Portfolio immediately, you can synchronize Portfolio with the directory service manually.

To manually synchronize with the directory service:

  1. Click Directory Services.

  2. At the bottom of the Active Directory Configuration panel, click Synchronize Now.

You can also have Portfolio synchronize with the directory service once a day, automatically.

To change the directory service synchronization settings:

  1. Click Directory Services.

  2. Select (or de-select) the Synchronize Daily option in the Active Directory Configuration panel.

  3. Click Apply to save the new setting.

Removing a directory service configuration

You may want to remove a directory service configuration. As a convenience, when you disconnect Portfolio from a directory service, users who were added via the service are automatically converted into native Portfolio users with a password identical to their username.

To remove a directory service configuration:

  1. Click Directory Services.

  2. In the Active Directory Configuration panel, click Remove Service.

  3. In the confirmation dialog, click OK.

    • Related Articles

    • Mapping users from Active Directory

      Note: Before you can add directory service accounts to Portfolio, you will need to bind Portfolio to an Active Directory service. See Configuring Active Directory. You can map any combination of users and groups from an Active Directory service to a ...
    • Catalog access

      In order for a user to access assets in a catalog, they must have two things: a Portfolio account (either native or through a directory service), and an assigned role in the catalog. The Portfolio Administrator manages Portfolio accounts and ...
    • Portfolio checklist

      Use this checklist to help you make sure you are ready to install and configure Portfolio. License Administrator Be sure to have the Extensis account information (email address and password) for your Portfolio License Administrator. You need this ...
    • Configuration quick start

      This section covers what you need to do to get your Portfolio system up and running. If you are upgrading an existing Portfolio system, see Upgrading. Installing Portfolio Confirm that the system you will use with Portfolio meets or exceeds the ...
    • Portfolio Glossary

      Following are some terms used throughout Portfolio and its documentation. Some are technical (“computer”) terms that relate to Portfolio features and services, some are fundamental concepts within Portfolio, and some are terms that relate to Digital ...