LDAP (Declarative)

Configure LDAP settings to access company contacts.

Before you begin

You must have the following permissions:
  • View Profiles
  • Manage Profiles

About this task

Configuring a Lightweight Directory Access Protocol (LDAP) profile allows devices to download company contact information stored in LDAP. Once configured, this information appears in the device’s Contacts app.
Note: This configuration does not enable LDAP authentication for unlocking devices. It only provides access to company directory contacts.
Note: Cloud Link Agent is not compatible with this LDAP profile on iOS.

Procedure

  1. From the main menu, navigate to Profiles. The Profiles view opens.
  2. Select Add Profile to create a new profile.
  3. Choose the applicable Apple platform and select Declarative Profile. The Create Profile window appears.
    Apple profiles
  4. In the General tab, enter a Name and Description for the app policy. Navigate to the Configurations tab.
  5. Select and choose LDAP under the Email, Contacts & Calendar section.
    LDAP configuration
  6. Configure the LDAP settings:
    LDAP settings
    • Account Name: Enter the name of your LDAP configuration.
    • Account Username: Enter the account name used to query the LDAP server.
      Note: You can use any email address for LDAP access. Macros are not required.
    • Account Password: Enter the password for the LDAP query account.
    • Account Hostname: Specify the location of the LDAP server.
      Tip: Supports both Fully Qualified Domain Name (FQDN) and IP addresses.
    • Credential Username and Password: Select the asset declaration that provides credentials for the account.
    • Use SSL: Enable this to use SSL encryption for LDAP communication.
    • Add Search Settings: This enables you to search specific directories, including child directories in LDAP. Select the button to enter the search settings.
  7. Select Save.

Results

You have now successfully configured the LDAP profile configuration.

What to do next

Configure your contact accounts using CardDAV for your devices. See Using Contacts for more details.