For LDAP configuration, localUserNameFireEye is the attribute name for mapping to the Admin or Monitor role.
Note
This topic describes how to configure the LDAP server, not the Trellix appliance. Your configuration should follow standard LDAP protocol; the examples in this topic are provided for illustration only.
To configure an LDAP server:
Add local user attributes:
Define a schema at /etc/openldap/schema/fireeye.schema.
Refer to the schema in your sldap.conf file on the LDAP server.
On the authentication server, add the localUserNameFireEye attribute to the schema so that it can be defined and referenced in the user definition.
Define users.
On the appliance, define the server host, base-dn, and login-attribute.
Run the service ldap start CLI command after configuring authentication mappings.
Intrusion Prevention System (IPS) > Network Detection and Response (NDR) > NDR 4.x > Network Detection and Response Product Guide 4.x > User management and authentication > Configuring authentication on the CLI