Chat now with support
Chat with Support

Defender 5.11 - Administration Guide

Getting started Managing Defender objects in Active Directory Configuring security tokens Securing VPN access Securing Web sites Securing Windows-based computers Defender Management Portal (Web interface) Securing PAM-enabled services Delegating Defender roles, tasks, and functions Automating administrative tasks Administrative templates Integration with Active Roles Appendices
Appendix A: Enabling diagnostic logging Appendix B: Troubleshooting common authentication issues Appendix C: Troubleshooting DIGIPASS token issues Appendix D: Defender classes and attributes in Active Directory Appendix E: Defender Event Log messages Appendix F: Defender Client SDK Appendix G: Defender Web Service API

Group

  • CN  Group
  • Ldap-Display-Name  Group
  • Governs-Id  1.2.840.113556.1.5.8

Defender extends this class to include the following attributes:

 

Table 45:

Group attributes added by Defender

Attribute

Mandatory

defender-danDNs

False

defender-policy

False

defender-radiusPayloadDn

False

defender-radiusPayloadInherit

False

defender-radiusPayloadGroupsDN

False

User

  • CN  User
  • Ldap-Display-Name  user

Governs-Id  1.2.840.113556.1.5.9

Defender extends this class to include the following attributes:

 

Table 46:

User attributes added by Defender

Attribute

Mandatory

defender-danDNs

False

defender-id

False

defender-lastLogon

False

defender-lockoutTime

False

defender-policy

False

defender-radiusPayloadDn

False

defender-radiusPayloadInherit

False

defender-resetCount

False

 defender-tokenUsersDNs

False

defender-userTokenData

False

defender-violationCount

False

Attributes defined by Defender

The following is the list of Microsoft Active Directory schema attributes that are defined by Defender. Each attribute has been listed in accordance with the Active Directory schema definitions format as used in the MSDN documentation (for further details, see information on Active Directory Schema published in MSDN at http://msdn.microsoft.com/en-us/library/ms675085(VS.85).aspx). Only attributes that are specific to Defender have been listed; all other attributes are as per the MSDN documentation.

In this section:

defender-tokenType

  • CN  defender-tokenType
  • Ldap-Display-Name  defender-tokenType
  • Attribute-Id  1.2.840.113556.1.8000.1267.2.1
  • Link-Id  -
  • Range-Lower  -
  • Range-Upper  -
  • Size  -
  • Syntax  Integer
  • Is-Single-Valued  True
  • Is-Indexed  True
  • In Global Catalog  False
  • Search-Flags  0x00000003
  • Update Privilege  Domain or Defender administrator
  • Update Frequency  Whenever a token or token license is created.
  • Description  For a token, contains the major token type. For a token license, contains the license type.
  • Classes used in  defender-tokenClass, defender-tokenLicenseClass
Related Documents

The document was helpful.

Select Rating

I easily found the information I needed.

Select Rating