Previous Topic: Remote BindingsNext Topic: Connect to Other LDAP Servers


Mutual Authentication

When a link is created between two DSAs, the DSAs authenticate with each other through a DSP bind request. This authentication is two-way (mutual). The authentication takes place in two parts.

Sending DSP Credentials

A local DSA must include credentials when binding to the remote DSA. The credentials used for the local DSA (user name and password) are defined in a set dsa definition.

Receiving DSP Credentials

When a local DSA receives a DSP bind request or if the local DSA receives a DSP bind confirm with credentials from a remote DSA, the supplied credentials are verified against a matching (remote) DSA configuration. The address that the request is received from is also verified. If you do not configure or incorrectly configure a relevant remote DSA, the system refuses the bind attempt.