When use-start-tls-for-ad-ldap is set to true on the tunnel SVM, can ONTAP System Manager be authenticated using LDAP over TLS?
Applies to
- ONTAP 9.8+
- ONTAP System Manager
- Active Directory (AD)
- LDAPS (LDAP over SSL or TLS)
Answer
- Yes, if
use-start-tls-for-ad-ldap
is set to true on the tunnel SVM, ONTAP System Manager can be authenticated using LDAP over TLS. - By enabling
use-start-tls-for-ad-ldap
, LDAP communication will be secured using STARTTLS, allowing for authentication via LDAPS.