You need to create user attribute LDAP mapper on the same User Federation instance. This mapper helps you in mapping the LDAP group information into the user attribute.

Procedure

  1. Select the user federation instance on the User Federation page.
  2. Navigate to Action > Edit.
  3. Click Add in Mapper section, and provide the following details:
    Table 1.
    Input Parameter Description Default Value
    Name Provide the LDAP mapper name for the user federation instance. NA
    Mapper Type Select the mapper type from the drop down. By default, VMware Telco Cloud Service Assurance support only user-attribute-ldap-mapper mapper type.
    User Model Attribute Provide the name of the user model property or attribute you want to map the LDAP attribute into.
    Note: Mandatorily, you need to add a custom group mapper. Since, VMware Telco Cloud Service Assurance recognizes memberOf attribute to populate user and group information from external LDAP, make sure to use memberOf as User Model Attribute.
    NA
    LDAP Attribute Provide the name of the mapped attribute on the LDAP object. This is a mandatory field, and the value for VMware Telco Cloud Service Assurance is memberof. NA
    Read Only Toggle Enabled to ON, allows to import the read-only attribute from LDAP to user model. NA
    Always Read Value From LDAP Toggle Enabled to ON, to read the LDAP attribute value. NA
    Is Mandatory In LDAP Toggle Enabled to True, so that attribute is mandatory in LDAP. NA
    Attribute Default Value Provide the attribute default value. NA
    Is Binary Attribute Toggle Enabled to True, for binary LDAP attribute. NA
  4. Click Add mapper.

What to do next

To import all the user and user group from LDAP into the VMware Telco Cloud Service Assurance system, click Action > Synchronize all users. And then add a connection pool.