Support Support Downloads Knowledge Base Case Manager My Juniper Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

[STRM] LDAP authentication on STRM



Article ID: KB11713 KB Last Updated: 15 Sep 2011Version: 6.0
How to Configure LDAP authentication on Security Threat Response Manager (STRM)

Users are not able to login to STRM after adding LDAP



To Configure STRM for LDAP authentication:

  1. On the STRM Webui, go to: Config > Authentication
  2. Enter the following information:
    Authentication Module - LDAP / AD
    Server URL - ldap://IP_ADDRESS:389  (IP Address of LDAP Server)
    LDAP Context - DC=STRM-JTACLAB, DC=com
    LDAP Domain -

    For this example, authentication was configured for users using LDAP domain
  3. Once LDAP authentication is added, you also need to add users who will manage the STRM.  The user name should match the LDAP user name, as it will be authenticated by their LDAP password.  Domain name and FQDN in the user name are not required.

    To Add Users, using the STRM WebUI, go to: Config > Users > Add Users.
  4. Please note that the clocks of the STRM Server and the LDAP server must be in sync. Active Directory LDAP servers automatically provide ntp time services and can be used as the time source for the STRM. If the clocks are too far out of skew, a message will appear in /var/log/qradar.log indicating clock skew too great: LDAPLoginModule::authenicate: LDAPReader()::connect: Clock skew too great (37)


Comment on this article > Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search