WALLIX Bastion

Trustelem Configuration

Before starting, please be sure to have installed TrustelemConnect on your server, and setup this application in Trustelem admin Services tab.

https://doc-trustelem.wallix.com/administration/ldap-radius

Bastion configuration

LDAP
  • Go on Configuration > External authentication

  • Create a new LDAP authentication

  • In the field Authentication name choose a name for your LDAP authentication

  • In The fields Server and Port, write the server IP where TrustelemConnect is running and the port defined on Trustelem admin tab Services

  • In the Timeout field add 30.0 seconds

  • Tick the Active Directory checkbox

  • Write the LDAP Base DN provides in your Trustelem Bastion model, in the Base DN field and let sAMAccountName in the Login attribute and User name attribute fields

  • In the User field write cn=LDAP Service account provides by Trustelem,LDAP Base DN and the LDAP Password provides by Trustelem in the Password field

  • Click on Apply

RADIUS
  • Go on Configuration > External authentication

  • Create a new RADIUS authentication

  • In the field Authentication name choose a name for your RADIUS authentication

  • In The fields Server and Port, write the server IP where TrustelemConnect is running and the port defined on Trustelem admin tab Services

  • In the Timeout field add 30.0 seconds

  • Type the Radius Secret provides by Trustelem in the Secret field

  • Under Two-Factor Authentication check Use primary domain name

  • Click on Apply

Notes
If you need the CN of a Trustelem groups, it looks like:  
cn=[trustelem group],ou=groups,dc=o10332,dc=trustelem,dc=com*