Quản lý tài nguyên LDAP

Edge for Private Cloud phiên bản 4.16.09

Khi sử dụng chính sách LDAP để xác thực hoặc truy vấn DN (http://apigee.com/docs/api-services/content/ldap-policy), chính sách này sử dụng tài nguyên Giao thức truy cập thư mục hạng nhẹ (LDAP) ở phía Apigee có chứa thông tin kết nối với Giao thức truy cập thư mục hạng nhẹ (LDAP) của bạn Google Cloud. Phần này mô tả cách tạo và quản lý tài nguyên LDAP qua API.

Tạo tài nguyên LDAP

Sau đây là API để tạo tài nguyên LDAP:

/v1/organizations/{org_name}/environments/{environment}/ldapresources

Dưới đây là tải trọng XML có chú thích, mô tả cấu hình tài nguyên LDAP bạn sẽ gửi để tạo tài nguyên:

<LdapResource name="l>dap<1"
  >Conne<ction>
    Hos<ts 
      Host >port=&q<uot;6>3<6"foo.com/Host !-- port is optional: defaults to 389 for ldap:// and> 636 <for ld>aps:/</ --
    />Hosts<
    SSLEna>b<ledfalse/SSLEnabled !-- optional, >defau<lts to >f<alse --
> <   Version3/Version !-- optio>nal, <defaults to 3->-
    <Authentications>i<mple/Authentication !-- optional, only> simp<le supported --
  >  ConnectionPr<oviderjndi|unboundi>d</ConnectionProv>ider <!-- required >--
    ServerSetTypesingle|<round robin|fa>i<lover/ServerSetType !-- not ap>plica<ble for jndi --
  >  LdapConnectorClasscom.cu<stom.ldap.MyProvide>r</LdapConnectorClass !-- If using a custom LDAP provider, the full>y q<ualified cl>ass< --
  /Connection
  Connec>t<Pool enabled="true" !-- enabled is> opti<onal, d>efaul<ts to tr>u<e --
    Timeout30000/Timeout !-- optional, in milliseco>nds; <if not >se<t, no ti>m<eout --
    Maxsize50/Maxsize !-- optional; if >not s<et, no m>ax< connecti>o<ns --
    Prefsize30/Prefsize !-- optiona>l; if< not set><, no pref> <size --
    Initsize/Initsize !-- optional>; if <not set,>< defaults> <to 1 --
    Protocol/Protocol !-- optional; if not s>et,< defaults to> &#<39;ss>l pla<in>' --
  /ConnectPool
 < Ad>min
 <   DNcn=>admin,<dc=apigee>,dc<=com/D>N<
    Password>secret/Password
  /Admin
/LdapResource

Ví dụ:

Ví dụ sau đây sẽ tạo một tài nguyên LDAP có tên là ldap1:

curl -X POST -H "Content-Type: application/xml" \
https://api.enterprise.apigee.com/v1/organizations/myorg/environments/test/ldapresources \
-u {apigee_email}:{passwo<rd} -d \
'LdapResourc>e n<ame=">ldap1<">;
  Conn<ecti>on
    <Hosts> 
   <   Hos>tfoo.<com/Host
 >   /H<osts
    SS>LEnab<ledfals>e</SSLEnab>led
  <  Version3/Ver>sion 
<    Authenticat>ionsim<ple/Authentication> 
    Con<nectionProviderunbo>undid</ConnectionPr>ovider
    <ServerSetTyper>oun<d robin/Ser>ver<SetType
  /Connection
  Co>nnectP<ool ena>bled=<"tr>ue&quo<t; 
   > T<imeout30>000/Ti<meout 
 >  < Maxsize5>0/Maxs<ize 
   >< Prefsize>30/Pre<fsize 
 ><   Initsi>ze/I<nitsize 
   > Pr<otoco>l/Pro<to>col 
  /ConnectPool
  Adm<in<>/span>
    D<Ncn=admi>n,dc=a<pigee,dc=>com</DN
  > < Passwordsecr>et/Password
  /Admin
/LdapResource'

Liệt kê tất cả tài nguyên LDAP

curl https://api.enterprise.apigee.com/v1/organizations/myorg/environments/test/ldapresources \
-u {apigee_email}:{password}

Xem thông tin chi tiết về tài nguyên LDAP

curl https://api.enterprise.apigee.com/v1/organizations/myorg/environments/test/ldapresources/ldap1 \
-u {apigee_email}:{password}

Cập nhật tài nguyên LDAP

curl -X POST -H "Content-Type: application/xml" \
https://api.enterprise.apigee.com/v1/organizations/myorg/environments/test/ldapresources/ldap1 \
-u {apigee_email}:{passwo<rd} -d \
'LdapResourc>e n<ame=">ldap1<">;
  Conn<ecti>on
    <Hosts> 
   <   Hos>tfoo.<com/Host
 >   /H<osts
    SS>LEnab<ledfals>e</SSLEnab>led
  <  Version3/Ver>sion 
<    Authenticat>ionsim<ple/Authentication> 
    Con<nectionProviderunbo>undid</ConnectionPr>ovider
    <ServerSetTyper>oun<d robin/Ser>ver<SetType
  /Connection
  Co>nnectP<ool ena>bled=<"tr>ue&quo<t; 
   > T<imeout50>000/Ti<meout 
 >  < Maxsize5>0/Maxs<ize 
   >< Prefsize>30/Pre<fsize 
 ><   Initsi>ze/I<nitsize 
   > Pr<otoco>l/Pro<to>col 
  /ConnectPool
  Adm<in<>/span>
    D<Ncn=admi>n,dc=a<pigee,dc=>com</DN
  > < Passwordsecr>et/Password
  /Admin
/LdapResource'

Xoá tài nguyên LDAP

curl -X DELETE \
https://api.enterprise.apigee.com/v1/organizations/myorg/environments/test/ldapresources/ldap1 \
-u {apigee_email}:{password}