Canon NTSC Help Desk Documentaton READ THIS BEFORE PROCEEDING Before revewng ths documentaton, Canon Busness Solutons, Inc. ( CBS ) hereby refers you, the customer or customer s representatve or agent ( you ), to the terms and condtons of the Drvers & Software agreement ( Lcense Agreement ) to whch you agreed n order to download the assocated SOFTWARE. The Lcense Agreement governs your use of both the SOFTWARE and all related documentaton, ncludng ths document. You may not copy, duplcate, translate or convert ths documentaton, except as expressly provded n the Lcense Agreement. Except as expressly permtted by applcable law, you may not alter or modfy ths documentaton. Nether CBS nor ts afflates guarantee unnterrupted servce, or the absence or correcton of errors. CBS AND ITS AFFILIATES DISCLAIM ALL IMPLIED WARRANTIES, INCLUDING ANY WARRANTY OF MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE, WITH RESPECT TO THE SOFTWARE OR ACCOMPANYING DOCUMENTATION. NEITHER CBS NOR ITS AFFILIATES ARE LIABLE FOR ANY LOSS OR DAMAGE INCLUDING CONSEQUENTIAL OR INCIDENTAL LOSS OR DAMAGE SUCH AS LOSS OF PROFITS, EXPENSE OR INCONVENIENCE, WHATSOEVER CAUSED BY OR ARISING OUT OF THE SOFTWARE, ACCOMPANYING DOCUMENTATION OR THE USE THEREOF. CBS AND ITS AFFILIATES SHALL HAVE NO OBLIGATION TO INDEMNIFY YOU IN CONNECTION WITH ANY CLAIM OR SUIT BY A THIRD PARTY ALLEGING THAT THE SOFTWARE, ACCOMPANYING DOCUMENTATION OR THE USE THEREOF INFRINGES ANY INTELLECTUAL PROPERTY OF SUCH THIRD PARTY. THE LICENSE AGREEMENT ESTABLISHES THE ENTIRE LIABILITY OF CBS AND ITS AFFILIATES AND YOUR EXCLUSIVE REMEDY IN CONNECTION WITH THE SOFTWARE AND ACCOMPANYING DOCUMENTATION. m~öé=n===tlnnlomno
Confgurng LDAP Server Settngs LDAP (Lghtweght Drectory Access Protocol) s a software protocol for enablng anyone to locate organzatons, ndvduals, and other resources such as fles and devces n a network, whether on the publc Internet or on a corporate ntranet. On the magerunner, the LDAP protocol s used to browse to a server runnng LDAP to retreve contents of the address book resdent on that server (ex. emal addresses, fax numbers, etc). Topcs ncluded n ths document are: Supported Server Envronments Regsterng an LDAP Server Sample LDAP Settngs How to Search Usng an LDAP Server Prntng the LDAP Settngs Confgure the LDAP address book as the default Deletng an LDAP Server Troubleshootng Supported Server Envronments The followng LDAP server envronments are supported wth the Canon devces: Wndows 2008/Standard/Enterprse - Actve Drectory Wndows 2000/2003 - Actve Drectory Novell NetWare Ver 5.1 or later Lotus Notes Domno R5 or later Note: A maxmum of 5 LDAP servers can be regstered. m~öé=o===tlnnlomno
Confgurng LDAP Server Settngs Regsterng an LDAP Server on an magerunner On an ImageRUNNER: Press Addtonal Functons> System Settngs> Store LDAP Server (or Regster LDAP Server) On an R Advance: Press Settngs/Regstraton> Set Destnaton> Regster LDAP Server When regsterng the LDAP server, there are many settngs that are necessary. These settngs must be obtaned from the LDAP Server Admnstrator. Wthout the proper settngs, communcaton wll not be successful. (clck here for Sample LDAP Settngs) The necessary settngs are as follows: 1) Server Name - Ths can be any name (Nckname) you want for the server (up to 24 alphanumerc characters ) 2) Server Address - Ths can be ether the IP Address or Fully Qualfed Doman Name (FQDN) of the LDAP Server (up to 48 alphanumerc characters) Note: f usng a FQDN, DNS must be set up on the unt 3) Locaton - Ths strng must be obtaned from the Admnstrator (up to 128 alphanumerc characters). Usng the doman name n the correct syntax may work Locaton Syntax: If you are usng Wndows 2000/2003/2008 Server wth Actve Drectory, use the syntax: Add 'DC=' to each dot-separated seres of characters n the Actve Drectory doman name, and separate each seres of characters by a comma. For example, f 'team1.salesdept.canon.co.jp' s the doman name n Actve Drectory, use: dc=team1,dc=salesdept,dc=canon,dc=co,dc=jp If you are usng Novell Netware 5.1 (NDS) or later, use the syntax: Add the correspondng object class 'o=', 'ou=', or 'c=' to each dot-separated seres of characters that make up the dstngushed name, and separate each seres of characters by a comma. For example, f 'TEAM1.SALESDEPT.CANON' s the dstngushed name n NDS, use: ou=team1,ou=salesdept,o=canon m~öé=p===tlnnlomno
Confgurng LDAP Server Settngs If you are usng Lotus Notes Domno R5 or later, use the syntax: Enter the dn (Dstngushed Name) of the node on the drectory tree, such as 'ou=team1', 'ou=salesdept', 'o=canon', or 'c=jp'. 4) Use SSL - Select Yes f the server uses SSL (Secure Sockets Layer). The Secure Sockets Layer (SSL) s a commonly-used protocol for managng the securty of a message transmsson on the Internet 5) Port Number - The default s 389 but ths can be easly changed on the server sde, so the correct port must be determned 6) Logn Informaton -Some servers wll not requre authentcaton, whle others do. If logn s needed, select the logn type and add the Username and Password Three optons are gven for Logn Informaton when you regster the LDAP server: Do Not Use, Use, and Use (Securty Authorzaton). These refer to whether or not logn nformaton s requred for an LDAP search, and f so, how secure that logn wll be. Do Not Use - There s no User Name and Password nformaton, so the LDAP search can be anonymous. Only the LDAP verson number needs to be selected Use - User Name and Password must be entered, and these must be equvalent to what s regstered on the clent-sde of the network. Server LDAP verson and character code must also be entered n ths setup screen. The opton to Dsplay Authentcaton Dalog allows the System Admnstrator to choose whether or not the User Name/Password screen wll be dsplayed when the end-user s searchng for an address. The On mode dsplays the user name and password box even f a password s not requred, whle the Off mode of ths functon hdes box when a password s not requred. In ths latter case, no logn dalog box appears when the end-user begns a LDAP search Use (Secure Authorzaton) - Ths feature s smlar to the Use opton, wth some securty enhancements, but may only be used when the LDAP server s runnng Wndows 2000. When ths mode s set, a Doman Name may be entered, but f the Date/Tme settngs of the devce must match the tme on the LDAP Server, then the devce wll not be able to establsh a connecton wth the server. 7) Server LDAP Verson and CharacterCode - There are dfferent versons of LDAP as well as Character Codes. You must fnd ths nformaton from the Admnstrator or connecton wll not be possble f the wrong Verson and Character Code s set. Character Codes: UTF-8: Uncode. SJIS: Shft Japan Industral Standard. EUC: Extended Unx Code. JIS: Japan Industral Standard. ISO: Internatonal Organzaton for Standardzaton m~öé=q===tlnnlomno
Confgurng LDAP Server Settngs Sample LDAP Settngs Note: these settngs may not work n your envronment f dfferent securty requrements have been mplemented. Server Name: Identfer for Canon confguraton (can be anythng, doesn t have to match network) Server Address: IP address of the Wndows 2000/2003/2008 doman controller (not the Exchange Server) Locaton to Start Searchng: cn=users,dc=stsd,dc=tsc,dc=net Our doman name n ths example s STSD.TSC.NET and I wanted to search the Users OU. Replace t wth the customers doman name and the OU they want to query. It should work n most cases wthout enterng an OU (just usng the doman name - ex. dc=stsd,dc=tsc,dc=net). Use SSL: No Port number: 389 (default) or the port # customer s usng for LDAP traffc Max No. of address to search: 100 (Note: f there are thousands of entres to search through, you may need to ncrease ths settng) Search Tmeout: 100 (Note: f there are thousands of entres to search through, you may need to ncrease ths settng) Logn Informaton: Use User: A vald username of an account that has permssons on the doman controller- I used the admnstrator account n the followng format: admnstrator@stsd.tsc.net (Note: be sure to enter the username n the format user@domanname (ex. mke@testdoman.com) Password: Enter the password for the user account Dsplay authent. dalog when searchng: Off Server LDAP verson and character code: VER. 3 - UTF-8 m~öé=r===tlnnlomno
Confgurng LDAP Server Settngs How to Search Usng a regstered LDAP Server: Once the LDAP Server settngs have been confgured properly, the nstructons below wll allow you to send a fle usng an address from a LDAP Server. 1) On the touchscreen, press Send (or Scan and Send on R Advance) 2) Select the Address Book button m~öé=s===tlnnlomno
Confgurng LDAP Server Settngs 3) On the Address Book drop down menu, select the last settng labeled Search on Server 4) Start typng a Name, Emal address or Fax number n the approprate feld 5) Select the Start Searchng button 6) A lst of addresses retreved from the LDAP Server wll dsplay. Choose desred addresses, ht OK m~öé=t===tlnnlomno
Confgurng LDAP Server Settngs Prntng the LDAP Server settngs on the coper To prnt out the LDAP server settngs on the coper: On an ImageRUNNER: Press Addtonal Functons> System Settngs> Regster LDAP Server> Prnt Lst> Yes On an R Advance: Press Settngs/Regstraton> Set Destnaton> Regster LDAP Server> Prnt Lst> Yes Confgure the LDAP address book as the default when usng Unversal Send Follow these steps to set one of three address books as the default vew on the R ADVANCE: 1. Press the Settngs/Regstraton button 2. Select Set Destnaton 3. Select Change Default Dsplay of Address Book - from here you can set default address book to LOCAL, LDAP or REMOTE Deletng an LDAP server On an ImageRUNNER: Press Addtonal Functons> System Settngs> Regster LDAP Server. Select server to delete, press Erase, Yes, Done On an R Advance: Press Settngs/Regstraton> Set Destnaton> Regster LDAP Settngs. Select server to delete, press Erase, Yes, Done. m~öé=u===tlnnlomno
Confgurng LDAP Server Settngs Troubleshootng Frewalls Verfy that the network gateway(s) at your ste (ex. routers) are not flterng traffc on the port you are tryng to search wth (ex. port 389) Test wth a publc LDAP Server When unable to query the LDAP server, t s recommended that you setup the magerunner to connect to a publc known good server. Lsted below are three publc servers that does not requre authentcaton. Before confgurng ths, make sure that you can png the IP Address wth the PING utlty n the TCP/IP setup of the ImageRUNNER. Unversty of Mchgan Publc LDAP Server Informaton IP Address: 141.211.93.133 Use SSL: Off Port: 389 Logn Informaton: Do Not Use Type: Verson 2 - UTF-8 Columba Unversty LDAP Server Server Name: Columba Unversty Server Address: ldap.columba.edu Locaton to Start Search: <blank> Use SSL: Off Port: 389 Logn Informaton: Do Not Use Type: Verson 2 - UTF-8 New York Unversty LDAP Server Server Name: NYU Server Address: ldap.nyu.edu Locaton to Start Search: <blank> Use SSL: Off Port: 389 Logn Informaton: Do Not Use Type: Verson 3 - UTF-8 If you can connect to the publc servers but cannot connect to your LDAP server, ths means that the magerunner s functonng properly but s not confgured properly for your LDAP server. Note: To use a Fully Qualfed Doman Name (FQDN), lke ldap.columba.edu, you wll need to confgure the magerunner wth the p address of a DNS Server that s capable of resolvng the FQDN to the proper p address m~öé=v===tlnnlomno