16.10 - LdapServerRealm - Teradata Database

Teradata Database Security Administration

Product
Teradata Database
Release Number
16.10
Release Date
June 2017
Content Type
Administration
Security
Publication ID
B035-1100-161K
Language
English (United States)

If the directory offers more than one realm and the system uses DIGEST-MD5 binding, you must use this property to identify the default SASL realm that the directory server should use for authentication. The system ignores this property if it uses simple binding.

Directory users that log on to Teradata Database must inhabit the specified realm.

If a user specifies a realm in the logon string, in the form .logdata realm=realm, the logon specification overrides the setting for this property.

Directory users that log on to Teradata Database must inhabit the specified realm.

Valid Settings

  • “” (default), that is, the property does not specify a realm
  • A valid SASL realm that the authenticating directory server offers

Supporting Mechanisms for LdapServerRealm

Mechanisms that are not listed in the table do not support this property. The Property Editable column indicates if the setting for a property may be edited.
Mechanism Property Editable?
KRB5 May Be Edited
SPNEGO
LDAP

Editing Guidelines

  • If the directory server offers multiple SASL realms, you must set the value of this property to identify the default realm name.
  • Edit this property on database nodes and on the Unity server, if used. Also see Coordinating Mechanism Property Values.
  • If the directory offers only one realm, you do not need to set a value.