Lightweight Directory Access Protocol (LDAP)


NET Domain Lightweight Directory Access Protocol (LDAP)
NET Domain Enterprise Directory LDAP Connection Best Practices

The NET domain LDAP service is a directory of UCF people. This service is only available to users who are on the UCF network. AD FS and Shibboleth are UCF's preferred authentication providers, but LDAP is available for NET domain joined servers and applications that do not support SAML.

Best Practices for Connecting to the NET Domain using LDAP

LDAP connections should be defined based on a server's geographical location to avoid unintended site traversal. If your server is located at main campus or Lake Nona, use the 'Main Campus LDAP Address'. If your server is located at DataSite Orlando, UCF Downtown, or Rosen College use the 'DataSite Orlando LDAP Address'

Resources connecting to the NET Domain Enterprise Directory using LDAP (especially for authentication) should use the "Secure port" whenever technically feasible.  Use of LDAP may require information security risk assessment review.

 Description Value
Main Campus LDAP Addressaka.net.ucf.edu
DataSite Orlando LDAP Addressakadso.net.ucf.edu
Secure port (preferred)636
Non-secure port389
People OU Search BaseOU=People,DC=net,DC=ucf,DC=edu
NID attributesamAccountName

  

LDAP Site Location Information

aka.net.ucf.edu is hosted on main campus and will only pass connections to main campus domain controllers.

akadso.net.ucf.edu is hosted at DataSite Orlando and will only pass connections to DataSite Orlando domain controllers.

aka.netqa.ucf.edu/aka.netdev.ucf.edu are hosted on main campus for non-production use.

akadso.netqa.ucf.edu/akadso.netdev.ucf.edu are hosted at DataSite Orlando for non-production use.