<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>LDAP &#8211; RAGASYS SISTEMAS</title>
	<atom:link href="https://blog.ragasys.es/tag/ldap/feed" rel="self" type="application/rss+xml" />
	<link>https://blog.ragasys.es</link>
	<description>Soporte técnico para las TIC</description>
	<lastBuildDate>Mon, 15 Jan 2024 10:31:10 +0000</lastBuildDate>
	<language>es</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/05/logoRGS_18_05_2020.png?fit=32%2C32&#038;ssl=1</url>
	<title>LDAP &#8211; RAGASYS SISTEMAS</title>
	<link>https://blog.ragasys.es</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">111701399</site>	<item>
		<title>Configurar servidor LDAP en OPNSense</title>
		<link>https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense</link>
					<comments>https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 15 Jan 2024 10:31:10 +0000</pubDate>
				<category><![CDATA[Active Directory]]></category>
		<category><![CDATA[Azure]]></category>
		<category><![CDATA[Azure Networking]]></category>
		<category><![CDATA[Cloud]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[LDAP]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[OPNSense]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=17242</guid>

					<description><![CDATA[Hola a tod@s, En este post vamos a ver cómo configurar un servidor LDAP en OPNSense, así nos vamos a poder autenticar al firewall opnsense con usuarios del Active Directory y configurar vpn de acceso remoto con usuarios del Active&#8230; <a href="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a>]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver cómo configurar un servidor LDAP en OPNSense, así nos vamos a poder autenticar al firewall opnsense con usuarios del Active Directory y configurar vpn de acceso remoto con usuarios del Active Directory.</p>
<p>La topología que vamos a utilizar será esta:</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="784" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17058" data-permalink="https://blog.ragasys.es/despliegue-y-configuracion-de-firewall-opnsense-en-azure/opnsense_topology_msaz#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=1227%2C784&amp;ssl=1" data-orig-size="1227,784" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="OPNSense_topology_MSAZ" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?fit=640%2C409&amp;ssl=1" class="aligncenter size-full wp-image-17058" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=640%2C409&#038;ssl=1" alt="" width="640" height="409" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=595%2C380&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=960%2C613&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/OPNSense_topology_MSAZ.png?resize=768%2C491&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Accedemos a <strong>System &gt; Access &gt; Servers &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="294" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1-1536x236.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17243" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?fit=1914%2C294&amp;ssl=1" data-orig-size="1914,294" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?fit=640%2C98&amp;ssl=1" class="aligncenter size-full wp-image-17243" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=640%2C98&#038;ssl=1" alt="" width="640" height="98" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=595%2C91&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=960%2C147&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=768%2C118&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?resize=1536%2C236&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Introducimos los datos necesarios para conectarnos a nuestro Active Directory:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?ssl=1" data-lbwps-width="1118" data-lbwps-height="647" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17244" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?fit=1118%2C647&amp;ssl=1" data-orig-size="1118,647" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?fit=640%2C371&amp;ssl=1" class="aligncenter size-full wp-image-17244" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=640%2C370&#038;ssl=1" alt="" width="640" height="370" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?w=1118&amp;ssl=1 1118w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=595%2C344&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=960%2C556&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_2.png?resize=768%2C444&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?ssl=1" data-lbwps-width="1200" data-lbwps-height="877" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17245" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?fit=1200%2C877&amp;ssl=1" data-orig-size="1200,877" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?fit=640%2C468&amp;ssl=1" class="aligncenter size-full wp-image-17245" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=640%2C468&#038;ssl=1" alt="" width="640" height="468" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?w=1200&amp;ssl=1 1200w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=595%2C435&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=960%2C702&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_3.png?resize=768%2C561&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, ya lo tenemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="298" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4-1536x239.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17246" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?fit=1912%2C298&amp;ssl=1" data-orig-size="1912,298" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?fit=640%2C100&amp;ssl=1" class="aligncenter size-full wp-image-17246" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=640%2C100&#038;ssl=1" alt="" width="640" height="100" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=595%2C93&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=960%2C150&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=768%2C120&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?resize=1536%2C239&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora sobre <strong>Firewall &gt; Rules &gt; IPsec</strong> debemos de crearnos esta regla de salida, para que OPNSense pueda acceder al puerto LDAP (389) de uno de nuestros controladores de dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="505" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5-1536x405.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17247" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?fit=1913%2C505&amp;ssl=1" data-orig-size="1913,505" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-17247" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=960%2C253&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?resize=1536%2C405&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?ssl=1" data-lbwps-width="1517" data-lbwps-height="873" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17248" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?fit=1517%2C873&amp;ssl=1" data-orig-size="1517,873" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?fit=640%2C368&amp;ssl=1" class="aligncenter size-full wp-image-17248" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=640%2C368&#038;ssl=1" alt="" width="640" height="368" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?w=1517&amp;ssl=1 1517w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=595%2C342&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=960%2C552&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?resize=768%2C442&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?ssl=1" data-lbwps-width="1496" data-lbwps-height="869" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17249" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?fit=1496%2C869&amp;ssl=1" data-orig-size="1496,869" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?fit=640%2C372&amp;ssl=1" class="aligncenter size-full wp-image-17249" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=640%2C372&#038;ssl=1" alt="" width="640" height="372" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?w=1496&amp;ssl=1 1496w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=595%2C346&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=960%2C558&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?resize=768%2C446&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora, como nuestros controladores de dominio los tenemos en la parte on-premise, detrás de un fortigate, y como ya tenemos configurada la VPN IPSec site to site, debemos de configurar esta regla, para que OPNSense pueda acceder al puerto LDAP (389) de uno de nuestros controladores de dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?ssl=1" data-lbwps-width="1240" data-lbwps-height="1036" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17250" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?fit=1240%2C1036&amp;ssl=1" data-orig-size="1240,1036" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?fit=640%2C535&amp;ssl=1" class="aligncenter size-full wp-image-17250" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=640%2C535&#038;ssl=1" alt="" width="640" height="535" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?w=1240&amp;ssl=1 1240w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=595%2C497&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=960%2C802&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_8.png?resize=768%2C642&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?ssl=1" data-lbwps-width="1685" data-lbwps-height="141" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9-1536x129.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17251" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?fit=1685%2C141&amp;ssl=1" data-orig-size="1685,141" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?fit=640%2C53&amp;ssl=1" class="aligncenter size-full wp-image-17251" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=640%2C54&#038;ssl=1" alt="" width="640" height="54" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?w=1685&amp;ssl=1 1685w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=595%2C50&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=960%2C80&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=768%2C64&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?resize=1536%2C129&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para comprobar que todo funciona correctamente y que OPNSense se comunica con nuestro servidor LDAP de Active DIrectory, accedemos a <strong>System &gt; Access &gt; Tester</strong> e introducimos las credenciales de uno de nuestros usuarios del dominio, damos clic a Test, y si todo está correctamente configurado, podemos ver que el usuario se autentica:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?ssl=1" data-lbwps-width="1321" data-lbwps-height="601" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17252" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?fit=1321%2C601&amp;ssl=1" data-orig-size="1321,601" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?fit=640%2C291&amp;ssl=1" class="aligncenter size-full wp-image-17252" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=640%2C291&#038;ssl=1" alt="" width="640" height="291" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?w=1321&amp;ssl=1 1321w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=595%2C271&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=960%2C437&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=768%2C349&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_10.png?resize=300%2C135&amp;ssl=1 300w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez que ya tenemos comunicación con nuestro Active Directory, vamos a configurar que podamos hacer logon en el OPNSense con uno de nuestros usuarios del dominio, para ello, lo primero que nos vamos a crear es un grupo de administradores de LDAP, accedemos a <strong>System &gt; Access &gt; Groups &gt; +</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?ssl=1" data-lbwps-width="1911" data-lbwps-height="295" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11-1536x237.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17253" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?fit=1911%2C295&amp;ssl=1" data-orig-size="1911,295" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?fit=640%2C99&amp;ssl=1" class="aligncenter size-full wp-image-17253" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=640%2C99&#038;ssl=1" alt="" width="640" height="99" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?w=1911&amp;ssl=1 1911w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=595%2C92&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=960%2C148&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=768%2C119&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?resize=1536%2C237&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le indicamos un nombre y una descripción:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="709" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12-1536x569.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17254" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?fit=1913%2C709&amp;ssl=1" data-orig-size="1913,709" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?fit=640%2C237&amp;ssl=1" class="aligncenter size-full wp-image-17254" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=640%2C237&#038;ssl=1" alt="" width="640" height="237" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=595%2C221&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=960%2C356&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=768%2C285&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?resize=1536%2C569&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, aquí lo tenemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="327" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13-1536x262.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17255" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?fit=1915%2C327&amp;ssl=1" data-orig-size="1915,327" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?fit=640%2C109&amp;ssl=1" class="aligncenter size-full wp-image-17255" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=640%2C109&#038;ssl=1" alt="" width="640" height="109" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=595%2C102&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=960%2C164&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=768%2C131&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?resize=1536%2C262&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora debemos de editar los permisos de este grupo, y le asignamos todos los privilegios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="714" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14-1536x573.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17256" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?fit=1914%2C714&amp;ssl=1" data-orig-size="1914,714" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?fit=640%2C239&amp;ssl=1" class="aligncenter size-full wp-image-17256" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=640%2C239&#038;ssl=1" alt="" width="640" height="239" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=595%2C222&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=960%2C358&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=768%2C286&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?resize=1536%2C573&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?ssl=1" data-lbwps-width="1166" data-lbwps-height="805" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17257" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?fit=1166%2C805&amp;ssl=1" data-orig-size="1166,805" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?fit=640%2C442&amp;ssl=1" class="aligncenter size-full wp-image-17257" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=640%2C442&#038;ssl=1" alt="" width="640" height="442" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?w=1166&amp;ssl=1 1166w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=595%2C411&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=960%2C663&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_15.png?resize=768%2C530&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="758" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16-1536x609.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17258" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?fit=1913%2C758&amp;ssl=1" data-orig-size="1913,758" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?fit=640%2C253&amp;ssl=1" class="aligncenter size-full wp-image-17258" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=640%2C254&#038;ssl=1" alt="" width="640" height="254" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=595%2C236&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=960%2C380&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=768%2C304&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?resize=1536%2C609&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez creado el grupo, OPNSense requiere que todas las cuentas de usuario LDAP existan en la base de datos local, por lo que procederemos a crear la cuenta, <strong>System &gt; Access &gt; Users &gt; +</strong>, esta cuenta la añadimos como miembro del grupo que hemos creado, la password no tiene porque ser la del usuario del dominio, podemos poner otra, lo que hace OPNSense es verificar primero la base de datos del LDAP y luego la base de datos local, por lo que si ponemos otra password a este usuario podemos acceder con las dos password (una del LDAP y la otra Local):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="330" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17-1536x265.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17259" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?fit=1912%2C330&amp;ssl=1" data-orig-size="1912,330" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?fit=640%2C111&amp;ssl=1" class="aligncenter size-full wp-image-17259" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=640%2C110&#038;ssl=1" alt="" width="640" height="110" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=595%2C103&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=960%2C166&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=768%2C133&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?resize=1536%2C265&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?ssl=1" data-lbwps-width="1159" data-lbwps-height="879" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17260" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?fit=1159%2C879&amp;ssl=1" data-orig-size="1159,879" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?fit=640%2C485&amp;ssl=1" class="aligncenter size-full wp-image-17260" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=640%2C485&#038;ssl=1" alt="" width="640" height="485" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?w=1159&amp;ssl=1 1159w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=595%2C451&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=960%2C728&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_18.png?resize=768%2C582&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?ssl=1" data-lbwps-width="1604" data-lbwps-height="881" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19-1536x844.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17261" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?fit=1604%2C881&amp;ssl=1" data-orig-size="1604,881" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?fit=640%2C351&amp;ssl=1" class="aligncenter size-full wp-image-17261" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=640%2C352&#038;ssl=1" alt="" width="640" height="352" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?w=1604&amp;ssl=1 1604w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=595%2C327&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=960%2C527&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=768%2C422&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?resize=1536%2C844&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, aquí tenemos el usuario creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="361" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20-1536x290.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17262" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?fit=1913%2C361&amp;ssl=1" data-orig-size="1913,361" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?fit=640%2C121&amp;ssl=1" class="aligncenter size-full wp-image-17262" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=640%2C121&#038;ssl=1" alt="" width="640" height="121" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=595%2C112&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=960%2C181&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=768%2C145&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?resize=1536%2C290&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>A continuación, vamos a habilitar la autenticación LDAP, para ello, accedemos a <strong>System &gt; Settings &gt; Administration &gt; Authentication &gt; Server</strong> y seleccionamos la autenticación por LDAP Active Directory como primera opción, y como segunda opción seleccionamos la base de datos local, clic a <strong>Save</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?ssl=1" data-lbwps-width="1308" data-lbwps-height="932" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17263" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?fit=1308%2C932&amp;ssl=1" data-orig-size="1308,932" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?fit=640%2C456&amp;ssl=1" class="aligncenter size-full wp-image-17263" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=640%2C456&#038;ssl=1" alt="" width="640" height="456" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?w=1308&amp;ssl=1 1308w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=595%2C424&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=960%2C684&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_21.png?resize=768%2C547&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora ya podemos acceder con las credenciales de nuestro usuario del dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?ssl=1" data-lbwps-width="1064" data-lbwps-height="575" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="17264" data-permalink="https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/csldapeopnss_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?fit=1064%2C575&amp;ssl=1" data-orig-size="1064,575" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="csldapeopnss_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?fit=640%2C346&amp;ssl=1" class="aligncenter size-full wp-image-17264" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=640%2C346&#038;ssl=1" alt="" width="640" height="346" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?w=1064&amp;ssl=1 1064w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=595%2C322&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=960%2C519&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2023/12/csldapeopnss_22.png?resize=768%2C415&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configurar-servidor-ldap-en-opnsense/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">17242</post-id>	</item>
	</channel>
</rss>
