Skip to main content

Securing MarkLogic Server

Assigning an External Name to a Role

When LDAP authorization is used, the LDAP groups associated with the user are mapped to MarkLogic roles. One or more groups can be associated with a single role. These LDAP groups are defined as External Names in the Role Configuration page.

This section describes how to assign one or more external names to a role in the Admin Interface. You can also use sec:create-role() or sec:role-set-external-names() to assign one or more external names to a role.

  1. Click Security in the left tree menu.

  2. Click Roles.

  3. Select a role or create a new one by clicking the Create tab at the top of the Role Summary window.

  4. In the Role Configuration window, enter the name of the LDAP group to be associated with the role in the field in the External Name section. You can associate multiple LDAP groups with the role by clicking More External Name.

  5. Click OK.