HP Integrity Superdome 2 16-socket HP Integrity Superdome 2 Onboard Administra - Page 148

Connect to Directory Server, Connect using SSL, Certificate of Directory Server, User Authentication

Page 148 highlights

A successful test reports that Onboard Administrator is able to resolve the Directory Server host name using domain name. A failed test reports that Onboard Administrator is unable to resolve the Directory Server host name. The administrator must be sure that the directory server host name is correct and that the host name is correct for the directory server. Connect to Directory Server This test attempts to connect to the specified directory server IP address and service port. A successful connection attempt indicates that the directory service is running and available at the specified directory server and port. A successful test reports that Onboard Administrator can establish a connection to the directory server at the host name or address and the port number specified. The successful test reports that there is network service available. A failed test reports that Onboard Administrator cannot establish a connection to the directory server. The unsuccessful test reports that the network service is not available. The administrator must verify the host name or address and port number. Connect using SSL This test verifies that the directory server is providing the directory service over an SSL connection. A successful test reports that Onboard Administrator can establish an SSL connection to the directory server host name or IP address and port. The network service is available as a secure SSL connection. A failed test reports that the network service is not available as a secure SSL connection and the Onboard Administrator does not allow this type of connection. The administrator must identify a directory server that supports SSL connections or reconfigure the directory server to use SSL connections. Certificate of Directory Server If the directory server SSL certificate has been loaded onto Onboard Administrator, be sure that the certificate provided by the directory server matches the current certificate stored on Onboard Administrator. If the directory server SSL certificate has not been loaded, then this test does not run. A successful test reports that Onboard Administrator was able to validate the directory server certificate against the certificates stored on Onboard Administrator for the specified directory server. A failed test reports that the directory server certificate stored on Onboard Administrator does not match the certificate provided on the SSL connection. User Authentication This test attempts to log in the user to the directory using the user name and password provided. If this fails, then each search context is attempted. If a search context begins with the character @, then the DN used to log in is the search name concatenated to the user name entered. Otherwise, the search DN used to log in is constructed as follows: cn=,. The result from this test identifies the search context that was successful in authenticating the user. User Authorization After a user has successfully authenticated and logged into Onboard Administrator, the configured directory group to which the user belongs is identified. A user can belong to multiple directory groups, so the directory group that gives the user the most privileges is identified. A successful test reports the directory group with the highest privilege levels for the authenticated user. 148 Configuring HP Integrity Superdome 2 compute enclosures and enclosure devices

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197

A successful test reports that Onboard Administrator is able to resolve the Directory Server host
name using domain name.
A failed test reports that Onboard Administrator is unable to resolve the Directory Server host
name. The administrator must be sure that the directory server host name is correct and that the
host name is correct for the directory server.
Connect to Directory Server
This test attempts to connect to the specified directory server IP address and service port. A successful
connection attempt indicates that the directory service is running and available at the specified
directory server and port.
A successful test reports that Onboard Administrator can establish a connection to the directory
server at the host name or address and the port number specified. The successful test reports that
there is network service available.
A failed test reports that Onboard Administrator cannot establish a connection to the directory
server. The unsuccessful test reports that the network service is not available. The administrator
must verify the host name or address and port number.
Connect using SSL
This test verifies that the directory server is providing the directory service over an SSL connection.
A successful test reports that Onboard Administrator can establish an SSL connection to the directory
server host name or IP address and port. The network service is available as a secure SSL
connection.
A failed test reports that the network service is not available as a secure SSL connection and the
Onboard Administrator does not allow this type of connection. The administrator must identify a
directory server that supports SSL connections or reconfigure the directory server to use SSL
connections.
Certificate of Directory Server
If the directory server SSL certificate has been loaded onto Onboard Administrator, be sure that
the certificate provided by the directory server matches the current certificate stored on Onboard
Administrator. If the directory server SSL certificate has not been loaded, then this test does not
run.
A successful test reports that Onboard Administrator was able to validate the directory server
certificate against the certificates stored on Onboard Administrator for the specified directory
server.
A failed test reports that the directory server certificate stored on Onboard Administrator does not
match the certificate provided on the SSL connection.
User Authentication
This test attempts to log in the user to the directory using the user name and password provided.
If this fails, then each search context is attempted. If a search context begins with the character @,
then the DN used to log in is the search name concatenated to the user name entered. Otherwise,
the search DN used to log in is constructed as follows:
cn=
<username>
,
<search context>
.
The result from this test identifies the search context that was successful in authenticating the user.
User Authorization
After a user has successfully authenticated and logged into Onboard Administrator, the configured
directory group to which the user belongs is identified. A user can belong to multiple directory
groups, so the directory group that gives the user the most privileges is identified.
A successful test reports the directory group with the highest privilege levels for the authenticated
user.
148
Configuring HP Integrity Superdome 2 compute enclosures and enclosure devices