Dell PowerEdge MX7000 EMC OpenManage Enterprise-Modular Edition Version 1.20.1 - Page 20

Adding LDAP service, Connect to Directory Service

Page 20 highlights

1. On the OME-Modular web interface, click Application Settings > Users > Directory Services > Add > Type of Directory. The Connect to Directory Service window is displayed. 2. From the Type of Directory, select the option, AD or LDAP. The default option is AD. 3. Enter the Directory Name. 4. Select the Domain Controller Lookup. If the Domain Controller Lookup type is DNS and the directory type is AD, enter the domain name and group domain. For the AD directory type, if the Domain Controller Lookup type is DNS, enter the domain name and group domain. If the Domain Controller Lookup type is Manual, enter the FQDN or IP addresses of the domain controllers. For multiple servers, a maximum of three servers are supported, use a comma-separated list. In the group domain, you can look for directory groups. You can include the directory groups as application users. You can also use the group domain for authenticating users during login. The format of the group domain can be- . or ou=org, dc=example, dc=com. Use the DNS domain controller lookup type, if you do not know the details of the domain controllers from which you want to import the group or groups. To use the DNS domain controller, ensure that you have done the following on the Network Settings page: ● Selected the Register with DNS check box. ● Provided the Primary and Alternate DNS server addresses. After you enter the domain name, OME-Modular searches the SRV records on the DNS servers to fetch the details of the domain controllers in that domain. If you know the IP address or FQDN of the domain controllers, you can use the Manual domain controller lookup type. 5. Under Advanced Options, enter the Server Port. If the Type of Directory is AD, go to step 6. For Server Port, the Global Catalog Address port number, 3269 is populated by default. For the Domain Controller access, enter 636 as the port number. 6. Select the Network Timeout and Search Timeout durations. 7. Select the Certificate Validation checkbox if you want to validate the directory service certificate and select the certificate for validation. The certificate must be a Root CA Certificate encoded in Base64 format. The Test Connection option is enabled. 8. Click Test Connection to check the AD connection and enter the username and password of the domain you want to connect to. NOTE: The username must be entered in either the UPN (username@domain) or in the NetBIOS (domain\username) format. 9. Click Test Connection. The Directory Service Information window, indicating a successful connection, is displayed. 10. Click Ok and Finish. A job is created and run to add the requested directory on the Directory Services page. Adding LDAP service To add the LDAP service: 1. On the OME-Modular web interface, click Application Settings > Users > Directory Services > Add > Type of Directory. The Connect to Directory Service window is displayed. 2. From the Type of Directory, select the option, LDAP. The default option is AD. 3. Enter the Directory Name. 4. Select the Domain Controller Lookup. If the Domain Controller Lookup type is DNS, enter the domain name. If the Domain Controller Lookup type is Manual, enter the FQDN or IP addresses of the domain controllers. For multiple servers, a maximum of three servers are supported, use a comma-separated list. 20 Logging in to OME-Modular

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127

1.
On the OME–Modular web interface, click
Application Settings
>
Users
>
Directory Services
>
Add
>
Type of
Directory
.
The
Connect to Directory Service
window is displayed.
2.
From the
Type of Directory
, select the option,
AD
or
LDAP
. The default option is
AD
.
3.
Enter the
Directory Name
.
4.
Select the
Domain Controller Lookup
.
If the
Domain Controller Lookup
type is DNS and the directory type is
AD
, enter the domain name and group domain.
For the
AD
directory type, if the
Domain Controller Lookup
type is
DNS
, enter the domain name and group domain. If the
Domain Controller Lookup
type is
Manual
, enter the FQDN or IP addresses of the domain controllers. For multiple servers,
a maximum of three servers are supported, use a comma-separated list.
In the group domain, you can look for directory groups. You can include the directory groups as application users. You can
also use the group domain for authenticating users during login. The format of the group domain can be—
<Domain>.<Sub-Domain>
or
ou=org, dc=example, dc=com
.
Use the
DNS
domain controller lookup type, if you do not know the details of the domain controllers from which you want to
import the group or groups. To use the DNS domain controller, ensure that you have done the following on the
Network
Settings
page:
Selected the
Register with DNS
check box.
Provided the Primary and Alternate DNS server addresses.
After you enter the domain name, OME-Modular searches the SRV records on the DNS servers to fetch the details of the
domain controllers in that domain.
If you know the IP address or FQDN of the domain controllers, you can use the
Manual
domain controller lookup type.
5.
Under
Advanced Options
, enter the
Server Port
. If the
Type of Directory
is
AD
, go to step 6.
For
Server Port
, the Global Catalog Address port number, 3269 is populated by default. For the
Domain Controller
access, enter 636 as the port number.
6.
Select the
Network Timeout
and
Search Timeout durations
.
7.
Select the
Certificate Validation
checkbox if you want to validate the directory service certificate and select the
certificate for validation.
The certificate must be a Root CA Certificate encoded in Base64 format.
The
Test Connection
option is enabled.
8.
Click
Test Connection
to check the AD connection and enter the username and password of the domain you want to
connect to.
NOTE:
The username must be entered in either the UPN (username@domain) or in the NetBIOS (domain\username)
format.
9.
Click
Test Connection
.
The
Directory Service Information
window, indicating a successful connection, is displayed.
10.
Click
Ok
and
Finish
.
A job is created and run to add the requested directory on the
Directory Services
page.
Adding LDAP service
To add the LDAP service:
1.
On the OME–Modular web interface, click
Application Settings
>
Users
>
Directory Services
>
Add
>
Type of
Directory
.
The
Connect to Directory Service
window is displayed.
2.
From the
Type of Directory
, select the option,
LDAP
. The default option is
AD
.
3.
Enter the
Directory Name
.
4.
Select the
Domain Controller Lookup
.
If the
Domain Controller Lookup
type is
DNS
, enter the domain name.
If the
Domain Controller Lookup
type is
Manual
, enter the FQDN or IP addresses of the domain controllers. For multiple
servers, a maximum of three servers are supported, use a comma-separated list.
20
Logging in to OME-Modular