Dell PowerEdge VRTX Chassis Management Controller Version 1.0 for Dell PowerEd - Page 104

Standard Schema Active Directory Overview, Active Directory and CMC.

Page 104 highlights

Standard Schema Active Directory Overview As shown in the following figure, using standard schema for Active Directory integration requires configuration on both Active Directory and CMC. In Active Directory, a standard group object is used as a role group. A user who has CMC access is a member of the role group. To give this user access to a specific CMC card, the role group name and its domain name need to be configured on the specific CMC card. The role and the privilege level is defined on each CMC card and not in the Active Directory. You can configure up to five role groups in each CMC. The following table shows the default role group privileges. Table 13. : Default Role Group Privileges Role Group Default Privilege Level Permissions Granted Bit Mask 1 None • CMC Login User 0x00000fff • Chassis Configuration Administrator • User Configuration Administrator • Clear Logs Administrator • Chassis Control Administrator (Power Commands) • Server Administrator • Test Alert User • Debug Command Administrator • Fabric A Administrator 2 None • CMC Login User 0x00000ed9 • Clear Logs Administrator • Chassis Control Administrator (Power Commands) • Server Administrator • Test Alert User • Fabric A Administrator 3 None CMC Login User 0x00000001 4 None No assigned permissions 0x00000000 5 None No assigned permissions 0x00000000 NOTE: The Bit Mask values are used only when setting Standard Schema with the RACADM. NOTE: For more information about user privileges, see Types of Users. 104

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193

Standard Schema Active Directory Overview
As shown in the following figure, using standard schema for Active Directory integration requires configuration on both
Active Directory and CMC.
In Active Directory, a standard group object is used as a role group. A user who has CMC access is a member of the role
group. To give this user access to a specific CMC card, the role group name and its domain name need to be configured
on the specific CMC card. The role and the privilege level is defined on each CMC card and not in the Active Directory.
You can configure up to five role groups in each CMC. The following table shows the default role group privileges.
Table 13. : Default Role Group Privileges
Role Group
Default Privilege Level
Permissions Granted
Bit Mask
1
None
CMC Login User
Chassis
Configuration
Administrator
User Configuration
Administrator
Clear Logs
Administrator
Chassis Control
Administrator
(Power Commands)
Server
Administrator
Test Alert User
Debug Command
Administrator
Fabric A
Administrator
0x00000fff
2
None
CMC Login User
Clear Logs
Administrator
Chassis Control
Administrator
(Power Commands)
Server
Administrator
Test Alert User
Fabric A
Administrator
0x00000ed9
3
None
CMC Login User
0x00000001
4
None
No assigned permissions
0x00000000
5
None
No assigned permissions
0x00000000
NOTE:
The Bit Mask values are used only when setting Standard Schema with the RACADM.
NOTE:
For more information about user privileges, see
Types of Users
.
104