HP BL480c HP BladeSystem Onboard Administrator Command Line Interface User Gui - Page 16

AutoLogin to iLO 2, using Onboard Administrator AutoLogin.

Page 16 highlights

• This is the default setting. Local user accounts are directly authenticated against a password for each account stored on the active Onboard Administrator. • Account modifications are automatically synchronized between both Onboard Administrator modules if two are present. • Local users may be disabled if LDAP is enabled, leaving the Administrator account as the only local account that cannot be disabled. LDAP users • The Enable/Disable LDAP is an optional setting. LDAP enabled can be used with local users enabled or disabled. • The Onboard Administrator will use configured LDAP server and search context to request account authentication. • Configuration of the LDAP group will determine the privileges instead of the username. • If a user is configured for multiple groups with different privileges and bay permissions, then the user will have the highest privileges and the combination of all permitted bays. • In version 2.10 or higher, if the user logged into the Onboard Administrator is an LDAP user then the Onboard Administrator enforces the iLO license and requires that the iLO have a Select license before allowing the AutoLogin to iLO. AutoLogin to iLO 2 The following table indicates Onboard Administrator account privileges mapped to iLO privileges when using Onboard Administrator AutoLogin. iLO privileges administrator operator user Administer user accounts X Remote console access X X Virtual power and reset X X Virtual media X X Configure iLO settings X Login to iLO X X X Command line 16

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183

Command line 16
This is the default setting. Local user accounts are directly authenticated against a password for each
account stored on the active Onboard Administrator.
Account modifications are automatically synchronized between both Onboard Administrator
modules if two are present.
Local users may be disabled if LDAP is enabled, leaving the Administrator account as the only local
account that cannot be disabled.
LDAP users
The Enable/Disable LDAP is an optional setting. LDAP enabled can be used with local users enabled
or disabled.
The Onboard Administrator will use configured LDAP server and search context to request account
authentication.
Configuration of the LDAP group will determine the privileges instead of the username.
If a user is configured for multiple groups with different privileges and bay permissions, then the user
will have the highest privileges and the combination of all permitted bays.
In version 2.10 or higher, if the user logged into the Onboard Administrator is an LDAP user then the
Onboard Administrator enforces the iLO license and requires that the iLO have a Select license
before allowing the AutoLogin to iLO.
AutoLogin to iLO 2
The following table indicates Onboard Administrator account privileges mapped to iLO privileges when
using Onboard Administrator AutoLogin.
iLO privileges
administrator
operator
user
Administer user accounts X
Remote console access
X
X
Virtual power and reset
X
X
Virtual media
X
X
Configure iLO settings
X
Login to iLO
X
X
X