HP BladeSystem c7000 How to Enable LDAP Directory Services Authentication to M

HP BladeSystem c7000 Manual

HP BladeSystem c7000 manual content summary:

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9

How to Enable LDAP Directory Services Authentication to Microsoft Active
Directory in the HP cClass Onboard Administrator
I.
Certificate Services
a.
Install a Certificate Authority onto a Windows server in the domain
(Control Panel/Add Remove Programs/Windows Components).
The CA must be set to process new cert requests automatically. For Enterprise
Root CA’s, this is the only option. For Stand-alone CA’s, it is set in: Admin
Tools/Certification Authority/Right click the CA/Properties. Click the “Policy
Module” and the “configure” button. The “Default Action” tab will be
displayed. Set the “Always issue the certificate” to on.
* HP strongly suggests you use an Enterprise root CA as the process for DC’s
to request and accept DC certificates from stand alone CA’s is not trivial.
II.
Preparing the Directory
Some liberty can be taken with the names used here, but if this is the first time
you are doing this, you should follow these steps so that you understand how the
process works. Once you have the hang of it, you can alter the names and
locations, etc. For a normal customer install, these types of groups already exist.
a.
Create a Windows group called “OA Admins” and put a user called
Admin in this group.
OS level permissions are not important for this user (i.e. he does not need to
be a member of Administrators in AD or anything for this to work).
b.
Create a group called “OA Operators” and put a user called Operator in
this group. Again, OS level permissions are not important for this user (i.e.
he does not need to be a member of Administrators in AD or anything for
this to work).
For the purposes of this paper, we’ll call this user “operator”
III.
Preparing the OA
a.
Navigate to the Directory Settings screen located under Users/
Authentications for the desired enclosure.