HP Integrity BL870c HP Integrity iLO 2 Operations Guide, Eleventh Edition - Page 197

remoteAdmins, Properties, Apply, Close, Login

Page 197 highlights

a. Right-click the remoteAdmins role in the roles organizational unit in the region1 organizational unit, and select Properties. b. Select the Role Managed Devices subtab of the HP Management tab, and click Add. c. Using the Select Objects dialog box, browse to the HP devices organizational unit in the region1 organizational unit. Select the three iLO 2 objects created in step 2. Click OK and click Apply. d. Add users to the role. Click the Members tab, and add users using Add and the Select Objects dialog box. The devices and users are now associated. e. To set the rights for the role, use the Lights-Out Management Device Rights subtab of the HP Management tab (Figure 9-16). Figure 9-16 Setting Role Rights All users within a role will have rights assigned to the role on all he iLO 2 devices managed by the role. In this example, users in the remoteAdmins role are given full access to iLO 2 functionality. Select the boxes next to each right, and click Apply. f. To close the property sheet, click Close. 4. Using the same procedure as in step 3, edit the properties of the remoteMonitors role: a. Add the three iLO 2 devices within HP devices under region1 to the Managed Devices list on the Role Managed Devices subtab of the HP Management tab. b. Add users to the remoteMonitors role using the Members tab. c. Using the Lights-Out Management Device Rights subtab of the HP Management tab, click the Login checkbox, and click Apply and Close. Members of the remoteMonitors role are now able to authenticate and view the server status. User rights to any iLO 2 device are calculated as the sum of all the rights assigned by all the roles in which the user is a member, and in which the iLO 2 device is a managed device. Using the preceding examples, if a user is in both the remoteAdmins and remoteMonitors roles, he or she has all rights, because the remoteAdmins role has those rights. To configure an iLO 2 device from the previous example and associate it with an iLO 2 object, use settings similar to the following on the iLO 2 directory settings TUI. NOTE: In LDAP Distinguished Names, use commas, not periods, to separate each component. RIB Object DN = cn=rib-email-server,ou=hp Directory Services for eDirectory 197

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229

a.
Right-click the
remoteAdmins
role in the roles organizational unit in the region1
organizational unit, and select
Properties
.
b.
Select the Role Managed Devices subtab of the HP Management tab, and click
Add
.
c.
Using the Select Objects dialog box, browse to the HP devices organizational unit in
the region1 organizational unit. Select the three iLO 2 objects created in step 2. Click
OK
and click
Apply
.
d.
Add users to the role. Click the Members tab, and add users using
Add
and the Select
Objects dialog box. The devices and users are now associated.
e.
To set the rights for the role, use the Lights-Out Management Device Rights subtab of
the HP Management tab (
Figure 9-16
).
Figure 9-16 Setting Role Rights
All users within a role will have rights assigned to the role on all he iLO 2 devices
managed by the role. In this example, users in the remoteAdmins role are given full
access to iLO 2 functionality. Select the boxes next to each right, and click
Apply
.
f.
To close the property sheet, click
Close
.
4.
Using the same procedure as in step 3, edit the properties of the remoteMonitors role:
a.
Add the three iLO 2 devices within HP devices under region1 to the Managed Devices
list on the Role Managed Devices subtab of the HP Management tab.
b.
Add users to the remoteMonitors role using the Members tab.
c.
Using the Lights-Out Management Device Rights subtab of the HP Management tab,
click the
Login
checkbox, and click
Apply
and
Close
. Members of the remoteMonitors
role are now able to authenticate and view the server status.
User rights to any iLO 2 device are calculated as the sum of all the rights assigned by all the roles
in which the user is a member, and in which the iLO 2 device is a managed device. Using the
preceding examples, if a user is in both the remoteAdmins and remoteMonitors roles, he or she
has all rights, because the remoteAdmins role has those rights.
To configure an iLO 2 device from the previous example and associate it with an iLO 2 object,
use settings similar to the following on the iLO 2 directory settings TUI.
NOTE:
In LDAP Distinguished Names, use commas, not periods, to separate each component.
RIB Object DN = cn=rib-email-server,ou=hp
Directory Services for eDirectory
197