HP Integrity rx2800 HP Integrity iLO 3 Operations Guide - Page 96

Current LDAP Parameters, Table 28 Current LDAP Parameters description, Example: cn=MP Server

Page 96 highlights

Figure 32 Current LDAP Parameters Table 28 Current LDAP Parameters description Item Directory Authentication Description Choosing enable or disable, activates or deactivates directory support on iLO 3: Enable with Extended Schema Selects directory authentication and authorization using directory objects created with HP schema. Select this option if the directory server has been extended with the HP schema. Enable with Default Schema Selects directory authentication and authorization using user accounts in the directory which has not been extended with the HP schema. User accounts and group memberships are used to authenticate and authorize users. In the Administration>User Administration>Group Accounts page, configure one or more directory groups by entering the Group Distinguished Name of the group and the rights granted to users who are members of that group. You must configure data in the Group Administration page after you select this. Disable Deactivates directory support on this iLO 3. Local User Accounts Includes or excludes access to local iLO 3 user accounts. Locally-stored user accounts can be active while LDAP directory support is enabled. If local user accounts are enabled, you may log in to the iLO 3 using locally-stored user credentials. If they are disabled, access is limited to valid directory credentials only. Directory Server IP Address Displays the IP address or hostname of the directory server. Directory Server LDAP Port Displays the port number for the secure LDAP service on the server. The default value for this port is 636. It can be configured to a value in the range 2000-2400. iLO Distinguished Name Displays the Distinguished Name of iLO 3, specifies where this iLO 3 instance is listed in the directory tree. Example: cn=MP Server,ou=Management Devices,o=hp User Search Contexts (1,2,3) User search contexts locate an object in the tree structure of the directory server and are applied to the login name entered to access the iLO MP. All objects listed in the directory can be identified using the unique distinguished name. However, distinguished names can be long, or users might not know the distinguished usernames, or they may have accounts in different directory contexts. Search contexts enable the user to specify common directory contexts, so that users do not have to enter the full distinguished name at login. 96 Using iLO 3

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152

Figure 32 Current LDAP Parameters
Table 28 Current LDAP Parameters description
Description
Item
Choosing enable or disable, activates or deactivates directory support on iLO 3:
Directory Authentication
Enable with Extended Schema
Selects directory authentication and authorization
using directory objects created with HP schema.
Select this option if the directory server has been
extended with the HP schema.
Enable with Default Schema
Selects directory authentication and authorization
using user accounts in the directory which has not
been extended with the HP schema. User accounts
and group memberships are used to authenticate
and authorize users. In the Administration>User
Administration>Group Accounts page, configure
one or more directory groups by entering the
Group Distinguished Name of the group and the
rights granted to users who are members of that
group. You must configure data in the Group
Administration page after you select this.
Deactivates directory support on this iLO 3.
Disable
Includes or excludes access to local iLO 3 user accounts. Locally-stored user accounts
can be active while LDAP directory support is enabled. If local user accounts are enabled,
Local User Accounts
you may log in to the iLO 3 using locally-stored user credentials. If they are disabled,
access is limited to valid directory credentials only.
Displays the IP address or hostname of the directory server.
Directory Server IP Address
Displays the port number for the secure LDAP service on the server. The default value for
this port is 636. It can be configured to a value in the range 2000-2400.
Directory Server LDAP Port
Displays the Distinguished Name of iLO 3, specifies where this iLO 3 instance is listed
in the directory tree.
Example: cn=MP Server,ou=Management Devices,o=hp
iLO Distinguished Name
User search contexts locate an object in the tree structure of the directory server and are
applied to the login name entered to access the iLO MP.
User Search Contexts (1,2,3)
All objects listed in the directory can be identified using the unique distinguished name.
However, distinguished names can be long, or users might not know the distinguished
usernames, or they may have accounts in different directory contexts. Search contexts
enable the user to specify common directory contexts, so that users do not have to enter
the full distinguished name at login.
96
Using iLO 3