
246
IBM Flex System V7000 Storage Node Introduction and Implementation Guide
5.9.2 Directory Services
When an IBM Flex System V7000 Storage Node clustered system is created, the
authentication settings are automatically provisioned from the settings provided by the
Chassis Management Module (CMM) or Flex System Manager (FSM). Users can log in to the
system using the user accounts that are defined on the LDAP servers, which are configured
on the CMM or FSM.
For users of the Flex System V7000 Storage Node clustered system, you can configure
authentication and authorization using the Command Line Interface (CLI).
You can create two types of users who can access the system. These types are based on
how the users are authenticated to the system. Local users must provide either a password, a
Secure Shell (SSH) key, or both. Local users are authenticated through the authentication
methods that are located on the Flex System V7000 Storage Node system. If the local user
needs access to the management GUI, a password is needed for the user. If the user requires
access to the command-line interface (CLI) through SSH, either a password or a valid SSH
key file is necessary. Local users must be part of a user group that is defined on the system.
User groups define roles that authorize the users within that group to a specific set of
operations on the system.
A remote user is authenticated on a remote service with Lightweight Directory Access
Protocol (LDAP) as configured in the Chassis Management Module or Flex System Manager
settings. Remote users have their groups or Supervisor role defined by the remote
authentication service.
A remote user who needs access to the command line using SSH keys must be configured
on the Flex System V7000. Other remote users do not need to be configured on the V7000,
they only need to be defined on the LDAP server.
To manage users and user groups on the system using the management GUI, select User
Management
Users.
The settings for Lightweight Directory Access Protocol are automatically configured by the
Chassis Management Module. To test the connection, select Settings
Directory
Services.
For more information about how to configure Remote Authentication and Authorization for
users of IBM Flex System V7000 Storage Node, see the
User Authentication Configuration
section of the IBM Information Center at the following website:
For more information about how to implement systems management of IBM PureFlex
Systems, see Implementing Systems Management of IBM PureFlex System, SG24-8060.
Summary of Contents for Storwize V7000
Page 2: ......
Page 12: ...x IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 18: ...xvi IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 20: ...xviii IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 176: ...156 IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 208: ...188 IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 332: ...312 IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 476: ...456 IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 530: ...510 IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 664: ...644 IBM Flex System V7000 Storage Node Introduction and Implementation Guide...
Page 669: ......