8
Configuring iDRAC7 for Single Sign-On or Smart
Card Login
This section provides information to configure iDRAC7 for Smart Card login (for local users and Active Directory users),
and Single Sign-On (SSO) login (for Active Directory users.) SSO and smart card login are licensed features.
iDRAC7 supports Kerberos based Active Directory authentication to support Smart Card and SSO logins. For information
on Kerberos, see the Microsoft website.
Related Links
Configuring iDRAC7 SSO Login for Active Directory Users
Configuring iDRAC7 Smart Card Login for Local Users
Configuring iDRAC7 Smart Card Login for Active Directory Users
Prerequisites for Active Directory Single Sign-On or Smart Card
Login
The pre-requisites to Active Directory based SSO or Smart Card logins are:
•
Synchronize iDRAC7 time with the Active Directory domain controller time. If not, kerberos authentication on iDRAC7
fails. You can use the Time zone and NTP feature to synchronize the time. To do this, see
•
Register iDRAC7 as a computer in the Active Directory root domain.
•
Generate a keytab file using the ktpass tool.
•
To enable single sign-on for Extended schema, make sure that the Trust this user for delegation to any service
(Kerberos only) option is selected on the Delegation tab for the keytab user. This tab is available only after creating
the keytab file using ktpass utility.
•
Configure the browser to enable SSO login.
•
Create the Active Directory objects and provide the required privileges.
•
For SSO, configure the reverse lookup zone on the DNS servers for the subnet where iDRAC7 resides.
NOTE: If the host name does not match the reverse DNS lookup, Kerberos authentication fails.
Related Links
Configuring Browser to Enable Active Directory SSO
Registering iDRAC7 as a Computer in Active Directory Root Domain
Generating Kerberos Keytab File
Creating Active Directory Objects and Providing Privileges
Registering iDRAC7 as a Computer in Active Directory Root Domain
To register iDRAC7 in Active Directory root domain:
1.
Click Overview
→
iDRAC Settings
→
Network
→
Network.
145
Содержание iDRAC7
Страница 1: ...Integrated Dell Remote Access Controller 7 iDRAC7 Version 1 50 50 User s Guide ...
Страница 14: ...14 ...
Страница 36: ...36 ...
Страница 66: ...66 ...
Страница 92: ...92 ...
Страница 144: ...144 ...
Страница 165: ...165 ...
Страница 166: ...166 ...
Страница 172: ...172 ...
Страница 184: ...184 ...
Страница 196: ...196 ...
Страница 208: ...208 ...
Страница 216: ...216 ...
Страница 220: ...220 ...
Страница 234: ...234 ...
Страница 248: ...248 ...