48
ECLYPSE APEX
Information Technology Department-Managed Centralized Credentials
Authentication
The credential database is centralized in a Microsoft Windows Domain Active Directory Server to au-
thenticate login requests made by other subscribed ECLYPSE controllers and EC-Net stations.
Active Directory
LDAP A
EC-
gfx
Program
Niagara
AX
A
ECLYPSE
Controller B
Cache C
ECLYPSE
Controller A
Cache B
1
2
2
3
LDAP
3
RADIUS A
Figure 36: Information Technology Department-Managed Centralized Credentials Authentication
This authentication method has the following components.
Component
Description
Login Credential 1
This is the login credential used by an EC-
gfx
Program user to connect to the EC-Net station. This
credential is managed in the EC-Net User Service.
This credential must be added to the Active Directory LDAP credential database.
Login Credential 2
This is the login credential used by an EC-
gfx
Program user to connect to any ECLYPSE controller.
This credential must be added to the Active Directory RADIUS credential database.
Login Credential 3
This is the login credential used by the EC-Net station’s RestService to connect to any ECLYPSE
controller. To program an ECLYPSE controller with EC-
gfx
Program through EC-Net, the RestService
must be configured on the EC-Net station with a login credential to all ECLYPSE controllers. This
credential must be added to the Active Directory RADIUS credential database.
LDAP A
This is the Microsoft Windows Domain Active Directory Server credential database that authenticates
user credentials through both RADIUS and LDAP protocols for all ECLYPSE controllers and all
subscribed EC-Net stations.
RADIUS A
This is EC-Net station UserService credential database that imports user credentials through an
LDAP connection to the Active Directory. To program an ECLYPSE controller with EC-
gfx
Program
through EC-Net, the RestService must be configured on the EC-Net station with a login credential to
all ECLYPSE controllers. This credential must be added to the Active Directory credential database.
Credential Database A
These are ECLYPSE controllers’ cached credential database. If the connection to the Active
Directory is lost, users that have previously authenticated themselves with Active Directory Server
credential database will still be able to login to the controller as their successfully authenticated
credentials are locally cached.
To configure an EC-Net station to connect to an LDAP server, refer to the EC-Net LDAP Active Direc-
tory Configuration Guide and LDAP User Service.
Supported RADIUS Server Architectures
Содержание ECLYPSE APEX
Страница 1: ...User Guide ECLYPSE APEX...
Страница 171: ...ECLYPSE APEX_UG_11_EN...