
Pairing agent to the Network Module
Servicing the Network Management Module – 130
1.
2.
1.
2.
3.
4.
1.
2.
3.
4.
•
•
•
•
•
•
•
4.1.1.3 Map remote users to profile
Configure the rules to mapped LDAP users to profile:
Enter LDAP group name.
Select the profile to assigned.
You can define up to 5 mapping rules.
All LDAP users belonging to the configured LDAP group will have permissions granted by the associated profile.
4.1.1.4 Testing profile mapping
Refer to the section Information>>>CLI>>>ldap-test to get help on the CLI command.
To test LDAP users profile mapping:
Connect to the CLI.
Launch
ldap-test --checkmappedgroups command.
This command will verify each mapped group exists in the LDAP base and will display the associated local profile.
In case of error, use the
verbose option of the command to investigate the reason.
4.1.1.5 Define LDAP user's preferences
This step configures the user's preferences to apply to all LDAP users.
4.1.2 Testing LDAP authentication
Refer to the section Information>>>CLI>>>ldap-test to get help on the CLI command.
Connect to the CLI.
Launch
ldap-test --checkauth command.
This command will verify an LDAP user can authenticate using his username and password and will display its local profile.
In case of error, use the
verbose option of the command to investigate the reason
4.1.3 Limitations
If the same username exists in both local and LDAP databases, the behavior is undefined.
If a user belongs to multiple LDAP groups mapped to different profiles, the behavior is undefined.
No client certificate provided. It is not possible for the server to verify the client authenticity.
It is not possible to configure LDAP to work with 2 different search bases.
LDAP user's preferences are common to all LDAP users.
LDAP users cannot change their password through the Network Module.
The remote groupname entered in profile mapping settings must be composed only of alphanumerics, underscore and
hyphen characters (but this last one can't be at the beginning).
4.2 Pairing agent to the Network Module
Authentication and encryption of connections between the UPS network module and shutdown agents is based on matching
certificates.
This step is mandatory and configures the Network module to give permissions to the LDAP users.
Users not belonging to a group mapped on a profile will be rejected.
If a user belongs to multiple LDAP groups mapped to different profiles, the behavior is undefined.
Содержание eNMC2
Страница 1: ...PDU Network Module eNMC2 User s Guide English 10 09 2023...
Страница 2: ......
Страница 25: ...Home Contextual help of the web interface 25 3 2 2 1 3 Battery mode 3 2 2 1 4 Off mode...
Страница 27: ...Home Contextual help of the web interface 27 3 2 2 2 3 Battery mode 3 2 2 2 4 Off mode...
Страница 29: ...Home Contextual help of the web interface 29 3 2 2 3 2 Bypass mode 3 2 2 3 3 Battery mode...
Страница 30: ...Home Contextual help of the web interface 30 3 2 2 3 4 HE mode ESS mode 3 2 2 3 5 Maintenance bypass mode...
Страница 50: ...Protection Contextual help of the web interface 50 Example 2 Immediate OFF Example 4 Custom...
Страница 51: ...Protection Contextual help of the web interface 51 Settings 1 Settings 2...
Страница 224: ...Acronyms and abbreviations Information 224...
Страница 231: ......