User guide

Using directory services integration 186
LDAP Authentication and Access Control Group Attribute Mode
In group attribute mode, if the domain controller authenticates the user, it grants access to the console
switch or the server based on the permissions granted to the group that the user and the console switch,
or server, are in. Access rights are set at the group level. If the user and console switch, or server, are in
the same group, then the group access rights determine what the user can do.
Item Description
1 User sends request to console switch to access server
2
Console switch sends ID and password to domain
controller
3
Directory authenticates and authorizes if user and
console switch or server are in the same group
4
If authenticated and authorized, console switch opens
console session for user
Enabling directory services integration
IMPORTANT: Before implementing directory services integration functionality, refer to "HP IP Console
Switch directory services integration setup tutorial (on page 208)" for a better understanding of how
Directory Services integration works.
1. Access the console switch.
a. Click Console Switches to display the console switches in the selected view.
b. Double-click the desired console switch.
-or-
Select the console switch, and click Manage Console Switch.
-or-
Right-click the console switch, and click Manage Console Switch.
-or-
Click Console Switches, and press the Enter key.
A login dialog box appears.