User's Manual

Using the CMC Web Interface 165
Kerberos Keytab
You can upload a Kerberos Keytab generated on the associated Active
Directory Server. You can generate the Kerberos Keytab from the Active
Directory Server by executing the ktpass.exe utility. This keytab establishes a
trust relationship between the Active Directory Server and the CMC.
NOTE: The CMC does not have a Kerberos Keytab for Active Directory. You must
upload a currently generated Kerberos Keytab. See "Configuring Single Sign-On" on
page 269 for detailed information.
The following actions are allowed:
Browse - Opens a
Browse
dialog box, from which you select the server
certificate you want to upload.
Upload - Initiates the upload process for the certificate using the file path
you specify.
Configuring and Managing Generic Lightweight
Directory Access Protocol Services
You can use the Generic Lightweight Directory Access Protocol (LDAP)
Service to configure your software to provide access to the CMC. LDAP
allows you to add and control the CMC user privileges of your existing users.
NOTE: To configure LDAP settings for the CMC, you must have Chassis
Configuration Administrator privilege.
To view and configure LDAP:
1
Log in to the Web interface.
2
Click the
User Authentication
tab, and then click the
Directory Services
subtab. The
Directory Services
page appears.
3
Click the radio button associated with Generic LDAP.
4
Configure the options shown and click
Apply
.
The following configuration options are available.