Users Guide

Using the DRAC 4 With Microsoft Active Directory 133
Are there any restrictions on
Domain Controller SSL
configuration?
Yes. All Active Directory servers’ SSL
certificates in the forest must be signed by
the same root CA since DRAC 4 only allows
uploading one trusted CA SSL certificate.
I created and uploaded a new RAC
certificate and now the Web-based
interface does not launch.
If you use Microsoft Certificate Services to
generate the RAC certificate, one possible
cause of this issue is that you inadvertently
chose User Certificate instead of Web
Certificate when creating the certificate. To
recover, generate a CSR and create a new
Web certificate from Microsoft Certificate
Services and load it using the racadm CLI
from the managed system by typing:
racadm sslcsrgen [-g] [-u] [-f
{filename}]
racadm sslcertupload -t 0x1 -f
<web_sslcert>
Table 5-9. Using the DRAC 4 With Active Directory: Frequently
Asked Questions
(continued)
Question Answer