Users Guide
130 Using the DRAC 5 With Microsoft Active Directory
Figure 6-5. Privilege Accumulation for a User
The figure shows two Association Objects—A01 and A02. These Association
Objects may be part of the same or different domains. User1 is associated to
RAC1 and RAC2 through both association objects. Therefore, User1 has
accumulated privileges that results when combining the Privileges set for
objects Priv1 and Priv2.
For example, Priv1 had the privileges: Login, Virtual Media, and Clear Logs
and Privr2 had the privileges: Login, Configure DRAC, and Test Alerts.
User1 will now have the privilege set: Login, Virtual Media, Clear Logs,
Configure DRAC, and Test Alerts, which is the combined privilege set of
Priv1 and Priv2
Extended Schema Authentication, thus, accumulates privileges to allow the
user the maximum set of privileges possible considering the assigned
privileges of the different privilege objects associated to the same user.
A01
A02
Group1
Priv1
Priv2
User1
User2
User1
RAC1
RAC2