Users Guide

Table Of Contents
Configuring iDRAC6 for Single Sign-On and Smart Card Login 169
Using Active Directory SSO
You can enable iDRAC6 to use Kerberos—a network authentication
protocol—to enable single sign-on. For more information on setting up
iDRAC6 to use the Active Directory single sign-on feature, see "Prerequisites
for Active Directory SSO and Smart Card Authentication" on page 166.
Configuring iDRAC6 to Use SSO
1
Open a supported Web browser window.
2
Log in to iDRAC6 Web interface.
3
In the system tree, select
System
Remote Access
iDRAC6
Network/Security
tab
Network
. In the
Network
page, verify whether the
DNS iDRAC6 Name
is correct and matches with the name used for
iDRAC6 fully qualified domain name.
4
In the system tree, select
System
Remote Access
iDRAC6
Network/Security
tab
Directory Service
Microsoft Active Directory
.
The
Active Directory
summary screen is displayed.
5
Scroll to the bottom of the screen and click
Configure Active Directory
.
The
Active Directory Configuration and Management Step 1 of 4
screen
is displayed.
6
To validate the SSL certificate of the Active Directory servers, select the
Enable Certificate Validation
check box under
Certificate Settings
.
If you do not want to validate the SSL certificate of your Active Directory
servers, take no action, and skip to step 8.
7
Under
Upload Active Directory CA Certificate
, enter the file path of the
certificate or browse to find the certificate file, and then click
Upload
.
NOTE: You must enter the absolute file path, which includes the full path and
the complete file name and file extension.
The certificate information for the Active Directory CA certificate that you
uploaded appears in the
Current Active Directory CA Certificate
section.
8
Click
Next
.
The
Active Directory Configuration and Management
Step 2 of 4
screen
is displayed.