Users Guide
Current Generation Prior Generation Description
Debug Execute Diagnostic Commands Enables the user to run diagnostic commands.
Related link
Prerequisites for using Active Directory authentication for iDRAC
Supported Active Directory authentication mechanisms
Prerequisites for using Active Directory authentication for
iDRAC
To use the Active Directory authentication feature of iDRAC, make sure that you have:
• Deployed an Active Directory infrastructure. See the Microsoft website for more information.
• Integrated PKI into the Active Directory infrastructure. iDRAC uses the standard Public Key Infrastructure (PKI) mechanism to
authenticate securely into the Active Directory. See the Microsoft website for more information.
• Enabled the Secure Socket Layer (SSL) on all domain controllers that iDRAC connects to for authenticating to all the domain
controllers.
Related link
Enabling SSL on domain controller
Enabling SSL on domain controller
When iDRAC authenticates users with an Active Directory domain controller, it starts an SSL session with the domain controller. At this
time, the domain controller must publish a certicate signed by the Certicate Authority (CA)—the root certicate of which is also
uploaded into iDRAC. For iDRAC to authenticate to any domain controller—whether it is the root or the child domain controller—that
domain controller must have an SSL-enabled certicate signed by the domain’s CA.
If you are using Microsoft Enterprise Root CA to automatically assign all your domain controllers to an SSL certicate, you must:
1 Install the SSL certicate on each domain controller.
2 Export the Domain Controller Root CA Certicate to iDRAC.
3 Import iDRAC Firmware SSL Certicate.
Related link
Installing SSL certicate for each domain controller
Exporting domain controller root CA certicate to iDRAC
Importing iDRAC rmware SSL certicate
Installing SSL certicate for each domain controller
To install the SSL certicate for each controller:
1 Click Start > Administrative Tools > Domain Security Policy.
2 Expand the Public Key Policies folder, right-click Automatic Certicate Request Settings and click Automatic Certicate Request.
The Automatic Certicate Request Setup Wizard is displayed.
3 Click Next and select Domain Controller.
4 Click Next and click Finish. The SSL certicate is installed.
138
Conguring user accounts and privileges