Users Guide

Current Generation Prior Generation Description
Debug Execute Diagnostic Commands Enables the user to run diagnostic commands.
Related link
Prerequisites for using Active Directory authentication for iDRAC
Supported Active Directory authentication mechanisms
Prerequisites for using Active Directory authentication for
iDRAC
To use the Active Directory authentication feature of iDRAC, make sure that you have:
Deployed an Active Directory infrastructure. See the Microsoft website for more information.
Integrated PKI into the Active Directory infrastructure. iDRAC uses the standard Public Key Infrastructure (PKI) mechanism to
authenticate securely into the Active Directory. See the Microsoft website for more information.
Enabled the Secure Socket Layer (SSL) on all domain controllers that iDRAC connects to for authenticating to all the domain
controllers.
Related link
Enabling SSL on domain controller
Enabling SSL on domain controller
When iDRAC authenticates users with an Active Directory domain controller, it starts an SSL session with the domain controller. At this
time, the domain controller must publish a certicate signed by the Certicate Authority (CA)—the root certicate of which is also
uploaded into iDRAC. For iDRAC to authenticate to any domain controller—whether it is the root or the child domain controller—that
domain controller must have an SSL-enabled certicate signed by the domains CA.
If you are using Microsoft Enterprise Root CA to automatically assign all your domain controllers to an SSL certicate, you must:
1 Install the SSL certicate on each domain controller.
2 Export the Domain Controller Root CA Certicate to iDRAC.
3 Import iDRAC Firmware SSL Certicate.
Related link
Installing SSL certicate for each domain controller
Exporting domain controller root CA certicate to iDRAC
Importing iDRAC rmware SSL certicate
Installing SSL certicate for each domain controller
To install the SSL certicate for each controller:
1 Click Start > Administrative Tools > Domain Security Policy.
2 Expand the Public Key Policies folder, right-click Automatic Certicate Request Settings and click Automatic Certicate Request.
The Automatic Certicate Request Setup Wizard is displayed.
3 Click Next and select Domain Controller.
4 Click Next and click Finish. The SSL certicate is installed.
138
Conguring user accounts and privileges