Reference Guide

Directory Services
This appendix describes how to configure PowerStore to connect to an LDAP server for authentication, and how to assign roles
to LDAP users and groups.
Topics include:
Topics:
Configuring Directory Services
Configure LDAP server
Configure LDAP account
Configuring Directory Services
The Lightweight Directory Access Protocol (LDAP), is an application protocol for querying and modifying directory services
running on TCP/IP networks. LDAP helps centralize the management of network authentication and authorization operations.
Integrating PowerStore Manager users into an existing LDAP environment provides a way to control management access based
on established user and group accounts within the LDAP directory.
PowerStore supports the following LDAP server types:
Active Directorya Microsoft directory service. It runs on Windows Server and allows administrators to manage permissions
and access to network resources.
OpenLDAPa free, open-source implementation of LDAP.
Networked entities that exchange data use certificates to authenticate each other. For secure communications to occur
between two networked entities, one entity must trust (accept) the certificate from the other. PowerStore Manager uses the
SSL/TLS and the X.509 certificate standard to secure client (storage system) and server (LDAP) communications. PowerStore
requires the certificate chain file to be uploaded, to properly verify the server certificate received from the LDAP server when
the TLS session is established.
After you configure the LDAP settings for PowerStore, you can perform user management functions. For example, you can
assign access permissions to PowerStore Manager based on existing users and groups, within the context of an established
LDAP directory structure.
Follow this sequence of steps to configure LDAP on PowerStore:
1. Configure the LDAP server.
2. Verify the LDAP server connection.
3. (Optional) Configure LDAPS for the LDAP server.
4. (Optional) Verify the LDAP server connection using the LDAPS protocol.
5. Configure LDAP Users and Groups.
NOTE:
The PowerStore Manager Online Help provides more information about LDAP and the steps to configure
PowerStore to connect to an LDAP server, and how to assign roles to manage LDAP users and groups.
Configure LDAP server
About this task
LDAP server configuration consists of specifying the configuration information needed to connect to the LDAP server.
To configure LDAP, do the following:
B
Directory Services 43