Product User Guide

Intel® Remote Management Module 2 User Guide 85
7.6.8 Authentication Settings
Figure 72: LDAP and Other Authentication Settings
On this screen you can specify where the Intel
®
RMM2 will look to authenticate users. You can
use "Local Authentication" which requires you to have created the user account on the Intel
®
RMM2; the user/group information residing on the Intel
®
RMM2 will be used for authentication.
Alternatively, you can specify an LDAP or a RADIUS Server to use for the login authentication.
Note: Whatever you configure, you can always login over the network as the super user
"admin". The super user is always authenticated and authorized locally, so you always have a
"back door" to the Intel
®
RMM2.
7.6.8.1 LDAP Access
The Intel
®
RMM2 uses LDAP only for authentication (password verification). User privileges and
private settings are still stored locally at the Intel
®
RMM2. A user account has to be created on
the Intel
®
RMM2 before a user can login via LDAP. Additionally, all privilege configurations have
to be done within the Intel
®
RMM2 user management.
In order to configure the LDAP access, you can set the following options:
User LDAP Server: Enter the name or IP address of the LDAP server containing all the
user entries. If you choose a name instead of an IP address you need to configure a
DNS server in the network settings, e.g.: 192.168.1.250
Base DN of User LDAP Server: Specify the distinguished name (DN) where the
directory tree starts in the user LDAP server. E.g.: dc=test, dc=domain, dc=com
Type of external LDAP Server: Set the type of the external LDAP server. This is
necessary since some server types require special handling. Additionally, the default